Hi. Is it possible to configure the system for FG-60E so that in transparent mode it can download signatures for security services. FG-60E would be between the optical modem (also in transparent mode) and another main firewall (NGFW). In this other NGFW there is the IP address of the WAN gateway to the Internet.
Solved! Go to Solution.
You got it!
Use wan2 with L3 configuration as admin interface, you can connect it into your customer LAN.
Best regards
No, you need at least one IP for internet connection for updates,
Maybe if you use 3rd port connected to LAN and receive internet from NGFW.
Also, in your architecture you lost visibility of internal network traffic, you only see traffic from your WAN IP.
Better place for this scenario is between NGFW and LAN.
I know that the solution you suggested is the most convenient, but my main NGFW already supports LAN's, WLAN and 3 access points, all connected to 6 LAN interfaces. Would configuring a second WAN in FG-60E (different IP address) allow the FG-60E to contact license servers? I mean WAN1 in transparent mode with LAN1 and WAN2 external IP to the Internet.
You got it!
Use wan2 with L3 configuration as admin interface, you can connect it into your customer LAN.
Best regards
Created on ‎01-21-2026 09:54 AM Edited on ‎01-21-2026 09:56 AM
Will CLI commands like those listed below be suitable?
1. Transparent mode:
config system settings
set opmode transparent
end
config system interface
edit "mgmt"
set ip 192.168.X.X 255.255.255.0
next
end
====
2. WAN2 for DHCP:
config system interface
edit "wan2"
set mode dhcp
set allowaccess ping https ssh
next
end
====
3. Polisy for FortiGate to WAN2:
edit 1
set name "FGT-to-Internet"
set srcintf "any"
set dstintf "wan2"
set srcaddr "all"
set dstaddr "all"
set action accept
set schedule "always"
set service "ALL"
set nat enable
next
end
====
4.Test:
execute ping 8.8.8.8
execute ping update.fortiguard.net
| User | Count |
|---|---|
| 2920 | |
| 1452 | |
| 858 | |
| 826 | |
| 455 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2026 Fortinet, Inc. All Rights Reserved.