Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
jared
New Contributor

FGT ZTNA Cross-Three Layer Architecture

topology

FGT>>>>>L3-switch>>>l2-switch >>>PC

 

 

 

Can IP/mac filtering function in this design in this architecture?
Why do you need the default gateway in FGT, this point is not very understandable to me.

Is it possible to use only IP across three layers of architecture?

 

3 REPLIES 3
Anthony_E
Community Manager
Community Manager

Hello jared,

 

Thank you for using the Community Forum. I will seek to get you an answer or help. We will reply to this thread with an update as soon as possible.

 

Thanks,

Anthony-Fortinet Community Team.
Anthony_E
Community Manager
Community Manager

Hello jared,

 

Could you please indicate us:

 

- Which models you are using?

- Which versions?

 

Thank you in advance.

 

Regards,

Anthony-Fortinet Community Team.
jared

thx your reply.

FortiGate 40F、201E

I have tried using FOS7.0.0 to 7.0.5.

FortiEMS version is 7.0.3 to 7.0.4.

Fortilcient MacOS 7.0.3 to 7.0.4  .

 

I can get the IP address through the diagnostic command "diagnose firewall dynamic list". But it doesn't work either.
I have recommended this solution to my client, but the test results so far make me doubt the feasibility of this solution.

Labels
Top Kudoed Authors