Hi all,
i' m dealing with a configuration on a Fortigate 3108 NGFW and i have a problem i need to address or solve as quick as possible. Firmware version 5.X
We use the FG as the Layer 3 routing for a site with multiple VLANs and there is also a poitn-to-point link to another FG on another site for DR. We need to do NAT rules like this, for DNS service all requests to ip 192.168.10.10 are natted to 192.168.30.10 that is another internal subnet. With the virtual ip feature this is quiet simple BUT the problem is that we also need to do a static route to the same IP , 192.168.10.10 to the other FG on the other site and this rule is never matched because virtual ip take precedence. The rule is not for the same protocol DNS, it' s for Domain Controllers.
My question is, how is it possible to solve this? Is it possible to NAT this way without virtual IP? How eventually can i make the static route take precedence over virtual ip?
Thanks in advance to all that can help to address this problem.
smaikol