I got fibre Internet last week, so a new provider.
Looks like my provider is NATing, because the IP on WAN1 I get via DHCP from them (100.74.0.x) is different than the public IP, I get when I look with WhatIsMyIP (185.246.22.x).
I got in touch with the provider, they said all ports should be open for me, so I should reach my servers behind it.
The problem is, looks like nothing is reaching my Forti, when I ping my public IP and sniff with "diag sniffer packet wan1 icmp" I don't see my pings. But I get an answer on the device I send the pings from, so looks like something from my provider is answering them.
I also configured a SSL VPN + Policy on my Forti, it says it's listening on the WAN1 IP (100.74.0.x) on port 10443, but is not reachable from outside, only in my own network.
So I thought probably because it thinks there is no NAT from the provider, so the other IP should reach it.
I made a VIP, that listens on the public IP (185.246.22.x) and forwards 10443 to the wan1 IP (100.74.0.x), sadly still not working.
Do you guys have any idea, is it because the provider nat / problem on their site?
Any troubleshooting I can try?
I'd love to get some useful advice and bring my docker cluster + VPN finally back online. :)
Thanks for your answer, I'm not sure if I can do that, since the Forti in registered in the name of the company I work for, I'm just allowed to use it as my home device until I get one cheap with the employee discount (we are fortinet partner).
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.