Skip to main content
LiveRock
New Member
October 20, 2021
Question

NOOB: Help to let 2 different subnet talk to each other

  • October 20, 2021
  • 2 replies
  • 3450 views

Hi

I have the Fortigate E80. Here is my set up:

1. Interface WAN1 - Internet

2. Interface Port 1 (192.168.1.1/255.255.255.0) DHCP - connected to CISCO Switch -> *Synology NAS 192.168.1.129 3. Interface Port 2 (10.10.7.1/255.255.255.0) DHCP - connected to Switch -> *Samsung TV 10.10.7.3 4. Firewall (1) Access Internet (2) Internal Network I can access internet from both Synology NAS and Samsung TV but I can't get the Samsung TV to detect the Synology NAS. I already have an Internal Network firewall with all sources, all destination, all service, accept. I tried both NAT enabled and disabled but still can't get them to talk to each other. What am I doing wrong here? Hope to hear from the experts soon.

Many thanks!

    2 replies

    rwpatterson
    New Member
    October 20, 2021

    If you already have a policy from port2 > port1 wide open, the issue may be on the TV end. NAT isn't needed here since you aren't leaving you inside network. Can you plug in a laptop on the TV port and trace route from there?

    spanz
    Visitor III
    October 20, 2021

    Did you try defining a Zone of the LAN trusted networks (port 1,2) ? and apply a policy as: Trusted_Networks > Trusted_Networks / Any / Any / Any / Accept

    I had this problem once and that was the solution.

     

    Thought Leadership Security Summit. Outpace New Threats with AI - enhanced defense. Tuesday, Septmeber 15, 8:30 AM - 2:30 PM PT. The Golf Club at Newcastle, WA.
    Fortinet Flag the Hack. Wednesday, August 26, 9:00 AM - 5:00 PM ET, COSM, Atlanta, GA.
    Virtual event | September 2026. SASE summit. The age of autonomous trust. Register here!