Skip to main content
rcpdkc
Explorer II
May 22, 2025
Question

Fortigate Nmap Problem

  • May 22, 2025
  • 2 replies
  • 847 views

Hello. When I do Nmap scan to my wan ip address, all ports appear open. There is no port forwarding in the vip section. In the Dos Policy section, threshold values are entered 10 for TCP and udp. Also all services are deny in local in Policy section. What could be the reason why the ports appear open in nmap?

2 replies

Anthony_E
Staff
Staff
May 26, 2025

Hello,


Thank you for using the Community Forum. I will seek to get you an answer or help. We will reply to this thread with an update as soon as possible.


Thanks,

Best Regards
Yurisk
SuperUser
SuperUser
May 26, 2025

It cannot be, if Local-in policy has deny everything, which means most probably you have something misconfigured. Look at show firewall vipshow firewall local-in and also logs of Fortigate - do you see your nmap scan hitting the firewall?

 

yurisk.info - all things Fortinet blog, no ads
Thought Leadership Security Summit. Outpace New Threats with AI - enhanced defense. Tuesday, Septmeber 15, 8:30 AM - 2:30 PM PT. The Golf Club at Newcastle, WA.
Virtual event | September 2026. SASE summit. The age of autonomous trust. Register here!