Fortigate policy questions
Dear All,
I'm new in fortigate firewall, and i have a simple question would like to ask regarding on fortigate 100F firewall, and the firewall now are behind a internet gateway. i want to make use of the fortigatae to act a internal firewall, the wan port connect to dmz switch (192.168.81.0/24) and lan port connect to core switch (10.1.12.0/24), so that i can create policy from wan to lan, and lan to wan with security profile ? is this design look correct to you ? and if this look correct, can i use for example create a lan switch (name external) and add interface port 1 connect to dmz switch, and create another lan switch (name internal) and add interface port 10 and connect to core switch ? and create policy from external to internal and internal to external ? or i must use wan port instead ? and if the fortigate are in transparent mode it can not achieve above ? any help would be appreicated
Keith
