Fortigate 60E - "connection refused" for incoming traffic to VIP ports
ROUTER: FGT60E
Firmware: v5.6.2 build1486(GA)
Problem: incoming traffic towards internal mail server (i.e. ports 25, 143, 993, 995 etc.) has flowed normally for several days after router installation and configuration.
It happened twice as of today that the router started blocking incoming traffic without apparent reason - looks like it sometimes lets traffic actually flow, as the incoming mail is slowed by several minutes to hours and then finally manages to sneak in, although with a heavy delay.
This is an example of a reply from a connection attempt to port 25 SMTP:
> telnet mail.customer.com 25Trying 123.456.789.74...Connected to mail.customer.comEscape character is '^]'.421 4.7.0 Connection refusedConnection closed by foreign host. Is there a way to understand WHY is this traffic is blocked? I tried to have blocked traffic logged and displayed, but didn't manage to do it. The first time it happened we remotely rebooted the router, and it got back to a normal state, i.e. we could connect to port 25 SMTP without delays. Any idea and/or has it happened to somebody else?
