Hi Everyone,
any suggestions about my concern,
we bought fortigate 60e recently
our existing network has rv340, it handles vlan routing with sg200-w6 cisco switch.
my objective is to add the 60e to the network for adding security like wf,av and sd-wan
anyone can teach me how to config these topology.
please see the attached file for the plan.
thank you
Nominating a forum post submits a request to create a new Knowledge Article based on the forum post topic. Please ensure your nomination includes a solution within the reply.
I would personally add another vlan on the RV and create /30 network between the RV and fortigate. Then just setup all rules etc for internet access and point the default gateway of the RV to the LAN IP of the Fortigate...
Do you not need any security between VLANs? I'd just take the RV out of the network altogether and make the FortiGate your router. Gives you a lot better security and visibility into what's on your network. You can do it on a trunk or you could separate each VLAN out into different interfaces (set as untagged on your switch) on the firewall. Of course you'll need to break apart the internal switch on the FortiGate into individual interfaces too, but any/all of that is well worth it IMO.
And yeah you can't have the same subnet on both sides of a router anyway, so with your topology if VLAN 10 has the same address space as you were planning to have the FortiGate in, it won't work.
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1688 | |
1087 | |
752 | |
446 | |
227 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.