Good evening all,
I have a configuration that I am not sure why it does not work.
This is Fortios 6.2.2
I attached the topology.
Static route on FTG is
10.10.1.0/24 to 10.10.1.254
10.10.101.0/24 to 10.10.1.254
10.10.102.0/24 to 10.10.1.254
VLAN90 - 10.10.1.1/24 with default gateway 10.10.1.254
ping from Cisco 3750 switch to SVI interface of VLAN 101, has ping reply
ping from Cisco 3750 switch to FTG - 10.10.1.1, has ping reply
ping from PC1 to PC2, has ping reply
ping from PC2 to PC1, has ping reply
ping to 10.10.1.254 has ping reply
ping from PC2 to 10.10.1.1(FTG internal interface), has no reply
Ping from PC2 to WAN1 also has no reply
It seems the out going routing from different VLAN from VLAN90 will not be able to reach the internal FTG or external FTG WAN interface.
Do you know why it does not be able to ping? I cannot ping 8.8.8.8 as well.
PS: the ping has enabled on the interface.
Nominating a forum post submits a request to create a new Knowledge Article based on the forum post topic. Please ensure your nomination includes a solution within the reply.
The issue is resolved I have to engage the Fortigate solution engineer. Basically changed from physical switch vswitch interface to use physical interface directly as I have all the rule and configuration configured. Make sure to reboot the Fortigate after the change (this is the main reason why I configured using different type of interface even through I don't change the mode type, it still have to reboot)
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1733 | |
1106 | |
752 | |
447 | |
240 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.