Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
BensonLEI
Contributor

Restrict users from connecting to LAN Gateway

Hi, Guys,

 

A weird question comes, that I want LAN user workstations to access internet through the dedicated IP (the Proxy server) as the LAN default gateway, but not the LAN interface IP as the local default gateway, any advice or recommendation ?

 

I want internal users to configure their workstations tcp/ip setting with the default gateway is not the LAN interface IP, but the dedicated IP is a proxy server;

Due to some users are often out of control, I want to restrict users at Fortigate device: if any user configure the workstation tcp/ip setting with the default gateway = LAN interface IP, they can not go internet, in order to force users configure workstations tcp/ip with the Proxy server as the local LAN gateway.

2 REPLIES 2
Toshi_Esumi
SuperUser
SuperUser

Simply don't create a policy LAN->WAN/internet, but have Proxy_Server_IP->WAN/internet.

BensonLEI

Great, thx for your recommendation

Labels
Top Kudoed Authors