Skip to main content
David_Chernay
New Member
August 23, 2012
Question

Fortigate as SSL VPN BEHIND another router

  • August 23, 2012
  • 1 reply
  • 3804 views
Is this an option? What is the simplest way to set this up? We are thinking that we can change the LAN IP of the fortigate open 443 on the new router to go to the fortigate. What routing would we need? Thanks David

    1 reply

    svacs
    New Member
    September 20, 2012
    We have this exact setup Internet > Router > FortiGate SSL-VPN On the router and FortiGate unit I had to configure NAT and allow port 10443. Our OWA uses port 443 so we changed the ssl vpn to use port 10443. Router <-> WAN Int.--(FortiGate)--LAN Int.<-> Switch The SSL-VPN will only work in NAT Operation Mode. e.g. On our cisco router nat config: ip nat inside source static tcp X.X.X.X(WAN Int IP) 10443 X.X.X.X (Internet facing IP) 10443 extendable You' ll also need to configure NAT on the fortigate device.
    Thought Leadership Security Summit. Outpace New Threats with AI - enhanced defense. Tuesday, Septmeber 15, 8:30 AM - 2:30 PM PT. The Golf Club at Newcastle, WA.
    Fortinet Flag the Hack. Wednesday, August 26, 9:00 AM - 5:00 PM ET, COSM, Atlanta, GA.
    Virtual event | September 2026. SASE summit. The age of autonomous trust. Register here!