FortiGate
FortiGate Next Generation Firewall utilizes purpose-built security processors and threat intelligence security services from FortiGuard labs to deliver top-rated protection and high performance, including encrypted traffic.
Adryan_you
Staff
Staff
Article Id 325546
Description This article describes the behavior of Server-down-option in web proxy forwarding.
Scope FortiGate.
Solution

Under web proxy forwarding server configuration, 'Server Down Action' has the following options: 'Block' or 'Use Original Server'. 

In the following example, FortiGate is a downstream/child proxy that listens to computer web sessions in port 8888.

It then redirects web proxy sessions to 10.150.4.151 in port 9999 (upstream/parent proxy).

 

Note:

Incorrect port 9900 has been set to simulate a failed connection to the upstream proxy.

 

proxy-setting-001.png

 

When set to 'Block', if the upstream/parent proxy fails to respond properly, the downstream proxy (FortiGate) will return 504 to the computer:

 

504-002.png

 

504-001.png

 

When set to 'Use Original Server', if the upstream/parent proxy fails to respond properly, the downstream proxy (FortiGate) will use its internet gateway to reach the destination server.

 

OCS-success.png

 

Contributors