Changing the protected network's default route
Once you have created the VNIC with the private IP address, it is available for you to select it as the default gateway in the route table configuration. Go to the route tables and edit the route rules for the internal network subnet. For all destinations, select Private IP as the Target Type, and enter the FortiGate-VM's second VNIC’s private IP address.