Skip to main content
goldfield
New Member
November 26, 2018
Question

MPLS Fortigate 60e

  • November 26, 2018
  • 1 reply
  • 8514 views

Hi,

 

Sorry I am quite new to fortigates, we have just had an two sites setup with leased lines with MPLS

 

The leased lines are both terminated by the isp`s cisco routers.

 

We have been given the following info regarding the vlans, looking through the fortigate and the interface setting for vlan` I cannot see where to put in the gateway for them? 

 

Site A

VLAN 1: Subnet: 80.209.145.104/29 GW:80.209.145.105 Mask: 255.255.255.248

Subnet: 192.168.100.0/29 GW: 192.168.100.1 Mask: 255.255.255.248

 

VLAN 10: Subnet: 188.240.177.208/29 GW: 188.240.177.209 Mask: 255.255.255.248

10.0.0.0/24 routed towards 192.168.100.4

 

Site B

 

VLAN 1:

                Subnet: 80.209.152.176/29

                GW:80.209.152.177

                Mask: 255.255.255.248

               

                Subnet: 192.168.100.8/29

                GW: 192.168.100.9

                Mask: 255.255.255.248

 

VLAN 10:

                Subnet: 46.102.218.48/29

                GW: 46.102.218.49

                Mask: 255.255.255.248

 

10.10.10.0/24 routed towards 192.168.100.12

 

As anybody got any basic instructions guides on how to get this MPLS up and running please, as trying to find any relivant info on the web on how to configure the forti correctly has returned  no information. Fortigate seem to be more pushing the SD wan idea.

 

Kindest regards

 

1 reply

Toshi_Esumi
SuperUser
SuperUser
November 26, 2018

Are these VLAN 1 and 10 are trunked at the MPLS provider's Cisco LAN side port? Or only VLAN 10 is on the port and VLAN1 is for FGT's LAN side use?

Another question is does this circuit come with Internet service or strictly for site-to-site MPLS and you have another Internet circuit at each location?

goldfield
goldfieldAuthor
New Member
November 27, 2018

Hi, Yes the VLANs are trunked at the providers end. 

Yes the services comes with internet.

As you can see the instructions above are vague.

 

my thoughts were to add the VLANs under the wan connector, and then add a static router from the internal network to the internal IP of the MPLS...

Does this sound about right or will i be missing something... the ISP are no use unless you use a cisco.

 

Cheers

 

 

bmorris
New Member
November 27, 2018

Hi Goldfield,

 

You can create a new VLAN interface on the GUI by going to:

 

Network > Create New > Interface

 

Then select:

Type: VLAN

Interface: WAN

 

 

 

Hope this helps.