Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
rodeca
New Contributor

Fortigate 50B.

I' ve set up several F50B using WAN2 as a DMZ port. Now I am wondering if I could use WAN2 as LAN y Internal as DMZ. Reason: I need only 1 port for LAN and 2 ports for DMZ (and I could save a switch). Now, the question: If I need no DHCP, nor DNS relay, nor HA and I use WAN1 as Wan Is there any difference (related to IPS, Antispam, etc.) between WAN1, WAN2 and INTERNAL? TIA Rodeca
7 REPLIES 7
rwpatterson
Valued Contributor III

Welcome to the forums. The interface names are just for ' human' use. Any interface could be used for any purpose. You control filtering, routing, etc. via the policies.

Bob - self proclaimed posting junkie!
See my Fortigate related scripts at: http://fortigate.camerabob.com

Bob - self proclaimed posting junkie!See my Fortigate related scripts at: http://fortigate.camerabob.com
UkWizard
New Contributor

to my knowledge, their is absolutely no difference between any of the ports, all can be used for any purpose. the names like " wan2" are purely a suggestion. so yes, you can use anything for anything.
UK Based Technical Consultant FCSE v2.5 FCSE v2.8 FCNSP v3 Specialising in Systems, Apps, SAN Storage and Networks, with over 25 Yrs IT experience.
UK Based Technical Consultant FCSE v2.5 FCSE v2.8 FCNSP v3 Specialising in Systems, Apps, SAN Storage and Networks, with over 25 Yrs IT experience.
romanr
Valued Contributor

There is no difference between the Interfaces (besides the switch!). With every Fortigate you can use every Interface for whatever you want to!!!! cheers.roman
UkWizard
New Contributor

LOL We all replied within 20 minutes of the posting .... hehe not bad. we should start charging.... takes fortinet longer to acknowledge a new support call.
UK Based Technical Consultant FCSE v2.5 FCSE v2.8 FCNSP v3 Specialising in Systems, Apps, SAN Storage and Networks, with over 25 Yrs IT experience.
UK Based Technical Consultant FCSE v2.5 FCSE v2.8 FCNSP v3 Specialising in Systems, Apps, SAN Storage and Networks, with over 25 Yrs IT experience.
rwpatterson
Valued Contributor III

I accept PayPal!

Bob - self proclaimed posting junkie!
See my Fortigate related scripts at: http://fortigate.camerabob.com

Bob - self proclaimed posting junkie!See my Fortigate related scripts at: http://fortigate.camerabob.com
UkWizard

I accept PayPal!
me too I must admit, a while ago i did think of starting a website up to offer fortinet support on a remote help for payment to charities basis.... Thought as we probably resolve queries more than fortinet support, at least the charities would benefit....
UK Based Technical Consultant FCSE v2.5 FCSE v2.8 FCNSP v3 Specialising in Systems, Apps, SAN Storage and Networks, with over 25 Yrs IT experience.
UK Based Technical Consultant FCSE v2.5 FCSE v2.8 FCNSP v3 Specialising in Systems, Apps, SAN Storage and Networks, with over 25 Yrs IT experience.
rodeca

Thank you, everybody. Rodeca P.S.
ORIGINAL: romanr There is no difference between the Interfaces (besides the switch!).
... well, and F50B admits DNS relay only in Internal ... But I understand we are talking about security (which is what counts here)
ORIGINAL: UkWizard LOL We all replied within 20 minutes of the posting .... hehe not bad.
That' s why TI guys (at least me) look forums before looking support
Labels
Top Kudoed Authors