Protecting A Web Server On The Dmz Network - Fortinet FortiGate 1U Quick Start Manual

Table of Contents

Advertisement

Protecting a web server on the DMZ network

In the following example, a web server is connected to a DMZ network. An internal-
to-DMZ security policy allows internal users to access the web server using an
internal IP address (10.10.10.22). A WAN-to-DMZ security policy hides the internal
address, allowing external users to access the web server using a public IP address
(172.20.120.22).
1. Configuring the FortiGate unit's DMZ interface
2. Adding virtual IPs
3. Creating security policies
4. Results
172.20.120.22
Internal Network
Protecting a web server on the DMZ network
Internet
WAN 1
DMZ
FortiGate
LAN
DMZ Network
Web Server
10.10.10.22
49

Advertisement

Table of Contents
loading

Table of Contents