Skip to main content
jonhadfield
New Member
May 3, 2019
Question

VIP does not listen on specified port

  • May 3, 2019
  • 1 reply
  • 1973 views

I'm running the following:

FortiGate VM64-AZUREONDEMAND v6.0.4 build0231 (GA)

After creating a VIP and IPv4 policy I'm unable to reach the port. I've tried via the CLI with:

diagnose sys tcpsock | grep 0.0.0.0

via the Local In Policies page, and via a nmap scan from another machine.

I even tried rebooting the firewall to see if it was unable to bind at runtime, but no luck.

Please could you let me know if I'm missing a step or if there's a known bug/workaround?

    1 reply

    jonhadfield
    New Member
    May 8, 2019

    I've managed to resolve my own issue/misunderstanding...

    The VIP will only come up if the target is in the same subnet as the firewall interface that is establishing the connection.