Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
ahmadking22
New Contributor III

Virtual IP

Hello

I have FortiGate 40F ,it's working fine 

but I have NVR Hikvision (IP : 192.168.70.5/24) I Need to login NVR From Anywhere 

I have Public Domain But i need Exactly when i put this URL in browser immediately open NVR in Browser 

best regards,

king
king
7 REPLIES 7
ozkanaltas
Valued Contributor III

Hello @ahmadking22 ,

 

Do you have a public domain or public IP. If you have a public IP you can configure virtual IP on Fortigate. 

 

I am sending an example vip configuration image. You can configure it accordingly.

 

After this configuration, you need to use the vip object you created within the rule.

 

image.png

 

 

Also, you can review this document about virtual IPs.

 

https://community.fortinet.com/t5/FortiGate/Technical-Tip-Using-Virtual-IPs-to-configure-port-forwar...

 

If you have found a solution, please like and accept it to make it easily accessible to others.
NSE 4-5-6-7 OT Sec - ENT FW
If you have found a solution, please like and accept it to make it easily accessible to others.NSE 4-5-6-7 OT Sec - ENT FW
ahmadking22

sir , I have DDNS (public IP it will be changing)

king
king
ozkanaltas
Valued Contributor III

Hello @ahmadking22 ,

 

Then you can configure the external IP address as 0.0.0.0.In this way, even if the rope changes, there will be no problem.

If you have found a solution, please like and accept it to make it easily accessible to others.
NSE 4-5-6-7 OT Sec - ENT FW
If you have found a solution, please like and accept it to make it easily accessible to others.NSE 4-5-6-7 OT Sec - ENT FW
ahmadking22

ok but after that how can i access

 

king
king
ozkanaltas
Valued Contributor III

I think Fortigate's DDNS service is used in your environment. FortiGate automatically updates the IP address of the fqdn address you use for ddns during ip changes, so you can use the fqdn address you have defined in the DDNS service for external access.

 

https://community.fortinet.com/t5/FortiGate/Technical-Tip-How-to-configure-Dynamic-DNS-Fortigate/ta-...

 

If you have found a solution, please like and accept it to make it easily accessible to others.
NSE 4-5-6-7 OT Sec - ENT FW
If you have found a solution, please like and accept it to make it easily accessible to others.NSE 4-5-6-7 OT Sec - ENT FW
ozkanaltas
Valued Contributor III

If the reason you do not have a static IP address is because you are using a line such as ADSL or VDSL. For these types of lines, ISPs usually use CGNAT. For this reason, the public IP address does not reach the FortiGate's interface and you cannot access your devices from outside.

 

Is the IP address you see on the port to which the ISP line is connected private or public?

If you have found a solution, please like and accept it to make it easily accessible to others.
NSE 4-5-6-7 OT Sec - ENT FW
If you have found a solution, please like and accept it to make it easily accessible to others.NSE 4-5-6-7 OT Sec - ENT FW
ahmadking22

i have FQDN but for Mapped not working

when i select FQDN for map you must to set Public FQDN 

king
king
Announcements

Select Forum Responses to become Knowledge Articles!

Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.

Labels
Top Kudoed Authors