Question
Multiple IPs on one Interface - Beginner Questions
Hi everybody. First I want to say I' m new to this Forum, I' m not a native English speaker, however I read many of Fortinets manuals trying to understand the basics of FortiOS but I cannot solve some Problems so I hope you can help me. I have a IP-pool from my ISP and until now I had only one external IP active and managed to reach my different internal Servers via VIPs and Port forwarding which is quite annoying. Since I' ll get a second Webserver soon and I don' t want another :8880 suffix to my FQDN I' m trying to figure out how to manage multiple IPs on my WAN Interface. Some Information: 1) We are talking about a FortiWifi 80CM running on OS 4 MR 3 2) My WAN interface has a IP range and I added the adresses I want to ditribute as secondary IPs with /32 range e.g. 170.170.170.50/28 (WAN interface) Secondary IP adresses: 170.170.170.51/32 170.170.170.52/32 3) I created VIPs for both external IP and the corresponding internal IP e.g. 170.170.170.51 -> 10.0.0.51 4) I created a policy allowing the traffic (e.g. port 80 / HTTP for my Webserver) from WAN to INT My internal Interface is running in switch mode and naturally is connected to our main switch where all other device and servers are connected to. I can ping the " new" adress but I cannot display the test-Webpage I have created. Would you recommend changing the mode from switch to interface and connecting the servers physically? Is there any major mistake in my configuration? Basically, all I need is NAT or do I forget some important thing? I really appreciate some help! Thanks in advance
