Hello,
I try to set up DMZ with the help of our Fortigate machine. I have done all steps in this recipe http://cookbook.fortinet.com/protect-a-web-server-with-dmz/, but nothing works. DMZ interface is up and enabled, but I can't get to a computer behind it.
I can't even see statistics for dmz interface in Policy&Objects - Monitor - Policy Monitor.
Our Fortigate unit is 200D, firmware version 5.2.5
I can describe what I have done so far. First I set up DMZ interface (attachement - section DMZ interface). Than I set up virtual IPs - http and https (section Virtual IP). Finally I configured two ipv4 policies (LAN policy, WAN policy).
What else shall I do?
Thanks
As long as three components 1) routes, 2) policy, and 3) VIPs from outside access are there, it should work. I would allow all-ping on the policies and test from inside interface first. If that works, then sniff&check 1-to-3 when you ping from outside.
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1749 | |
1114 | |
765 | |
447 | |
241 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.