Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
cgordondgrsys
New Contributor III

FortiGate wwan passthrough

Hey guys,

 

I got a weird one here. I know the FortiExtender is the device to make this happen but a need has come up to try and see if this works on a Dual 3G4G 70G. Idea is that the FortiGate WWAN interface would terminate the connection to the private cellular APN and then pass the assigned IP through to a device behind it.

 

I also found this doc but I don't think it is quite what I am looking to do.

https://docs.fortinet.com/document/fortigate/7.6.4/administration-guide/862747/direct-ip-support-for...

3 REPLIES 3
Anthony_E
Community Manager
Community Manager

Hello,


Thank you for using the Community Forum. I will seek to get you an answer or help. We will reply to this thread with an update as soon as possible.


Thanks,

Anthony-Fortinet Community Team.
Anthony_E
Community Manager
Community Manager

Hello,

We are still looking for someone to help you.

We will come back to you ASAP.


Thanks,

Anthony-Fortinet Community Team.
Jean-Philippe_P
Moderator
Moderator

Hello cgordondgrsys,

 

I found this solution. Can you tell me if it helps, please?

In the scenario you described, FortiExtender is typically used to extend the WAN interface in IP pass-through mode, allowing the FortiGate to manage the connection and apply security policies. However, if you are considering using a dual 3G/4G setup with a FortiGate WWAN interface to terminate the connection to a private cellular APN and pass the assigned IP to a device behind it, here are the steps you might consider:

 

  1. Configure FortiGate WWAN Interface:
    - Set up the WWAN interface on the FortiGate to connect to the private cellular APN.
    - Ensure that the FortiGate is configured to handle the IP assignment from the cellular network.

  2. Enable IP Pass-Through: Configure the FortiGate to operate in IP pass-through mode, if supported, to pass the assigned IP address to the device behind it.

  3. Device Configuration: Ensure the device behind the FortiGate is configured to receive the IP address passed through from the FortiGate.

  4. Security Policies: Apply necessary security policies on the FortiGate to manage and secure the traffic passing through the WWAN interface.

  5. Testing and Validation: Test the setup to ensure that the IP address is correctly passed through and that the device behind the FortiGate can communicate as expected.

 

Please note that the specific capabilities and configurations may vary based on the FortiGate model and firmware version. If the FortiGate does not support IP pass-through in this manner, you may need to consider alternative configurations or consult Fortinet support for further assistance.

Regards,

Jean-Philippe - Fortinet Community Team
Announcements
Check out our Community Chatter Blog! Click here to get involved
Labels
Top Kudoed Authors