Description | This article describes how to learn Client-IP from the X-Forwarded-For header and apply learned Client-IP to proxy policy. |
Scope | FortiGate. |
Solution |
When Application Gateway (AGW) sits behind FortiGate and sends traffic to FortiGate, all source IPs coming from AGW are translated by AGW's external IP. It makes FortiGate impossible to identify the user's real IP. In order for FortiGate to learn client-IP and apply it to firewall policy, FortiGate needs additional configurations.
|
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.