Hi All,
i'm having issue in setup my second IP address to my VIP address.
So, i have server that i want incoming and outgoing IP Public Address is using different IP Address from my fortigate.
The incoming is working but outgoing still using my fortigate ip public, please help. thank you..
Nominating a forum post submits a request to create a new Knowledge Article based on the forum post topic. Please ensure your nomination includes a solution within the reply.
A solution to your problem would be to use 2 network interfaces in your server .On one of the interfaces you will receive traffic from your VIP interface and the second interface set as default gateway for your server .
That's what I would not do. No need for it.
OP, what is the policy(s) that allows the outgoing traffic? Your probably using ip nat enable and egress SNAT. If you want that host to send traffic with the same VIP ext-ip, just build a IP nat pool and enable NAT in the related policy and select that nat-pool.
Ken Felix
PCNSE
NSE
StrongSwan
emnoc wrote:I did but still not working.That's what I would not do. No need for it.
OP, what is the policy(s) that allows the outgoing traffic? Your probably using ip nat enable and egress SNAT. If you want that host to send traffic with the same VIP ext-ip, just build a IP nat pool and enable NAT in the related policy and select that nat-pool.
Ken Felix
my policy is like this :
Incoming Interface : any
Outgoing Interface : InternetPool Source : Address Name (Addresses) Destination : All Schedule : always Service : ALL NAT : Enabled IP Pool Configuration : Using Dynamic IP Pool (is OverLoad or One-to-One) and ARP Replay is Enabled
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1662 | |
1077 | |
752 | |
443 | |
220 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.