Firewall policies with DMZ interface
Hello all,
I have a fortigate behind an edge router. The edge router is doing NAT for internal servers and internal users.
Internal servers are connected to the DMZ interface on the FOrtigate. Internal users are connected to the INSIDE interface.
the OUTSIDE interface connects to the edge router.
i have policies INSIDE -->DMZ allow all services, DMZ -->OUTSIDE allow all services on the fortigate.
I do not have any virtual IPs configured for the DMZ servers, since the edge router is the one performing the NAT function.
however, inside network cannot reach servers in the DMZ and DMZ servers cannot reach internet.
Any help on this please?
Thanks
Jaures.