Hi,see attachment for an overview of my scenario. Using Fortigate 92D on
5.4.1. Configuration was done via GUI. I have one WAN interface with
multiple public IP addresses available and a DMZ with a few servers that
all listen on 443, plus SSLVPN list...
Hi, I set up IKEv2 dialup VPN on a Foritgate 92D Cluster to enable
remote users to connect to our enterprise network. Remote users are
using native Windows IKEv2 VPN Clients. The tunnel can be established
successfully on Windows 7/8/10.Clients are on...
Hi, I just tested this, and it works as you described. [ul]WAN Interface
without secondary IP addressesVIP to DMZ on 10.10.10.117IPv4 Policy with
outgoing NAT on IP Pool 10.10.10.118/32 for internet traffic[/ul]For a
quick test, I created a VIP for R...
Hi, this is still just a test environment, but I'm very eager to put
this into production. I forward 443 on every VIP, plus some other ports
depending on the VIP. So if I just don't configure secondary IPs, I can
make the WAN interface "aware" of tho...
Hi, I configured secondary IP addresses, because I assumed I had to in
order create VIPs.Will nat-source-vip enable apply to all outgoing
traffic, or just the ports configured in the VIP?