Issue : NAT Loopback (hairpinning) | WAN Access routed mode

Author
SayZ
New Member
  • Total Posts : 2
  • Scores: 0
  • Reward points: 0
  • Joined: 2018/11/30 08:16:48
  • Status: offline
2018/11/30 08:40:25 (permalink) 6.0
0

Issue : NAT Loopback (hairpinning) | WAN Access routed mode

Hello everybody, 
 
I am currently experiencing a problem that is quite blocking for me. I will present the context and the manifestation of the incident.
 
Context WAN : 
 
--2 WANs access : 
- WAN1 : ADSL PPOE --> IP Public know by fortinet 
- WAN2 : 1 VDSL routed mode with the provider modem (No other choice with this provider) --> IP Public unknown by forti (Just Private subnet of routing, and 2 interfaces)
 
After i have been applied this process : https://cookbook.fortinet.com/using-hairpinning/. The hairpinning works great for the 
ADSL (IP Public on the interface WAN1).
 
Issue : On the WAN2, the NAT loopback can't work because the forti can't map the interface with the real @IP_Public (my opinion)
 
Question : 
Is there a way to tag the real @IP_Public on the WAN2 without changing interconnect mode (routed with modem) ?
Or an another process to bypass this issue and permit loopback on the 2 WANs ? 
 
We have considered the solution using DNS cheating on the internal DNS, but may be a source of others problem.. 
 
 
Thanks you in advance for yor help, 
 
Have a nice Day
Brice 
 
 
 
 
#1

1 Reply Related Threads

    SayZ
    New Member
    • Total Posts : 2
    • Scores: 0
    • Reward points: 0
    • Joined: 2018/11/30 08:16:48
    • Status: offline
    Re: Issue : NAT Loopback (hairpinning) | WAN Access routed mode 2018/12/05 08:12:57 (permalink)
    0
    Problem solved :
    On FortiOS 6.0, there is function for add a "second adress" on a gateway.
    This function is accessible in "Network > Interface > [WAN_Int]
    It works with the NAT Loopback. (Test with FTP)
     
    #2
    Jump to:
    © 2018 APG vNext Commercial Version 5.5