Skip to content

Commit

Permalink
update
Browse files Browse the repository at this point in the history
  • Loading branch information
piotr-nwt committed Aug 7, 2023
1 parent 6aa4704 commit c90ce2b
Showing 1 changed file with 1 addition and 5 deletions.
6 changes: 1 addition & 5 deletions FortiGate/Documentation/faq-SNAT-port-exhaustion.md
Original file line number Diff line number Diff line change
@@ -1,8 +1,4 @@
<<<<<<< HEAD
# FAQ - Troubleshoot common outbound connectivity issues with Azure Load Balancer, SNAT port exhaustion
=======
## FAQ - Troubleshoot common outbound connectivity issues with Azure Load Balancer, SNAT port exhaustion
>>>>>>> 88309d1dbe2c9bf302252f69ecfe1a5372629377

FortiGates VM require to have outbound connectivity to the internet. The frontend IPs of a public load balancer we use in AP or AA HA templates can be used to provide outbound connectivity to the internet for backend FortiGate instances. This configuration uses source network address translation (SNAT) to translate virtual machine's private IP into the load balancer's public IP address. SNAT maps the IP address of the backend to the public IP address of your load balancer.

Expand Down Expand Up @@ -63,4 +59,4 @@ NAT Gateway should be associated with External (Port1) subnet of the FortiGates

NAT Gateway supersedes any outbound configuration from a load-balancing rule or outbound rules on the load balancer. VM instances in the backend pool use the NAT gateway to send outbound traffic and receive return traffic. Inbound originated traffic passes through the load balancer for all VM instances within the load balancer’s backend pool. VM and the virtual machine scale set from subnet B can only egress and receive response traffic through the NAT gateway. No inbound originated traffic can be received.

More information about NAT Gateway can be fund [here](https://learn.microsoft.com/en-us/azure/load-balancer/troubleshoot-outbound-connection#use-a-nat-gateway-for-outbound-connectivity-to-the-internet) and [here](https://learn.microsoft.com/en-us/azure/nat-gateway/nat-gateway-design#a-nat-gateway-and-vm-with-a-standard-public-load-balancer)
More information about NAT Gateway can be fund [here](https://learn.microsoft.com/en-us/azure/load-balancer/troubleshoot-outbound-connection#use-a-nat-gateway-for-outbound-connectivity-to-the-internet) and [here](https://learn.microsoft.com/en-us/azure/nat-gateway/nat-gateway-design#a-nat-gateway-and-vm-with-a-standard-public-load-balancer)

0 comments on commit c90ce2b

Please sign in to comment.