# config firewall {policy | policy6}In some cases CoS marking have to be applied for the FortiOS self-originated traffic.
set vlan-cos-fwd <int>
set vlan-cos-rev <int>
end
LAN----root vdom-[inter vdom interface] --- [inter vdom interface]-TRANSPARENT_VDOM-----Internet_gateway6) Let`s assume that ISP have provided a static public IP address and it has to assigned to the FortiGate. With our current setup, that public IP address will have to be assigned to the inter VDOM interface on the root VDOM.
Public IP address is x.y.z.5/30Diagram with IP addressing should be like:
Default gateway is x.y.z.6/30
LANβ[port1:10.0.0.1/24]- root vdom β [inter vdom interface:x.y.z.5/30] β [inter vdom interface:no_ip_address]-TRANSPARENT_VDOM-[wan1:no_ip_address]---[ x.y.z.6/30]-Internet_gateway7) Create a firewall policy on the TRANSPARENT_VDOM, which would allow traffic from the Inter VDOM link to the WAN interface.
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.