Hi,
I have a Fortigate 100e configured with 2 ports.
[ul]
I would like to plug in a computer to the same switch as my APs but I would like to obtain an IP address of 10.0.3.x instead of a 10.99.99.x (The same IP that my APs give out when I connect to the AP).
If this is possible, please let me know what info you need.
Thanks,
Matt
You have to check your routing and also check your ipv4 rules.
From fortigate if you can ping both subnets means that you are ok with routing. You should be ok because you are saying that both of the subnets are directly connected to your fgt.
At ipv4 policy you must have at least tow rules.
1.
From port 1
To port 2
Source all
Destination all
Service all
NO NAT
2.
From port 2
To port 1
Source all
Destination all
Service all
NO NAT
Do you have this configuration already?
Orestis Nikolaidis
Network Engineer/IT Administrator
Yes I do now. It is working now. Thanks
I have a new question and I just updated my post.
I think that you have to configure two vlans on your switch. One will be tagged and one untagged to the port/s you want. Then you have to configure the same way at your fortigate interface.
Orestis Nikolaidis
Network Engineer/IT Administrator
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1744 | |
1114 | |
760 | |
447 | |
241 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.