Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
ehsan230564
New Contributor

fortigate lan traffic out wan without nat

Dear sir,

 

Is it possible to out all the lan traffic through wan WITHOUT NAT for internet through cisco router connected to wan of the Fortigate firewall.

NAT in cisco router for internet , and all the traffic coming in for Fortigate lan from cisco router static route to wan of fortigate firewall.

 

FORTIGATE FIREWALL WAN CONNECTED TO CISCO ROUTER LAN.

 

FORTIGATE FIREWALL :-

 

lan : 192.168.1.0/24

wan : 172.16.100.1/30

 

POLICY : lan to wan without NAT

             wan to lan  without NAT

 STATIC ROUTE : 0.0.0.0 0.0.0.0 172.16.100.2/30 (cisco router lan IP)

 

 

CISCO ROUTER :-

LAN : 172.16.100.2/30

WAN : PUBLIC IP

all traffic from 192.168.1.0/24 to internet NAT through WAN.

 

STATIC ROUTE : 192.168.1.0/24 172.16.100.1 (ip of fortigate wan)

                         0.0.0.0 0.0.0.0 wan interface (cisco router)

 

 

Thanks and best regards.

 

 

 

 

1 REPLY 1
Keeper_of_the_Keys
New Contributor III

As long as you take care of all routing properly NAT is not mandatory, ie. the cisco device must know that the route to 192.168.1.0/24 is through the forti device.

Labels
Top Kudoed Authors