Virtual domains in Transparent mode

Network configuration

 

 

Adding firewall policies for virtual domains

Once the network configuration for the virtual domain is complete, you must create firewall policies for the virtual domain to allow packets to flow through the firewall between VLAN subinterfaces.

Adding addresses for virtual domains

Adding firewall policies for virtual domains

Adding addresses for virtual domains

Before you can create firewall policies for a virtual domain, you must add source and destination addresses for the VLAN subinterfaces and zones added to the virtual domain.

1Go to Firewall > Address.

2Select the VLAN subinterface or zone to which to add the address.

3Select New to add a new address.

4Enter an Address Name to identify the address.

5Enter the IP Address.

6Enter the NetMask.

7Select OK to add the address.

Adding firewall policies for virtual domains

Add Firewall policies to control connections and traffic between FortiGate VLAN subinterfaces and zones in a virtual domain.

1Go to Firewall > Policy.

2Select the Virtual Domain to which you want to add the policy.

3Select a source VLAN subinterface or zone.

4Select a destination VLAN subinterface or zone.

VLAN subinterfaces or zones only appear in the source and destination lists if they have been added to the selected virtual domain and if you have added firewall addresses for them.

The source and destination cannot be the same VLAN subinterface or zone.

5Select New to add a new policy.

6Configure the policy.

7Select OK to add the policy.

152

Fortinet Inc.

Page 152
Image 152
Fortinet FortiGate-800 manual Adding firewall policies for virtual domains, Adding addresses for virtual domains, 152