Morning Team
I am a new-bie to Fortigate. I have a situation here. Im a new employer and my employer has wireless network accessing everything but fails to connect to Whatsapp. Every traffic is routed through the proxy (fortigate 300d, version 5.4). I have googled that whatsapp cannot go through the proxy and i am clueless as to how to by-pass the proxy. I have created mobile group including all mobile devices by OS (android, IOS, windows,) and i cant attach that group to policy, nor can i be able to attach one device to this policy.
Can some one please help me understand the best way to give whatsapp to our wireless users. I have tried to go the LDAP /FSSO way but stopped mid way because at the end of it all, i will need to by pass the proxy for whatsapp to work.
So my questions is in two parts: cant Whatsapp work in the current proxy setup or do i need to by-pass proxy? and how do i by-pass proxy here and your best advice to do this. This is urgent guys my new job might be on the line.
______
Dread
Nominating a forum post submits a request to create a new Knowledge Article based on the forum post topic. Please ensure your nomination includes a solution within the reply.
hi,
and welcome to the forums.
WA isn't blocked in any way by default. On the contrary, if you want to restrict access to it you will need to apply a webfilter or appcontrol signature. If the policy which governs internet access for your WiFi clients does not contain any UTM features (except for AV) then you should be able to use WA.
So my first question is: how do your policies from LAN and WiFi to WAN look like?
Just as a precaution, you should be using the latest patch of v5.4 which is v5.4.8 - if only because severe security bugs were fixed lately.
Hi
Let me note that my wireless is not administered by the Fortigate. Only the internet traffic is. The wireless is controlled from HP MSM. I believe my policies from LAN to WAN are fine because everything works fine except WA. Everything going into the internet is going through the proxy (wired and wireless). Any good practice in upgrading the version to the latest one, im at 5.4.0
______
Dread
There could be something blocking WA on the HP controller.
You could test to use WA Web on a wired PC and see that goes. I don't think the application itself is blocked on the FGT.
You write about using a proxy. If you mean the FGT is acting like a proxy, yes, it is, but as a transparent proxy. WA should not have any problems by this.
Go ahead and upgrade to v5.4.8. Please read ALL the Release Notes of each intermediate release, it contains the sequence of versions you'll have to follow. An upgrade not only replaces the firmware but actively transcibes the configuration if needed. So, don't skip if you want to keep your config.
Basically, This is security of whatsapp. Your network is based on proxy.
Whatsapp is not allowing proxy network. Contact your isp network.
See whatsapp status..
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1712 | |
1093 | |
752 | |
447 | |
231 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.