Skip to main content
Matt_B
Staff & Editor
Staff & Editor
June 9, 2025

Technical Tip: Consistent source IP is required to access FortiGate Cloud portal

  • June 9, 2025
  • 0 replies
  • 431 views
Description This article describes a known requirement for accessing the FortiGate Cloud portal, and how to ensure this requirement  is met when internet access is through an existing FortiGate.
Scope FortiGate Cloud.
Solution

Access to FortiGate Cloud requires a single consistent public IP address be maintained for the duration of the management activity.

 

FortiCloud asset management and some other Fortinet cloud portals do not have the same restriction for access. It is possible that no issue would be seen until an administrator switches to the FortiGate Cloud portal.

 

Attempting to access FortiGate Cloud from a device whose public IP address is changing frequently will trigger a logout. This can manifest as any of the following symptoms:

 

  • the issue only happens from some locations or when using some connection methods.
  • administrator receives a FortiCloud single-sign-on logout and browser redirects to 'login.forticloud.com'
  • portal appears to load partially but administrator cannot interact with any resources.
  • portal fails to load, and developer tools console shows 'Failed to load module script: <fortigate_cloud_url>/:1 Expected a JavaScript module script but the server responded with a MIME type of "text/html".'


1_modif.png
This message usually indicates an unexpected response was received from the server. For more information on how to access a browser's developer tools pane, see the article Troubleshooting Tip: How to gather a HAR file from Chrome.


Resolution:

Use a network access method allowing a stable public IP address when accessing FortiGate Cloud.

If the device that cannot access FortiGate Cloud is behind a FortiGate, the FortiGate may have been previously configured to load balance traffic based on session or traffic volume. If so, the issue can be addressed by updating the firewall's SD-WAN rules or Policy Routes to select a single unchanging or rarely changing exit interface for outbound traffic to the Internet Service 'Fortinet-FortiCloud'.

 

2.PNG
See the following articles for compatible SD-WAN interface selection strategies.