Everything is works fantastic with the DMZ setup. Fortigate 100E
firewallFirmware v6.2.3 build1066 (GA)DMZ => WAN (works) DMZ => DMZ
(works) LAN => DMZ (works) DMZ ╪> LAN (DMZ can not see the internal
network) SSLVPN => DMZ (not working) I'm unable t...
Everything is works fantastic with the DMZ setup. DMZ => WAN (works) DMZ
=> DMZ (works) LAN => DMZ (works) DMZ ╪> LAN (DMZ can not see the
internal network) I'm wondering if there is a way to disable a DMZ from
pinging another DMZ device. So far, the...
Dear Techies, I'm new to Fortigate and new to the forum. Anyway, I have
a problem configuring policies for blocking unwanted access from some
external/malicious IP addresses. Here's what I did. == GBSP-FW1 # sh
firewall policy 103 config firewall pol...
I've entered the following:FORTINET1 # sh firewall local-in-policy
config firewall local-in-policy edit 1 set intf "wan1" set srcaddr
"VPN_Allow_Countries" set dstaddr "all" set action accept set service
"IKE" set schedule "always" next edit 2 set in...
I finally see Local In Policy I see the following: Administrative access
Authentication and more... However, I don't see where I can edit the
local-in policy, as you mentioned. Remember, I'm new to Fortinet
firewalls. What is the next step? Do I use ...
YESSSS! IT WORKED!!! I didn't want chosen countries accessing my
network... And your solution worked, thanks seadave. This was what I was
looking for. I created separate unique address groups as you mentioned.
Block_Countries_In Block_IPRange_In Bloc...