Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
DanieleS99
Contributor

Fortigate return to NAT mode from transparent mode

Hi,

If I wanted to return to NAT mode after configure the Fortigate in transparent mode with firewall policies, security policies, etc.. What are the steps?

Obviously remove the commands of transparent mode and assign ip addresses on interfaces. Other things?

 

Thanks

1 Solution
hrahuman_FTNT

Hi,
 
Use the following procedure to switch the FortiGate unit from Transparent mode to
NAT/Route mode. When the FortiGate unit has changed to NAT/Route mode its
configuration resets to NAT/Route mode factory defaults.
1) Go to System > Status.
2)Select Change to NAT Mode.
3)Select NAT/Route in the operation mode list.
4)Select OK.
The FortiGate unit changes operation mode.
5)To reconnect to the web-based manager you must connect to the interface configured
Access through default for management access.
 
-Habeeb
-Habeeb

View solution in original post

3 REPLIES 3
hrahuman_FTNT

Hi,
 
Use the following procedure to switch the FortiGate unit from Transparent mode to
NAT/Route mode. When the FortiGate unit has changed to NAT/Route mode its
configuration resets to NAT/Route mode factory defaults.
1) Go to System > Status.
2)Select Change to NAT Mode.
3)Select NAT/Route in the operation mode list.
4)Select OK.
The FortiGate unit changes operation mode.
5)To reconnect to the web-based manager you must connect to the interface configured
Access through default for management access.
 
-Habeeb
-Habeeb
Chang_Voyage
New Contributor

May it be possible set the Fortigate 110C to Route Mode by CLI?

ede_pfau
Esteemed Contributor III

@DanielleS99: the keyword in Habeeb's post is "factory reset"!

BEWARE!

 

That is, you will lose your current config. IF FortiOS doesn't ask you for a management IP when enabling Route mode, then it will default to 192.168.1.99/24 on port "mgmt" or "port1", depending on model.

Tip: Log in via the console port to do this. You will retain connectivity, can look up the correct management port ("get sys int") and you could change the IP immediately if convenient.


Ede

"Kernel panic: Aiee, killing interrupt handler!"
Ede"Kernel panic: Aiee, killing interrupt handler!"
Labels
Top Kudoed Authors