Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
time4pj
New Contributor II

SSH to other VLAN?

Hi Folks, I want to do something simple, but I need guidance.  I am using a FortiGate 60E and I have two VLANS - 10.20.10.0 and 10.30.10.0.  My server 'Dave' has an ip of 10.20.10.99.  I want to use SSH from my other system that is 10.30.10.50.  

What do I need to do to be able to SSH from 10.30.10.50 to 'Dave' at 10.20.10.99?  General guidance is appreciated.

Thank you

1 REPLY 1
Markus_M
Staff
Staff

Hi,

 

you will need a firewall policy from interface VLANx to VLANy, in whichever way FortiGate is connected to these VLANs. Service on it can be "ALL", for security you should use only port 22, default of SSH or adapt the port that Dave is listening on.

destination and source address of the policy can be "ALL", for security you should also narrow down to the IP addresses 10.30.10.50 and 10.20.10.99.

That policy can have logging enabled, so you could trace when there is a hit on the firewall policy.

 

Best regards,

 

Markus

Labels
Top Kudoed Authors