Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
BensonLEI
Contributor

Double NAT and IP-transit ?

Hi, guys,

 

I have a configuration is similar to the following case, but with two physical locations ( they have their own internet access network ).

 

Double NAT? | Fortinet Technical Discussion Forums

 

My network is modified as the attached.

1. two sites ( SiteA and SiteB), they have their own internet access ( the firewall default route pointing to WAN routers )

2. when an internet user accesses an WAN IP (like 172.16.17.10 - WAN IP configured in SiteA Foritgate 400E), the user will be forwarded ( can access ) the LAN IP = 192.168.11.173 in SiteB

3. When an Internet user accesses an WAN IP in SiteB Fortigate 600E, the user also is able to access the server (VIP in Fortigate 600E ).

 

Any configuration example for the item 2, thanks so much for your great help in advance.

 

 

 

1 REPLY 1
pbangari
Staff
Staff

Hi, you can configure a V-IP (172.16.17.10 to 192.168.11.173) on the site-A Fortigate, route to 192.168.11.173 towards Site-B, firewall policy and firewall policy on the site-B Fortigate also to allow access to the server.

Labels
Top Kudoed Authors