Hello, I need to set up VDOMs on an existing installation. I have
enabled VDOMs on the Fortigate, so I can see the root VDOM. I have
created a VDOM1, and I want to completely move the contents of the root
VDOM to VDOM1 (the VLANs, the rules associate...
Hello, I am using Fortigate with FortiManager. I have configured several
VDOMs based on this schema. I want the user of VDOM1 to be independent
in creating their own IPSEC tunnels. They have public IP addresses
routed within their VDOM. How can I do...
Hi,I have a Fortigate Cluster with several VDOMs.rootVDOM1VDOM2I
connected the Fortigate cluster to a FortiAnalyzer. I created an ADOM1
in which I placed VDOM1.I want the admin of VDOM1 to be able to see
system and traffic logs. I'm not able to do th...
Hello, I'm trying to connect my FortiGate to FortiAnalyzer. My
FortiAnalyzer(10.10.0.3) VM is in VLAN 10, directly connected to
FortiGate A (10.10.0.254). I successfully connected FortiGate A to
FortiAnalyzer. My problem is with FortiGate B. I create...
Hello, I am new to FortiManager and have successfully imported my two
devices and their respective VDOMs. I have placed a specific VDOM into a
specific ADOM because I want my client to manage it autonomously.When I
am in the specific ADOM, I can crea...
I missed to tell you about sdwan is enable, maybe there is an impact ?
In my log view, I see traffic incoming on interface. But in my rules, I
can just check SDWan Zone, not interface. So traffic is blocked. How can
I do ?
Thank you for your help, but unfortunately, it still doesn't work. You
mentioned SNAT in your response; my VDOMs do not have "Central SNAT"
enabled. Could this be an issue? On my VDOM1, I see incoming packet, but
on my source device, ping don't work/...
Sorry, I'm not sure I understand correctly. Above, you answered me :
Assuming root VDOM is under your control and VDOM1/2 under customer
control, then in root you can simply route the 10 public IPs to the
customer's VDOM, where they can deal with it ...
Thank you, yes, I took the diagram in Fortigate's doc. I disabled port
forwarding, and enable ALL_ICMP, I can't ping my ressource from
internet. In my network, ping is OK. Here the full conf Public IP:
1.2.3.4Internal resource IP: 5.6.7.8 Inter vdom ...