We're doing this without the separate VDOMs. We needed to set up rules between the faculty network and the student network to allow the students to access what they needed (using the VIPs) and drop all other traffic. I imagine you're running up against something similar but the solution maybe isn't as simple since you're using VDOMs. I'll let somebody with more knowledge of VDOMs weigh in...
I am curious though why you chose to use VDOMs? As I understand it, this is mainly to allow different routing contexts and/or different staff to manage different interfaces. In our shop it is 3 of us managing everything anyway, so VDOMs seemed pointless.
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.