Created on
08-12-2024
02:23 AM
Edited on
12-21-2025
07:05 AM
By
Jean-Philippe_P
| Description | This article describes how to add multiple FortiGates behind a NAT device (router or upstream FortiGate) to the FortiManager using the upstream device's Public IP. |
| Scope | FortiGate, FortiManager. |
| Solution |
The setup is as per below: FGT1 -------> FGT2 -------> Internet ---> FortiManager.
FortiManager IP: 10.47.1.224. FGT1 WAN IP: 10.47.1.72. ON FGT1: Loopback interface IP: 172.21.11.10.
config system central-management
On FGT2:
Policy configuration as per below:
Note: Port5 is where FGT2 will receive traffic from FGT1 Loopback IP. Port1 is the WAN interface in FGT2.
On FortiManager, after authorizing:
Notes:
Related article: Technical Tip: How a FortiManager can manage a FortiGate via Redundant WAN interfaces |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2026 Fortinet, Inc. All Rights Reserved.