| Description | This article discusses default route behavior in the FortiWeb Public Cloud platform and how to modify it according to environment requirements. |
| Scope | FortiWeb-VM Public Cloud platform. |
| Solution |
FortiWeb-VM in the Public Cloud platform by default uses the DHCP interface in port1. IP address and gateway route retrieved from the DHCP server. Normally, port1 is used for Management access and no Internet access is allowed for the subnet.
Requirement:
Topology sample(Azure):
In FortiWeb configuration, a default gateway is automatically added due to its DHCP interface mode.
config system interface config classless_static_route edit "port2" config classless_static_route end
The FortiWeb route table shows the default gateway via port1 selected for traffic forwarding although a default route is configured to forward all traffic via port2.
config router static
diagnose network route list
To enforce the default route according to the static route in configuration, apply the below CLI command lines.
diagnose network route list
From v6.3.6, only port1 is required to enable DHCP mode':
For more information about FortiWeb Public Cloud platform deployment: |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.