Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
Bacus
New Contributor

Fortigate 110C Dmz

Hi

 

I am usinf Fortigate 110C v4.0,build0656,130211 (MR3 Patch 12). 

How can i create Dmz interface?

 

Thank you.

3 REPLIES 3
Toshi_Esumi
SuperUser
SuperUser

I believe 110C's 8 ports are switch ports. Unless you change the mode to "interface" mode, you can split them to individual ports. But if I remember correctly that feature wasn't available with v4.0MR3. I might be mistaken though. I recommend upgrading to 5.0 or 5.2 to try.

Bacus

Hi Toshi

Thank you for your answer. Let me explain you what i want to do:

I have a Cisco 2900 series router and i need to assign an ip address from one of our 16 ip address.

One ip adress used WAN1 for general internet connection. When i try create an interface existing idle port as Dmz and assign an ip from our block it going conflict because ip address is in same subnet as the WAN1.

 

It will be possible that you said in previous message?

 

Thank you.

 

Toshi_Esumi

Even Cisco routers wouldn't allow you to do that. No, it's not possible. DMZ should have a separate subnet from any others. Then you need to create a set of policies to allow access from inside and outside. Outside access needs to be nated.

Announcements

Select Forum Responses to become Knowledge Articles!

Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.

Labels
Top Kudoed Authors