Chapter 17 System Administration : VLANs : VLANs in NAT mode : Configuring security policies and routing
  
Configuring security policies and routing
Once you have created a VLAN subinterface on the FortiGate unit, you need to configure security policies and routing for that VLAN. Without these, the FortiGate unit will not pass VLAN traffic to its intended destination. Security policies direct traffic through the FortiGate unit between interfaces. Routing directs traffic across the network.
See Also
VLAN ID rules
Configuring security policies
Configuring routing