Skip to main content
ehsan230564
New Member
August 29, 2021
Question

fortigate lan traffic out wan without nat

  • August 29, 2021
  • 1 reply
  • 3574 views

Dear sir,

 

Is it possible to out all the lan traffic through wan WITHOUT NAT for internet through cisco router connected to wan of the Fortigate firewall.

NAT in cisco router for internet , and all the traffic coming in for Fortigate lan from cisco router static route to wan of fortigate firewall.

 

FORTIGATE FIREWALL WAN CONNECTED TO CISCO ROUTER LAN.

 

FORTIGATE FIREWALL :-

 

lan : 192.168.1.0/24

wan : 172.16.100.1/30

 

POLICY : lan to wan without NAT

             wan to lan  without NAT

 STATIC ROUTE : 0.0.0.0 0.0.0.0 172.16.100.2/30 (cisco router lan IP)

 

 

CISCO ROUTER :-

LAN : 172.16.100.2/30

WAN : PUBLIC IP

all traffic from 192.168.1.0/24 to internet NAT through WAN.

 

STATIC ROUTE : 192.168.1.0/24 172.16.100.1 (ip of fortigate wan)

                         0.0.0.0 0.0.0.0 wan interface (cisco router)

 

 

Thanks and best regards.

 

 

 

 

    1 reply

    Keeper_of_the_Keys
    New Member
    August 29, 2021

    As long as you take care of all routing properly NAT is not mandatory, ie. the cisco device must know that the route to 192.168.1.0/24 is through the forti device.