Skip to main content
globatech
New Member
January 28, 2015
Question

Port 8000 for SSO is closed

  • January 28, 2015
  • 2 replies
  • 7851 views

Hi,

im having a issue with my web filtering profile that is not active on my Fortigate. Only the default profile works for all users. I dunno if it was the problem, but on my FSSO agent ive enter the default port 8000 to connect to the Fortigate Unit. But when i do a NMAP on my Fortigate the port 8000 is CLOSED. Do you thinks thats why the users cant have their right profile applied for web browsing? If so how do i open it? Thanks!

    2 replies

    pcraponi
    New Member
    January 29, 2015

    The port 8000 used are on your FSSO Server. Not on Fortigate.... Fortigate did a connection on port 8000, not receive it...

     

    Check if your server with FSSO installed not have any Firewall (like the Windows default Firewall)...

     

    http://kb.fortinet.com/kb...ateId=0%200%2067318832

     

    regards,

    Paulo Raponi

    globatech
    globatechAuthor
    New Member
    January 29, 2015

    Thanks for the reply and the explanation about the port 8000. On my server the domain firewall was disable. Im starting having this issues since have update to os 4.x to the 5 version. On my server i see all the events in my logon user log, but it seem to have a problem with the communication between the fortigate and the server. On my fortigate have set up the user profile. Ive create too the user group that are linked to the AD filtering group and all that was place in a filtering firewall user policy but all user still take the default policy.... any other idea? Thanks

    iJake
    New Member
    February 5, 2015

    Has this been resolved?

    --

    Are you seeing the users groups from AD under the FSSO config on your FortiGate?

    Are you seeing users authenticated on your FortiGate?

     

    diag debug authd fsso list

     

    This will list authenticated users, if there aren't any, there's a communication issue between the FortiGate and the Collector Agent. Did you upgrade your Collector Agent when you upgraded your FortiGate to v5?