Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
David_Chernay
New Contributor

Fortigate as SSL VPN BEHIND another router

Is this an option? What is the simplest way to set this up? We are thinking that we can change the LAN IP of the fortigate open 443 on the new router to go to the fortigate. What routing would we need? Thanks David
1 REPLY 1
svacs
New Contributor

We have this exact setup Internet > Router > FortiGate SSL-VPN On the router and FortiGate unit I had to configure NAT and allow port 10443. Our OWA uses port 443 so we changed the ssl vpn to use port 10443. Router <-> WAN Int.--(FortiGate)--LAN Int.<-> Switch The SSL-VPN will only work in NAT Operation Mode. e.g. On our cisco router nat config: ip nat inside source static tcp X.X.X.X(WAN Int IP) 10443 X.X.X.X (Internet facing IP) 10443 extendable You' ll also need to configure NAT on the fortigate device.
Announcements

Select Forum Responses to become Knowledge Articles!

Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.

Labels
Top Kudoed Authors