Skip to main content
albaker1
New Member
July 23, 2025
Question

Does opening 9443 for SAML on FortiGate potentially open up SSL security flaws?

  • July 23, 2025
  • 1 reply
  • 554 views

We are in the process of moving our VPN users to IPSec RA VPN, but we need to use SAML SSO. This requires some port to be opened up, so we're using tcp/9443 like the documentation. The reason we're moving away from SSL VPN is because of the large number of security flaws being discovered and attacked in the wild. Is the port we open up for SAML going to keep us susceptible to newly discovered SSL/TLS security flaws? Thank you.

1 reply

johnathan
Staff
Staff
August 27, 2025

SSLVPN vulnerabilities are only applicable to the SSLVPN. 

Never trust a computer you can't throw out a window.