Skip to main content
dread
New Member
February 13, 2018
Question

Cannot Access Whatsapp - HELP

  • February 13, 2018
  • 2 replies
  • 12430 views

Morning Team

 

I am a new-bie to Fortigate. I have a situation here. Im a new employer and my employer has wireless network accessing everything but fails to connect to Whatsapp. Every traffic is routed through the proxy (fortigate 300d, version 5.4). I have googled that whatsapp cannot go through the proxy and i am clueless as to how to by-pass the proxy. I have created mobile group including all mobile devices by OS (android, IOS, windows,) and i cant attach that group to policy, nor can i be able to attach one device to this policy.

Can some one please help me understand the best way to give whatsapp to our wireless users. I have tried to go the LDAP /FSSO way but stopped mid way because at the end of it all, i will need to by pass the proxy for whatsapp to work.

 

So my questions is in two parts: cant Whatsapp work in the current proxy setup or do i need to by-pass proxy? and how do i by-pass proxy here and your best advice to do this. This is urgent guys my new job might be on the line.

    2 replies

    ede_pfau
    SuperUser
    SuperUser
    February 13, 2018

    hi,

     

    and welcome to the forums.

     

    WA isn't blocked in any way by default. On the contrary, if you want to restrict access to it you will need to apply a webfilter or appcontrol signature. If the policy which governs internet access for your WiFi clients does not contain any UTM features (except for AV) then you should be able to use WA.

     

    So my first question is: how do your policies from LAN and WiFi to WAN look like?

    Just as a precaution, you should be using the latest patch of v5.4 which is v5.4.8 - if only because severe security bugs were fixed lately.

     

    dread
    dreadAuthor
    New Member
    February 13, 2018

    Hi

    Let me note that my wireless is not administered by the Fortigate. Only the internet traffic is. The wireless is controlled from HP MSM. I believe my policies from LAN to WAN are fine because everything works fine except WA. Everything going into the internet is going through the proxy (wired and wireless). Any good practice in upgrading the version to the latest one, im at 5.4.0

    ede_pfau
    SuperUser
    SuperUser
    February 18, 2018

    There could be something blocking WA on the HP controller.

    You could test to use WA Web on a wired PC and see that goes. I don't think the application itself is blocked on the FGT.

    You write about using a proxy. If you mean the FGT is acting like a proxy, yes, it is, but as a transparent proxy. WA should not have any problems by this.

     

    Go ahead and upgrade to v5.4.8. Please read ALL the Release Notes of each intermediate release, it contains the sequence of versions you'll have to follow. An upgrade not only replaces the firmware but actively transcibes the configuration if needed. So, don't skip if you want to keep your config.

    rubnawazquraishi
    New Member
    April 15, 2018

    Basically, This is security of whatsapp. Your network is based on proxy. 

    Whatsapp is not allowing proxy network. Contact your isp network.

     

    See whatsapp status..