Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
jasssfortinet
New Contributor

Possible to user per-vdom ippool through Global Adom

Hello, 

 

We are using FortiManager 6.2 to manage multiple VDOMS/Fortigates.

 

We want to give access to specific sites to every users and computer. So it involves to modify every Fortinet entities (VDOM/Fortigates) with a common rule that is managed at one place : global adom.

We would like to configure a global policy package and deploy it to every concerned managed devices.

Actually, i'm trying to figure out how i could map the right source NAT (NAT each user's IP) for the right internal network.

 

We are using IP pool object to NAT users.

 

Is it something possible?

 

Best regards.

2 REPLIES 2
gfleming
Staff
Staff

It's possible you could use Policy Blocks with headers here: https://docs.fortinet.com/document/fortimanager/7.2.2/administration-guide/17746/using-policy-blocks

Cheers,
Graham
saneeshpv_FTNT

You may try to create a IP pool Firewall Object in Global ADOM and Use that IP pool in Global ADOM Policy Package. In each individual ADOM you may edit that IP Pool Object for per device mapping.

Labels
Top Kudoed Authors