two office location , link together with vpn tunnel successfully
first office have static public ip on fortigate 60B WAN interface.
second office is rented office which using internet from lanlord network that we have no control of.
fortigate 50B is behind lanlord NAT router
second office have private ip on fortigate 50B WAN interface.
two office successfully link together with IPsec vpn tunnel.
fortigate 60B config as " fortigate dialup vpn server"
fortigate 50B config as " fortigate dialup vpn client"
it is site-to-site vpn tunnel
there is e-mail server in second office, ip:192.168.5.10 connect to lan interface of fortigate 50B.
i want mobile user when they travel, their can use webmail of server in second office.
so I have to forward port 80 on wan interface of fgt60B to server in second office through vpn tunnel.
if server is in first office it will be very easy, but this case server is in second office which can only access through vpn tunnel.
subnet of fgt60B is 192.168.10.x / 24
subnet of fgt50B is 192.168.5.x / 24
how to port forwarding through vpn tunnel ?