Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
social
New Contributor

lan vip

hi, I have a problem with Fortigate 80f. I made interface number 2 as WAN and did port forwarding with VIP but I can't make it work. It gets an IP address as WAN and I can connect from outside, but the VIP rule doesn't work. The VIP rules on the WAN and LAN sides work, I write the rule and do the VIP process correctly.

13 REPLIES 13
social

As seen in the screenshots, int4 is used for wan.

Int2---cameras lan interface.

Int4---cameras wan interface

dingjerry_FTNT

Hi @social ,

 

1) 

3- routing  

config router static
edit 6
set gateway 176.xx.xxx.xxx
set priority 4
set device "internal4"
next
end

 

Not sure why you created this static route.  Unless the external IP of the VIP is not in the same subnet as the internal4 interface IP.

 

2) Can you show us the routing table?

 

3) You did not show us the Service object "Camera".

 

My suggestion:  You already configured port forwarding in the VIP configurations, you may use the service object "ALL" instead of the specific one.

Regards,

Jerry
social

a

dingjerry_FTNT

Hi @social ,

 

Then please run the debug flow commands (using the client public IP as the "addr" debug flow filter) to see why it is not working.

Regards,

Jerry
Announcements
Check out our Community Chatter Blog! Click here to get involved
Labels
Top Kudoed Authors