FortiGate
FortiGate Next Generation Firewall utilizes purpose-built security processors and threat intelligence security services from FortiGuard labs to deliver top-rated protection and high performance, including encrypted traffic.
acp
Staff
Staff
Article Id 190219

Description

 

This article describes how to disable central NAT.

Solution

 

The Central NAT feature in not enabled by default.
When 'central-nat' is enabled, NAT option under IPv4 policies is skipped and SNAT has to be done via 'central-snat-map'.

If NGFW mode is policy-based, then it is assumed that central-nat (specifically SNAT) is enabled implicitly.

Got to System -> Settings, under 'Inspection Mode' select 'Flow-based and under 'NGFW Mode' select 'Profil-based'.

 
 
From the CLI:
 
config sys setting
    set central-nat disable
end
Contributors