Local-In-Policy blocks ipsex dialup on TCP/443 requests from my IP
Hi all
I am trying to setup ipsec dialup (IKEv2) using port tcp/443 on a FGT200G with 7.4.8 and with Forticlient (vpn only version) 7.4.3.
Amongst other issues, I am facing a connection block (not negotiation error, I seem not to get that far).
My connections requests from my client (and from my IP) are seen on the fortigate (on port tcp/443) as expected, but are being blocked by local-in-policy number 0.
I have added one single local-in-policy that should allow ssh, icmp and https (which is tcp/443 in the service object) from my IP address.
ICMP works and the FGT replies for my IP, however, tcp/443 is being blocked,
As this is all in one single local-in-policy, I have no idea where I went wrong - ICMP works, so why doesn't tcp/443?
Thanks for giving me a hint where to look
Best regards
