Skip to main content
alinbuletin
New Member
June 25, 2015
Question

multiple public addresses

  • June 25, 2015
  • 1 reply
  • 2582 views

Hi,

 

I have 4 public IP's given by our Internet supplier and I'm wondering if there is any way to push them thru Fortigate 100D LAN ports without NAT. I want to avoid the installation of another switch in between the ISP box and my firewall, in order to assign the 4 public IP's to another devices that I have on the plant.

Thanks,

 

Paul

    1 reply

    Big_Abe
    New Member
    June 26, 2015

    Hey Paul, 

     

    It's pretty tough to answer that exactly or with efficiency in mind without knowing the rest of your setup.  I'm taking a LOT of guesses 

     

    I'm not too familiar with the 100D - but on my devices that I have all over the place I can assign a particular node with an external IP by creating an interface with the range that you have, then create objects for each external IP and map that to the VLAN.  That brings layer 2 to a layer 3 object and you can still use Application Sensors / IPS etc. 

     

    Anyone can feel free to correct me if I'm wrong.  I know I have at least 1 endpoint configured directly with an external IP and from memory thats how I did it.  VLAN object -> Single IP Object within range on Interface -> ISP. 

     

    I would also look to see if you can use NAT and internal addressing.  It'll probably save you headache down the road.  My $0.02 and I'm FULLY aware I'm still learning. 

     

     

     

    Thought Leadership Security Summit. Outpace New Threats with AI - enhanced defense. Tuesday, Septmeber 15, 8:30 AM - 2:30 PM PT. The Golf Club at Newcastle, WA.
    Fortinet Flag the Hack. Wednesday, August 26, 9:00 AM - 5:00 PM ET, COSM, Atlanta, GA.
    Virtual event | September 2026. SASE summit. The age of autonomous trust. Register here!