Skip to main content
mikel16
New Member
March 28, 2016
Question

Fortigate with Email Server behind

  • March 28, 2016
  • 3 replies
  • 4083 views

Hi All.,

 

for example, these are my network details (dummy) :

Wan IP  : 1.2.3.4

Lan IP : 202.12.22.12 - 202.12.22.28 (these are my public) one of whichis our email server.

 

My email server is connected to one of the Lan port (202.12.22.15). How can i make the default outgoing ip to be the same as the mail server ip address? 

 

Because right now, every time the user sends an email message, the ip address that is being captured at the email header is my Wan IP (1.2.3.4). The problem here is that, whenever our wan ip gets blacklisted, in will blacklist all domains connected to it.

    3 replies

    Jeff_FTNT
    Staff
    Staff
    March 28, 2016

    You may try disable "NAT" on policy "LAN-->Wan", if LAN's ip is real public IP.

    mikel16
    mikel16Author
    New Member
    March 29, 2016

    Thanks,

     

    is my setup safe / advisable? or should i be using the DMZ or create a DMZ Vlan network from the interface? 

    Jeff_FTNT
    Staff
    Staff
    March 29, 2016

    With NAT enable, it is more safe. Thanks.

    Thought Leadership Security Summit. Outpace New Threats with AI - enhanced defense. Tuesday, Septmeber 15, 8:30 AM - 2:30 PM PT. The Golf Club at Newcastle, WA.
    Fortinet Flag the Hack. Wednesday, August 26, 9:00 AM - 5:00 PM ET, COSM, Atlanta, GA.
    Virtual event | September 2026. SASE summit. The age of autonomous trust. Register here!