Skip to main content
etep
New Member
February 15, 2025
Question

Port forwarding troubles from WAN to LAN

  • February 15, 2025
  • 8 replies
  • 1945 views

Hello,

New fortigate-40f user (v7.2.10 build1706 (Mature)) here trying to struggle a port forward from WAN to LAN web server.

I checked the guides for virtual ip & firewall policy, but for some reason the internal ip/ service stays unreachable.The rules i created are.

1. virtual ip

1.jpg

2.firewall policy(tested with nat enabled & disabled with same result)

2.jpg

 

 

Any idea what is the issue here?

 

yours

Etep

 

8 replies

dingjerry_FTNT
Staff
Staff
February 15, 2025

Hi @etep ,

 

Please specify the External IP in the Virtual IP settings.

etep
etepAuthor
New Member
February 15, 2025

Hello,

 

tested with the "wan ip", but it didn't work

3.jpg

 

also tested with "physical interface" address, but that didnt work either.

What does this "physical interface ip" mean?

4.jpg

Yours

Etep

dingjerry_FTNT
Staff
Staff
February 16, 2025

Hi @etep ,

 

That is the real IP assigned to the WAN interface.  What is the IP 109.204.176.115? I don't think that this is an IP assigned to the WAN interface.

 

Please specify the external IP with 100.64.28.202 for a try.

etep
etepAuthor
New Member
February 17, 2025

Hello everyone,

 

BIG thank you for everyone explaining and making me realize that i had an "natted" ip. Got confused with the new gui etc. since my old apparatus was Zyxell.
Anyways i contacted my ISP and got me an public ip address. Now the Virtualip (with my preference 0.0.0.0 as external ip since i have a client on lan which yells the ip to dns provider) & Firewall policy works as intended.

1.jpg2.jpg

 

Kudos to everyone helping a noob on this matter #heart

 

Yours

Etep

Thought Leadership Security Summit. Outpace New Threats with AI - enhanced defense. Tuesday, Septmeber 15, 8:30 AM - 2:30 PM PT. The Golf Club at Newcastle, WA.
Fortinet Flag the Hack. Wednesday, August 26, 9:00 AM - 5:00 PM ET, COSM, Atlanta, GA.