GFI Software

Welcome to the GFI Software community forum! For support please open a ticket from https://support.gfi.com.

Home » GFI User Forums » Kerio Control » Control behind another firewall
Control behind another firewall [message #120760] Thu, 16 April 2015 11:33 Go to next message
dblt is currently offline  dblt
Messages: 1
Registered: July 2007
We have a situation where an ISP has provided a Fiber connection with a Fortigate 100D appliance to act as their firewall/router for the connection.

We want to port our existing Kerio box over to this connection. The ISP is refusing to do this at the Fiber end (as it makes it non-standard config) but are willing to do it at the Fortigate end.

They are looking to spilt the IP addressing so that 16 addresses will be at the Fortigate end (and be assigned to ports for other services and offices). The remaining 16 will be split to a port will we will connect to Kerio's WAN interface.

What I would like to know is, does Kerio support BGP to handle this type of setup, and how will we assign different public IP addresses to Kerio via a single interface i.e would we need to put a switch from the incoming connection from the Fortigate to Kerio so we could use different NIC's to assign public IP's too.
Re: Control behind another firewall [message #120770 is a reply to message #120760] Thu, 16 April 2015 15:56 Go to previous messageGo to next message
Petr Dobry (Kerio) is currently offline  Petr Dobry (Kerio)
Messages: 405
Registered: November 2003

Kerio Technologies
Kerio Controls does not support BGP.

Kerio Control can have multiple IPs on WAN interface. Just click edit the interface and click on "Define additional IP addresses"

http://kb.kerio.com/assets/Control/interface-properties.png


Petr Dobry
Product Development Manager | Kerio
Re: Control behind another firewall [message #124861 is a reply to message #120760] Sat, 10 October 2015 19:13 Go to previous messageGo to next message
nhoague is currently offline  nhoague
Messages: 502
Registered: April 2010
Location: Lakewood, CO
Dblt: were you able to use Control in conjunction with the fortigate for your bgp? I am facing the possibility of needing bgp at our data center, but only if control will work, and I need to keep my public IPs in the wan interface of Control.

Re: Control behind another firewall [message #124945 is a reply to message #124861] Tue, 13 October 2015 21:10 Go to previous messageGo to next message
Kumaresan @ Velirs is currently offline  Kumaresan @ Velirs
Messages: 10
Registered: March 2011

We have done Similar Setup with Separating & Routing Public IP Address; along with NATed Environment.

Kindly Mail your details at "kumaresan<_at_>velirs.com" or Send me a Private Message, We can assist you in this.


Kumaresan Pandurangan
Technology Consultant / Velirs
https://www.velirs.com/partners/kerio
UK: +44(330)822-0322, US: +1(408)75-959-75
India: +91(8882)008-009, Singapore: +65(31)633-255
Re: Control behind another firewall [message #140017 is a reply to message #124945] Wed, 30 May 2018 17:56 Go to previous message
nhoague is currently offline  nhoague
Messages: 502
Registered: April 2010
Location: Lakewood, CO
I have finally been approved for an AS number and re igniting this project. Any new updates in the BGP protocol for Kerio Control?

@kumaresan, are you still able to assist with this?

Thanks!
Previous Topic: download.kerio.com is down
Next Topic: crashing?
Goto Forum:
  


Current Time: Tue Sep 26 03:53:52 CEST 2023

Total time taken to generate the page: 0.06088 seconds