Transparent mode installation

Transparent mode configuration examples

 

 

Example static route to an internal destination

Figure 9 shows a FortiGate unit where the FDN is located on an external subnet and the management computer is located on a remote, internal subnet. To reach the FDN, you need to enter a single default route that points to the upstream router as the next hop/default gateway. To reach the management computer, you need to enter a single static route that leads directly to it. This route will point to the internal router as the next hop. (No route is required for the DNS servers because they are on the same layer 3 subnet as the FortiGate unit.)

Figure 9: Static route to an internal destination

Internet

Gateway IP 192.168.1.2

Upstream

DNS

Router

 

 

DMZ

Management IP 192.168.1.1

FortiGate-50A

A

LINK 100 LINK 100

 

PWR

STATUS

 

 

INTERNAL EXTERNAL

Internal Network A

Gateway IP 192.168.1.3

Internal

Router

Internal Network B

Management Computer

172.16.1.11

FortiResponse

Distribution

Network (FDN)

General configuration steps

1Set the unit to operate in Transparent mode.

2Configure the Management IP address and Netmask of the FortiGate unit.

3Configure the static route to the management computer on the internal network.

FortiGate-50A Installation and Configuration Guide

51

Page 51
Image 51
Fortinet 50A user manual Example static route to an internal destination