Could someone, as if they were speaking to a child, explain the steps and infrastructure I would need to accomplish this:
I have a Fortigate 60e firewall.
I have been tasked with setting up a network with 4 VLANs with different subnets. VLAN1 contains a proxy server and there is to be no internet access except through this proxy for both VLAN1 AND VLAN2. VLAN 3 and 4 I can control normally with the 60e policies.
So far I am thinking, create 4 vlans in the 60e.
Vlan 3 and 4 are fine to deal with normally.
Now I just don't understand networking enough to know what to do from here.
How do I set up a proxy on VLAN 1 (squid?) and then how do I get traffic from vlan2's subnet going over to vlan1's subnet and going through the proxy? How does that work?
Gateways, switches, broadcast domains, multiple subnets???
Could someone please give me a little guidance here?
I feel out of my depth here so thanks for any help guys :)
Jono
Nominating a forum post submits a request to create a new Knowledge Article based on the forum post topic. Please ensure your nomination includes a solution within the reply.
Orestis Nikolaidis
Network Engineer/IT Administrator
If you are only talking about web traffic, look into explicit web proxy :
If you are terminating the L2 vlans on the Fortigate this shouldn't be a problem.
Web proxy is configured in the browser in most cases , like in Firefox :
Preferences -> Network Settings -> Manual proxy configuration
NSE7, FMG, FAC, FAZ .
1500D's, 1200D's, 900D's, 300D's, 200D's, 100D's and bunch of small stuff.
Guys thanks so much for the help... I am trying to implement now. Will let you know how it goes!
Just to follow up, this worked great. Fortigates are awesome!
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1712 | |
1093 | |
752 | |
447 | |
231 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.