Hi everyone,
Setting up some FortiGates 60D in transparent mode, I came across an issue in which DHCP Discover broadcasts were blocked by the FortiGate.
Here' s the architecture :
DHCP Client <- internal : FortiGate 60D : wan1 -> DHCP Server (192.168.1.1)
I ran some tests but the interesting thing I believe is the following :
To allow DHCP Discover broadcast to go through, the only way I have figured out is to allow traffic that goes to the DHCP server to also reach 255.255.255.255 via udp 67 68 ports in the policy.
I am not sure if it' s a no go or not, seems ok, but in the meantime I have not found out the purpose of " broadcast-forward enable" option. Was it suppose to do the trick as according to the manual " to forward other IP broadcasts than ARP" ?
Or did I miss something ?

If anyone has an idea ?
Thanks for the help :)
