Created on 09-17-2024 01:35 AM Edited on 09-17-2024 10:53 PM By Anthony_E
Description | This article describes how to disable firewall features on FortiGate and configure FortiGate as a Layer3 router. |
Scope | FortiGate. |
Solution |
FortiGate is a stateful inspection firewall; by default, firewall features are enabled.
FortiGate supports various routing protocols including RIP, OSPF, BGP, and IS-IS. These protocols help in building a map of the network topology to identify the best routes to reach different destinations.
It is possible to use FortiGate as a Layer 3 router by enabling asymmetric routing.
config system settings
If VDOM is enabled on FortiGate, it is possible to enable Asymmetric routing in each VDOM:
config vdom
Note: FortiGate will still behave as a firewall blocking all traffic. To allow any traffic to cross the firewall as a router does a firewall policy will be needed between any interface to any interface allowing all traffic. The following firewall policy does that:
config firewall policy
Related article: Technical Tip: How the FortiGate behaves when asymmetric routing is enabled |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.