Skip to main content
akabarasif
New Member
November 23, 2020
Question

how to create policy for LAN to LAN user ?

  • November 23, 2020
  • 1 reply
  • 2787 views

hi,

kindly assist me or provide a solution to restrict user to access some servers services, for example, some users use application server and some are not, so if i allow them to access and block others it will not work because below there is a policy is all to all allowed, because we have more servers for example Active directory server email server, i dont want to block some users to access some servers instead of specify policy for active directory and email server

 

    1 reply

    Fullmoon
    New Member
    November 23, 2020

    for me the best way to control your users services towards your servers would be migrating your server farm to different vlans or different port of fortigate.

    boneyard
    Valued Contributor
    November 23, 2020

    i dont quite get your point

     

    you can't make extra rules because below those rules is a rule that allows everything

     

    well if you want to achieve what you want then you need to remove that all all ALL allow rule, because that will cause this to never work