New Fortigate User (forgive my ignorance) Architecture Question
Well this is my first post here, so I'll just jump right into it.
After over a year of trying, I finally convinced management that we needed to implement a NGFW solution on our network. We wound up selecting a FortiGate 100F, as it suits our throughput needs fairly well.
Here is where I ran into a dilemma- our network configuration isn't exactly the simplest thing in the world. We have 3 separate internet connections feeding into two routers, then into 4 rack switches, etc. (I didn't set it up this way). Router A controls traffic for our internal network and Router B is only responsible for Guest WiFi APs. Router A also has several VPNs that connect to our off site locations.
Placing the FortiGate in NAT mode at the network edge was my first thought, but that would take down our VPNs and (I believe) there would be subnet conflicts between the two routers.
My next thought was to use Transparent mode and create VLANs to route traffic appropriately, would that be viable? I can't find a clear answer one way or the other.
Finally, I was considering utilizing VDOMs (one for Router A, one for Router B).
Which method would be recommended here? I'm a one man show and trying to learn all of this on the fly.
