Skip to main content
abelio
SuperUser
SuperUser
August 19, 2021
Question

Two different session profile, same source IP

  • August 19, 2021
  • 1 reply
  • 2990 views

Hi all,

Running 6.2.7, i'm trying to apply two different session profiles in both IP policies, but with same source IP

Result: always match the first IP policy in order;  it seems that the match is triggered just by source IP and ignore everything else in the session profile.

Is it correct?  is it by design or is it flaw?

 

I'll try in a test box with 6.4.x / 7.x , but I would share with this question here.

 

Thanks for your input,

 

 

1 reply

saneeshpv_FTNT
Staff
Staff
July 24, 2023

HI,

 

IP Based policies are applied based on the IP address of connecting SMTP Client or Server and not bases on the IP address of connecting SMTP Client and Server like in a Firewall policy and this I believe is by Design.

 

Reference:

How to use policies | FortiMail 7.4.0 (fortinet.com)

"IP-based policies are applied based on the IP address of the connecting SMTP client and, if the FortiMail unit is operating in transparent mode, the SMTP server"

 

Best Regards,