Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
mbrowndcm
New Contributor III

Destination NAT by Interface

Hello, I would like to perform a destination NAT by interface. I need to establish a IPSEC VPN tunnel from the Fortigate unit through a double NAT. When packets: leave the dmz interface destined for 144.12.145.10 they must be NATed to 192.168.115.40 How do I do this, as utilizing an assigned firewall policy would not allow this.
" …you would also be running into the trap of looking for the answer to a question rather than a solution to a problem." - [link=http://blogs.msdn.com/b/oldnewthing/archive/2013/02/13/10393162.aspx]Raymond Chen[/link]
" …you would also be running into the trap of looking for the answer to a question rather than a solution to a problem." - [link=http://blogs.msdn.com/b/oldnewthing/archive/2013/02/13/10393162.aspx]Raymond Chen[/link]
10 REPLIES 10
mbrowndcm
New Contributor III

<Matt> Thanks very much! This will work, as confirmed with Fortigate support (already had a ticket opened for 7 days when I created this thread). I wish they did change that wording to even " IPsec packet NAT" or something more clear. Thanks, </Matt>
" …you would also be running into the trap of looking for the answer to a question rather than a solution to a problem." - [link=http://blogs.msdn.com/b/oldnewthing/archive/2013/02/13/10393162.aspx]Raymond Chen[/link]
" …you would also be running into the trap of looking for the answer to a question rather than a solution to a problem." - [link=http://blogs.msdn.com/b/oldnewthing/archive/2013/02/13/10393162.aspx]Raymond Chen[/link]
Announcements

Select Forum Responses to become Knowledge Articles!

Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.

Labels
Top Kudoed Authors