Hello,
We do design for Fortigate SAP HANA solution and want to use Fortigate in NAT mode between corporate network and SAP HANA network. Also we suggested to put SAP HANA network behind the NAT (which implemented on FG). If SAP HANA has many inbound connection (for example, 5 000), and FG has SNAT limitation in 10 000, we will reach 1/2 NAT size, and if each connection will use 2 tcp ports we will reach SNAT maximum walue. FG model - 1200D.
So the questions is:
does anyone have the same experience and put SAP behind the NAT? Did you have any issues with NAT size?
is it good idea/practice to put SAP HANA behind the NAT and hide it from customer at all? Does anyone has different ideas?
Thank you for ideas and help,
Slava.
Nominating a forum post submits a request to create a new Knowledge Article based on the forum post topic. Please ensure your nomination includes a solution within the reply.
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1733 | |
1106 | |
752 | |
447 | |
240 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.