FortiGate
FortiGate Next Generation Firewall utilizes purpose-built security processors and threat intelligence security services from FortiGuard labs to deliver top-rated protection and high performance, including encrypted traffic.
Elvio_Corte
Staff
Staff
Article Id 340623
Description

This article describes the behavior change when searching for services by port number in the Firewall Policy configuration In FortiOS 7.4.5 onward and 7.6.

Scope

FortiGate.

Solution

In 7.0, 7.2 and 7.4.1 and below:

 

When searching for a service by port number in a firewall policy (for example, '44'), Fortinet will show all services and service groups where '44' is present. For example, HTTPS(443) and SMB(445).

It is therefore unnecessary to specify the full service port number.

 

image.png

 

In 7.4.5 onward and 7.6 there is a behavior change:

 

When searching for a service by port number in a firewall policy (for example, '44') there are no results. It is necessary to specify the full service port number to obtain the desired results (this is the behavior change).

 

image.png

 

When typing the full service port number (for example, '443'), it will return the specific service. In this case, HTTPS and all service groups where this service belongs:

 

image.png

 

Note: In FortiOS version 7.4.2, 7.4.3 and 7.4.4, there is a bug (bug_id=1013488) where, when searching by service via port number, there are no results at all. This bug is already fixed in FortiOS 7.4.5.