Transparent mode installation Transparent mode configuration examples
FortiGate-50A Installation and Configuration Guide 51
Example static route to an internal destination
Figure 9 shows a FortiGate unit where the FDN is located on an external subnet and
the management computer is located on a remote, internal subnet. To reach the FDN,
you need to enter a single default route that points to the upstream router as the next
hop/default gateway. To reach the management computer, you need to enter a single
static route that leads directly to it. This route will point to the internal router as the
next hop. (No route is required for the DNS servers because they are on the same
layer 3 subnet as the FortiGate unit.)
Figure 9: Static route to an internal destination
General configuration steps
1Set the unit to operate in Transparent mode.
2Configure the Management IP address and Netmask of the FortiGate unit.
3Configure the static route to the management computer on the internal network.
Management Computer
172.16.1.11
Internal Network A
Internal Network B
DMZ
Internet
Upstream
Router
Internal
Router
Gateway IP 192.168.1.2
Management IP 192.168.1.1
FortiResponse
Distribution
Network (FDN)
Gateway IP
192.168.1.3
DNS
FortiGate-50A
INTERNAL EXTERNAL
LINK 100 LINK 100
PWR STATUS
A