Transparent VLAN between LAN and WAN
Hello.
I searched forum, google and reddit and still can't do it.
Our ISP manage our switches in lan. He have his router connected to our FG WAN and his switch connected via trunk on our FG aggregate (HA1+HA2).
I have 2 VLANs on WAN interface - VLAN 99 (internet) and VLAN 6 (switch management).
On LAN side (aggregate port) I have a few vlans in trunk included VLAN 6.
Fortigate run in NAT mode, internet on all VLANs working fine.
However i need do transparent config for VLAN 6 - between connection on WAN side and connection on LAN (HA) side.
How can i do this?
I read this - https://community.fortinet.com/t5/FortiGate/Technical-Note-Configure-a-FortiGate-unit-in-Transparent-mode/ta-p/194458 and this https://docs.fortinet.com/document/fortigate/7.4.3/administration-guide/402940/vlan
It's the same, based on informations in articles it should work but not working for me, I don't know why.
Next I want to try Virtual pairs - https://docs.fortinet.com/document/fortigate/7.4.3/administration-guide/335884/using-vlan-sub-interfaces-in-virtual-wire-pairs - but cannot select any of members - list is empty, despide the fact I have no configuration on VLAN 6 interfaces.
I saw something like l2forward or vlanforward or forward-domain parametres on interfaces, but have no idea how it works and if it's what I need. In manual I see only infromations like "it enable ... or it disable..", buť no practical info:(
Thank you for your tips.
Rob
