Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
smilings
New Contributor

ISP to Fortigate 100F to Cisco FTD1140

We currently have a cisco FTD1140 as the main firewall but are now planning to add a Fortigate 100F in front, between the ISP and Cisco. Not exactly sure how to configure the IP's of the Fortigate 100F to allow traffic to passthrough. The Fortigate will serve as a filter in order to reduce the load on the Cisco. Any ideas on how to configure the Fortigate.

 

Eventually we will setup the fortigate as SD-WAN. Here's a picture of what I believe it will look like.

 

1 REPLY 1
distillednetwork
Contributor III

One option would be to put the firewall inline using virtual wire pair, it will inspect the traffic as it passes through but does not do any routing, etc.

 

The second, would be to put the public ips on the firewall and then create a /30 or similar network between the fortigate and cisco to route the traffic through.  All VIPS, IP Pools, VPNs etc would probably want to be moved to the fortigate in this scenerio.

::: If a solution is helpful, don't forget to give kudos or Accept as Solution for others. :::
::: If a solution is helpful, don't forget to give kudos or Accept as Solution for others. :::
Announcements
Check out our Community Chatter Blog! Click here to get involved
Labels
Top Kudoed Authors