Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
ashleybabajee
New Contributor

No Internet on branch

Hi Guys,

 

Users on my LAN are able to get internet, however user on another branch are not able to get internet but are able to access the servers on my LAN.

 

One firewall interface is connected to the branch router which itself is on an eigrp network with other branch routers.

We had a McAfee firewall previously and everything was working fine, since we migrated to Fortigate, LAN user can get internet, Branch user can get access servers on LAN but can get internet.

 

Grateful if i can get some help.

3 REPLIES 3
Toshi_Esumi
SuperUser
SuperUser

You need to describe the network setup more to let anybody understand how it's designed to work. How remote office is connected to your site? IPSec VPN from a FW into your FGT? Is it split-tunnel or remote's internet access comes over the VPN?

rwpatterson
Valued Contributor III

Welcome to the forums. A few things need to be in place for that scenario. Assuming nothing changed in the branch end:

 

Static route on the home office FGT back to the branch office with a lower distance than the default

A properly configured VPN tunnel with the appropriate subnets defined that can traverse the link

Policy(s) on the home office FGT to pass branch office traffic out the default gateway

Appropriate web filtering if you are doing that (not required for Internet access)

Bob - self proclaimed posting junkie!
See my Fortigate related scripts at: http://fortigate.camerabob.com

Bob - self proclaimed posting junkie!See my Fortigate related scripts at: http://fortigate.camerabob.com
ericli_FTNT
Staff
Staff

ashleybabajee wrote:

Hi Guys,

 

Users on my LAN are able to get internet, however user on another branch are not able to get internet but are able to access the servers on my LAN.

 

One firewall interface is connected to the branch router which itself is on an eigrp network with other branch routers.

We had a McAfee firewall previously and everything was working fine, since we migrated to Fortigate, LAN user can get internet, Branch user can get access servers on LAN but can get internet.

 

Grateful if i can get some help.

Please provide network topology and firewall config.

Announcements

Select Forum Responses to become Knowledge Articles!

Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.

Labels
Top Kudoed Authors