Skip to main content
gcraenen
New Member
April 23, 2019
Question

Acces to internal Emby server from WAN

  • April 23, 2019
  • 2 replies
  • 3632 views

Hello, we are using a Fortigate 61E and want to give users coming from the WAN interface access to an internal Emby server. We cannot use VPN access for this appliance and do not want to use straight port forwarding for security reasons. Is there another way to configure this external acces in a secure way?

2 replies

BryanS
New Member
April 23, 2019

Why not use port forwarding?  You can map the ports and IPs as well as restrict who can use that port if needed as well, to further lower who can get in.

 

If not VPN or Port Forwarding, it would have to be an outbound type connection that you can't really control in the same way.

gcraenen
gcraenenAuthor
New Member
April 24, 2019

Is it possible to put the services and security-policies from the UTM on that connection with portforwarding? Is possible to create a separate login page in the Fortigate as a first barrier before access is granted to the appliance on the internal network?

 

I am worried about portscanners that immediately get access to the Emby login page and then use brute force techniques or possible exploits to gain access to the internal network that way.

Thought Leadership Security Summit. Outpace New Threats with AI - enhanced defense. Tuesday, Septmeber 15, 8:30 AM - 2:30 PM PT. The Golf Club at Newcastle, WA.
Virtual event | September 2026. SASE summit. The age of autonomous trust. Register here!