We are using a Fortigate 60D in our work place. The 60D is used as our UTM/core router and is using one WAN link to provide internet access. The company plans to add a second firm in the current location. The new firm will have a separate internet connection for its users. The plan is to setup 2 VLANS, one for the current business and the second for the new firm and create my policies according to business’s needs. My question is can(and how) I setup the fortigate to route internet traffic out separate WAN interfaces according to the VLANs being used?
Thanks
Nominating a forum post submits a request to create a new Knowledge Article based on the forum post topic. Please ensure your nomination includes a solution within the reply.
This can be done with policy based routes. You can create a policy based route so everything from business-vlan goes out of WAN1 and everything from newfirm-vlan goes out of WAN2.
This is configured under Network > Policy Routes and would look something like this:
Here is a good link to read about Policy Based Routing
http://docs.fortinet.com/...ced%20Routing%2052.pdf
Mike Pruett
IMHO a cleaner way with less maintenance in the future would be to enable VDOMs on the FGT and assign one to each firm. That's exactly why there are VDOMs. Completly separate policies, default routes etc.
ede_pfau wrote:I fully agree Ede!IMHO a cleaner way with less maintenance in the future would be to enable VDOMs on the FGT and assign one to each firm. That's exactly why there are VDOMs. Completly separate policies, default routes etc.
KISS (keep it small and simple) is a second vdom
Regards
Tiny Admin
tinyadmin wrote:ede_pfau wrote:I fully agree Ede!IMHO a cleaner way with less maintenance in the future would be to enable VDOMs on the FGT and assign one to each firm. That's exactly why there are VDOMs. Completly separate policies, default routes etc.
KISS (keep it small and simple) is a second vdom
Regards
Tiny Admin
I always tell myself to KISS (Keep it simple stupid) :p
I think I'm going to adopt your way.
Mike Pruett
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1662 | |
1077 | |
752 | |
443 | |
220 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.