218
01-28006-0068-20041105
Fortinet Inc.
Configuring virtual IPs
Firewall
To add a dynamic port forwarding virtual IP
1
Go to
Firewall > Virtual IP
.
2
Select Create New.
3
Enter a name for the dynamic port forwarding virtual IP.
4
Select the virtual IP External Interface from the list.
The external interface is connected to the source network and receives the packets to
be forwarded to the destination network.
You can select any firewall interface or a VLAN subinterface.
5
Select Port Forwarding.
6
Set the External IP Address to 0.0.0.0.
The 0.0.0.0 External IP Address matches any IP address.
7
Enter the External Service Port number for which you want to configure dynamic port
forwarding.
The external service port number must match the destination port of the packets to be
forwarded. For example, if the virtual IP provides PPTP passthrough access from the
Internet to a PPTP server, the external service port number should be 1723 (the PPTP
port). See
“PPTP passthrough” on page 262
for more information.
8
Enter the Map to IP address to which to map the external IP address. For example,
the IP address of a PPTP server on an internal network.
9
Enter the Map to Port number to be added to packets when they are forwarded.
If you do not want to translate the port, enter the same number as the External Service
Port.
10
Select OK.
To delete a virtual IP
1
Go to
Firewall > Virtual IP
.
2
Select the Delete icon beside the virtual IP you want to delete.
3
Select OK.
To edit a virtual IP
1
Go to
Firewall > Virtual IP
.
2
Select the Edit icon beside the virtual IP you want to modify.
3
Select OK.
IP pool
An IP pool (also called a dynamic IP pool) is a range of IP addresses added to a
firewall interface. You can enable Dynamic IP Pool in a firewall policy to translate the
source address of outgoing packets to an address randomly selected from the IP pool.
An IP pool list appears when the policy destination interface is the same as the IP pool
interface.
Summary of Contents for FortiGate FortiGate-100A
Page 24: ...24 01 28006 0068 20041105 Fortinet Inc FortiLog documentation Introduction...
Page 72: ...72 01 28006 0068 20041105 Fortinet Inc Transparent mode VLAN settings System network...
Page 80: ...80 01 28006 0068 20041105 Fortinet Inc DHCP IP MAC binding settings System DHCP...
Page 114: ...114 01 28006 0068 20041105 Fortinet Inc Access profile options System administration...
Page 232: ...232 01 28006 0068 20041105 Fortinet Inc CLI configuration Firewall...
Page 244: ...244 01 28006 0068 20041105 Fortinet Inc peergrp Users and authentication...
Page 320: ...320 01 28006 0068 20041105 Fortinet Inc service smtp Antivirus...
Page 366: ...366 01 28006 0068 20041105 Fortinet Inc syslogd setting Log Report...
Page 380: ...380 01 28006 0068 20041105 Fortinet Inc Glossary...
Page 388: ...388 01 28006 0068 20041105 Fortinet Inc Index...