Port Forwarding Additional WAN IP Subnet not working
- April 2, 2019
- 7 replies
- 9124 views
Hi Guys,
Thanks for the Forum it is super helpful and has helped me with other problems that I have had.
For this particular problem I have spent quite a bit of time reading through the posts on the fortinet forum and the various cookbooks to find out what I am doing incorrect that this does not work. Unfortunately I do not have a team that is able to work with me on this and I am doing it by myself so thought that maybe someone can critique my config and spot what I am missing and hopefully point me in the right direction. I have a FG 100E it is OS 5.4.1 I have my main subnet as 12.12.12.228/30 Then I have additional subnet as 5.5.5.224/29 The modem only has one port connecting to WAN1. The FG has WAN1 with IP Address 12.12.12.230 I have tried the following recipe and others similar to: https://cookbook.fortinet...re-port-forwarding-54/ The closest that I can get is online websites saying that port 22 is open for 5.5.5.228. But if I try to SSH into this I do not get connection and it just times out. On that server I can curl a website and it even says that I have the address 5.5.5.228 but does not respond. The server is accessible on the internal network and receives ssh requests and allows login.
Basically the idea that should work:
The Fortigate with WAN1 - 12.12.12.230/30
have the additional static WAN address 5.5.5.228:22 forwarding to 192.168.45.10:22 which is on port14 of the Fortigate.
I have tried assigning to WAN1 a second IP address of 5.5.5.226 but still no luck.
I have also tried adding a 2nd static route as well for the 5.5.5.224/29 subnet.
I tried adding a policy route but no luck.
I have attached the conf with sensitive data removed and only the made up addresses and names. Hopefully someone can give me a heads up on this one.
Again thank you for taking the time.
Cheers
David
