Have a new new client and found they have a Fritzbox managing some analog phones and not willing to move so planning on putting FOrtiGate inside to manage LAN and leaving Fritzbox on the WAN but unsure of setup.
WAN --> FritzBOX --> FortiGate -- > LAN
Would I assign the connection between FritzBOX and FortiGate their separate subnet then create a policy to send LAN traffic out this interface or would further config be required?
FritzBOX LAN1: 192.168.1.1
FortiGate LAN1: 192.168.1.2
Fortigate LAN2-6: LAN 192.168.10.0/24
Policy:
Incoming interface: LAN2-6
Outgoing interface: LAN1
all all etc
Would this work? appreciate any help
I'm watching this with interest as I have a similar situation.
The Interface your Fritz!Box is connectrd to is acting as you rWAN for internet then right?
I have one site here that has a Fritz!Box as one WAN too. So Fritz!Box is connected to one of the WAN ports (but you could use any other port too) and I put it into sd-wan as I need some loadblancing to happen.
Then there is just policies to allow traffic to flow that I need to be able to reach the Fritz!Box (like I need to access to Froitz fro HQ via S2S IPsec on the FGT) and it is fine.
Just for inside services (like I had to to for ipsec) you then might have to do some port forwarding on the Frtz...
--
"It is a mistake to think you can solve any major problems just with potatoes." - Douglas Adams
Does the Fortgate have to be ethernet cabled to the Fritz router or can one do this using wi-fi and a Fritz repeater ? Reason for asking is that I tried the latter and it failed to do any connnection from the Fortigate back to the router.
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1743 | |
1114 | |
760 | |
447 | |
241 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.