Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
philippegui2
New Contributor

IP source rewriting with fortigate

Hello, I have a fortigate on which I have a VPN that works well. My concern is that a subnet is repeated on both sides, a specific machine on one side must communicate with others on the other side but as his address is repeated these requests are redirected elsewhere. I would like to do a NAT by giving a public IP address to reach and arrived at the firewall I assign a NAT. except that for the return I have to change the source address, how could I do this on a fortigate 200D?
2 REPLIES 2
Dave_Hall
Honored Contributor

See Site-to-site IPsec VPN with overlapping subnets on the Fortinet Cookbook site.

 

http://cookbook.fortinet.com/vpn-overlapping-subnets/

NSE4/FMG-VM64/FortiAnalyzer-VM/6.0 (FWF30E/FW92D/FGT200D/FGT101E/FGT81E)/ FAP220B/221C

NSE4/FMG-VM64/FortiAnalyzer-VM/6.0 (FWF30E/FW92D/FGT200D/FGT101E/FGT81E)/ FAP220B/221C
ede_pfau

Yupp, this will cover the means to achieve this.

Source NAT is done via 'IP pools'. Destination NAT is done via 'VIPs'.


Ede


"Kernel panic: Aiee, killing interrupt handler!"
Ede"Kernel panic: Aiee, killing interrupt handler!"
Labels
Top Kudoed Authors