We have two LANs, one for the computers/printers/etc, and one that just
contains our spamfilter and mail server. We have two policies allowing
traffic between the LANs on the required ports. NAT is enabled on both.
When users go to check their email ...
We have a client that has a new Fortigate 100F that they (and in turn
we) need assistance to setup properly, since they're our only client
using DMZ. We need 2 address available publicly. x.y.z.194, which we've
set as the WAN1 address and added a VIP...
1: I'll have to talk to the the on-site tech do pcap. I don't have
outside access to their computers/servers2: We have 2 DNS configured.
Their DC is 1 and a public DNS is 23: No. Fortinet support had us run
diagnose netlink interface list name on the...
Thanks for the input. We ended up running two WANs. WAN1 handles their
standard internal LANs, and we created a software switch with WAN2 and
the DMZ, with WAN2 connected to their provider and the DMZ port
connected to the web server directly.
Alternatively, is there a way to bypass NAT completely. In their current
setup, they have a bridge between WAN1 and the DMZ to allow multiple
Public IPs to run through a single WAN port