Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
sims
New Contributor III

dmz zone

Hi,

I am running vrf on the lan (inside zone) switch . 

I don't have separate physical switch for dmz. So i am planning  to run the dmz on the same insdie switch .

In firewall we create a vdom for  dmz ,In that case how many physical link I need from the lan switch to the fortigate firewall .

Do I need separate link for dmz vdom ,Or  I can use the same link for the root vdom ?

If I can use the same link what configuration requires on fortigate side and switch side 

Thanks

1 Solution
jintrah_FTNT
Staff
Staff

Hi,

You can use the same link or different link for dmz vdom. If using the same link, you would be creating vlans on the FortiGate interface that would become part of dmz vdom, the switch side port would be a trunk port in this case.

 

Best regards,

Jin

View solution in original post

1 REPLY 1
jintrah_FTNT
Staff
Staff

Hi,

You can use the same link or different link for dmz vdom. If using the same link, you would be creating vlans on the FortiGate interface that would become part of dmz vdom, the switch side port would be a trunk port in this case.

 

Best regards,

Jin

Labels
Top Kudoed Authors