Remotely access out of band/management network over vpn
Hi Everyone, I would like to setup some kind of out of band network with the 501E pair of firewall I am currently configuring. I have a separate management network from the data network. The fortigate's management port is uplinked to the management network switch, and also have uplink to the data plane network switches. I was wondering if it would be possible to access the management network remotely over SSL/Ipsec vpn by adding some polcies that would allow traffic from VPN interface to management interface. I know that data traffic shouldn't transit over the management interface, but in this case I don't want to use it as a "data" interface but rather use it to to remotely access management network over SSL/VPN. Currently look like management interface doesn't show up in the policies. Should I just add another "data" lan interface that I could use to jump in the management network for SSL/VPN remote connection? Wouln't this cause confusion to the FGT as the management and lan interface be in the same subnet?
Thanx for your help/suggestion...
