Skip to main content
fsmar
New Member
March 20, 2018
Question

Closing unnecessary ports

  • March 20, 2018
  • 2 replies
  • 3475 views

WE have a fortigate with multiple VIP's, for securtiy purposes we would like to close the following ports which are being detected by security scans:

[ul]
  • 1000/tcp
  • 1003/tcp
  • 541/tcp[/ul]

    These seem to be opened automatically by the fortigate... how can i close them?

    • 2 replies

      emnoc
      New Member
      March 20, 2018

      have you research the fortigate used  ports  http://kb.fortinet.com/kb/viewContent.do?externalId=10773

       

       

      No what that said, I believe you have  a rule allowing the 1000 1003 541, can you  run diag debug flow and a filter for dst port 1000   and validate the fwpolicyid that's involved?

       

       

      fsmar
      fsmarAuthor
      New Member
      March 20, 2018

      They are indeed part of that list and that is exactly the reason why i dont know how to block them as i have nothing explicitely allowing them from external.

      Thought Leadership Security Summit. Outpace New Threats with AI - enhanced defense. Tuesday, Septmeber 15, 8:30 AM - 2:30 PM PT. The Golf Club at Newcastle, WA.
      Fortinet Flag the Hack. Wednesday, August 26, 9:00 AM - 5:00 PM ET, COSM, Atlanta, GA.
      Virtual event | September 2026. SASE summit. The age of autonomous trust. Register here!