WE have a fortigate with multiple VIP's, for securtiy purposes we would like to close the following ports which are being detected by security scans:
[ul]These seem to be opened automatically by the fortigate... how can i close them?
have you research the fortigate used ports http://kb.fortinet.com/kb/viewContent.do?externalId=10773
No what that said, I believe you have a rule allowing the 1000 1003 541, can you run diag debug flow and a filter for dst port 1000 and validate the fwpolicyid that's involved?
PCNSE
NSE
StrongSwan
They are indeed part of that list and that is exactly the reason why i dont know how to block them as i have nothing explicitely allowing them from external.
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1743 | |
1114 | |
760 | |
447 | |
241 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.