Setup FortiGate on AWS and Force All EC2'sTraffic Through It

Setup FortiGate on AWS
  1. Create a VPC with 2 subnets in it, FW and VM. Don’t forget to enable auto assign public IP on both subnets.
  2. If you ain’t using VPC wizard to create a VPC, remember to create an Internet Gateway(IGW) and attach it to VPC just created.
  3. Once IGW is created, add a route point to your IGW in your route table.
  4. Create FortiGate into FW subnet. Once done, disable source/destination check. Also, modify NSG to allow Lan traffic so that VM can outbound traffic through it.
  5. Create VM A into VM subnet, make sure public IP is not given.
  6. Create a new route table, configure a route directing all traffic to Fortigate, apply this new route table to VM subnet. By doing so, all taffics from VM subnet are forced to go through FortiGate.
  7. Configure FortiGate to accept and route traffic.
Setup FortiGate on AWS
Setup FortiGate on AWS
Setup FortiGate on AWS
Setup FortiGate on AWS
Setup FortiGate on AWS
Setup FortiGate on AWS
Setup FortiGate on AWS
Setup FortiGate on AWS
Setup FortiGate on AWS
Setup FortiGate on AWS
Setup FortiGate on AWS

--

--

Get the Medium app

A button that says 'Download on the App Store', and if clicked it will lead you to the iOS App store
A button that says 'Get it on, Google Play', and if clicked it will lead you to the Google Play store