EasyManuals Logo

Fortinet Fortigate-5000 series User Manual

Fortinet Fortigate-5000 series
458 pages
To Next Page IconTo Next Page
To Next Page IconTo Next Page
To Previous Page IconTo Previous Page
To Previous Page IconTo Previous Page
Page #261 background imageLoading...
Page #261 background image
Firewall Virtual IP Configuring virtual IPs
FortiGate Version 3.0 MR4 Administration Guide
01-30004-0203-20070102 261
Figure 155:Virtual IP options; Static NAT port forwarding virtual IP for a single IP
address and a single port
4 Select OK.
To add static NAT virtual IP port forwarding for a single IP address and a
single port to a firewall policy
Add a external to dmz1 firewall policy that uses the virtual IP so that when users
on the Internet attempt to connect to the web server IP addresses, packets pass
through the FortiGate unit from the external interface to the dmz1 interface. The
virtual IP translates the destination addresses and ports of these packets from the
external IP to the dmz network IP addresses of the web servers.
1 Go to Firewall > Policy and select Create New.
2 Configure the firewall policy:
3 Select NAT.
4 Select OK.
Adding static NAT port forwarding for an IP address range and a port range
Ports 80 to 83 of addresses 192.168.37.4 to 192.168.37.7 on the Internet are
mapped to ports 8000 to 8003 of addresses 10.10.10.42 to 10.10.10.44 on a
private network. Attempts to communicate with 192.168.37.5, port 82 from the
Internet, for example, are translated and sent to 10.10.10.43, port 8002 by the
FortiGate unit. The computers on the Internet are unaware of this translation and
see a single computer at 192.168.37.5 rather than a FortiGate unit with a private
network behind it.
Source Interface/Zone external
Source Address Name All (or a more specific address)
Destination Interface/Zone dmz1
Destination Address Name Port_fwd_NAT_VIP
Schedule always
Service HTTP
Action ACCEPT

Table of Contents

Questions and Answers:

Question and Answer IconNeed help?

Do you have a question about the Fortinet Fortigate-5000 series and is the answer not in the manual?

Fortinet Fortigate-5000 series Specifications

General IconGeneral
BrandFortinet
ModelFortigate-5000 series
CategoryFirewall
LanguageEnglish

Related product manuals