| Description | This article describes the CrazyRemote Application signature issue on Policy-Based NGFW. |
| Scope | FortiOS v7.2, FortiOS v7.4, FortiOS v7.6. |
| Solution |
FortiGate Firewall, configured in policy mode, gives the option to add application signatures under firewall policies.
The simple configuration that allows only the CrazyRemote application is shown below.
Policy-mode:
config system settings
Firewall policy:
config firewall security-policy
GUI Version:
The problem arises when the device is upgraded. Because application signatures are updated continuously, this signature is removed from later FortiOS versions.
After the upgrade:
The implication here is that this policy will block all the traffic, even though at the beginning its purpose was to only block specific applications.
The solution here is to upgrade to FortiOS v7.4.7 and higher versions. When the upgrade is performed, CrazyRemote is again recognizable and not just an ID that is not included in the application signature database.
|
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.