I am trying to determine the best design for VDOMs in a FortiGate that
will be used to connect to multiple different customer sites via IPsec
tunnels. Customers must be isolated from each other and I have more
customers than the max 10 vdom limit, so...
Currently comparing two designs for security and performance:Design 1:
SecGW vdom with wan interface, multiple customer vdoms. regular VDOM
links created to connect each customer vdom to SecGW for wan access.
Each customer VDOM has IPsec tunnel to re...
I'm uncertain after researching if I adding vlan subinterfaces on my
single npu link (several on gateway-vdom side and assign individual
vlans to each cusstomer vdom) will take advantage of hardware
acceleration. I think that if I terminate IPsec on ...
Hi Toshi,Understood. If I have dedicated vdoms for each customer and a
traffic vdom with wan interface, would I create subinterfaces under WAN
with public IPs for each customer? Would I then assign the subinterfaces
toeach respective customer vdom, o...
Hi Toshi,Since I have more customers than allowed vdoms, I have to have
customers share a vdom. I think you are saying to have dedicated vdoms
for each customer with a unique public IP for each as well?
You are leaving our website
You are leaving our site and we cannot be held responsible for the content of external websites