FortiGate
FortiGate Next Generation Firewall utilizes purpose-built security processors and threat intelligence security services from FortiGuard labs to deliver top-rated protection and high performance, including encrypted traffic.
pmeet
Staff
Staff
Article Id 274749
Description This article describes why port 541 is seen open on the FortiGate WAN interface when Port Scan is done.
Scope FortiGate.
Solution

When FMG-Access is enabled under Administrative Access on an interface it will open port 541 which is used for Management traffic from FortiManager and FortiGate Cloud Management.

 

MicrosoftTeams-image (69).png

 

 

This can be checked by CLI using this command:

 

diag sys tcpsock | grep 541


This port cannot be blocked by creating a local policy allowing only FortiManager IP.

 

Related document:

Incoming ports