We have installed a new device in bridge mode, between the switch and
fortigate, I have made a policy for outgoing traffic from this device,
but still couldn't ping the internet (eg 8.8.8.8), I tried to debug, and
the results are as follows: fw-fg100...
toshiesumi wrote:VLAN subinterfaces are independent from the parent port
in policies. The 192.168.100.100 device is likely sending untagged
packets. Try sniffing packets on "VLAN_100" and "port1" to verify. Ok
toshiesumi thanks for you assistance, i'...
toshiesumi wrote:What the flow debug result is saying is it doesn't see
a matching policy for the ping packet from 192.168.100.100 on port1 to
wan2. Check the policy again. Thanks for your reply toshiesumi, I think
the policy I made was right, below ...