Want to protect your cyber security and still get fast solutions? Ask a secure question today.Go Premium

x
  • Status: Solved
  • Priority: Medium
  • Security: Public
  • Views: 110
  • Last Modified:

Fortigate: setup gateway in a different segment

Fortigate 50E, FortiOS 5.4.2, Interface mode

I have the following config:

port1: VLAN 1 (192.168.1.0)
port2: VLAN 2 (192.168.2.0)
port3: VLAN 3 (192.168.3.0)
wan1: ADSL with dynamic IP
wan2: ADSL with static IP

My fortigate IP is 192.168.1.251

In computers that belong to 192.168.2.0 or 192.168.3.0...what gateway should I set? I think that those computers will not be able to reach the default gateway at 192.168.1.251 since it is on a different subnet. How should I set it then?
0
Daniel Suárez
Asked:
Daniel Suárez
1 Solution
 
Garry GlendownConsulting and Network/Security SpecialistCommented:
Your computers need to be configured to use the FG-IP in their respective subnet of course ... which means your fortigate, if it is used for the inter-VLAN-routing, also needs an IP in each VLAN ... so just put IP 192.168.2.251 (e.g.) on VLAN2, and 192.168.3.251 on VLAN3, then add rules to allow your PCs to route through the Fortigate and you're done ...
0
 
Daniel SuárezSQL Server ConsultantAuthor Commented:
Thanks. That worked.
0

Featured Post

NEW Veeam Agent for Microsoft Windows

Backup and recover physical and cloud-based servers and workstations, as well as endpoint devices that belong to remote users. Avoid downtime and data loss quickly and easily for Windows-based physical or public cloud-based workloads!

Tackle projects and never again get stuck behind a technical roadblock.
Join Now