Description | This article describes how to allow PXE packet forwarding. |
Scope | FortiGate. |
Solution |
The PXE (Preboot execution environment) called 'Pixie' is a set of standards that makes it possible to boot up a connected device (client), using a configuration provided from a TFTP server and received via network interface.
In this scenario:
This differs from the scenario described here: Configuring FortiGate for PXE Client booting. The FortiGate in that scenario acts as a DHCP Server, while the FortiGate here acts as a DHCP Relay.
The packets flow will be as follows:
It is necessary in a firewall policy to allow packets 5 and 6 to be forwarded, as packet 5 will otherwise be discarded from the last implicit firewall policy and packet 6 will never be sent from the Server.
The firewall policy should have the following:
Important notes:
Correlated documents and articles: |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.