Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
fsmar
New Contributor

Closing unnecessary ports

WE have a fortigate with multiple VIP's, for securtiy purposes we would like to close the following ports which are being detected by security scans:

[ul]
  • 1000/tcp
  • 1003/tcp
  • 541/tcp[/ul]

    These seem to be opened automatically by the fortigate... how can i close them?

  • 2 REPLIES 2
    emnoc
    Esteemed Contributor III

    have you research the fortigate used  ports  http://kb.fortinet.com/kb/viewContent.do?externalId=10773

     

     

    No what that said, I believe you have  a rule allowing the 1000 1003 541, can you  run diag debug flow and a filter for dst port 1000   and validate the fwpolicyid that's involved?

     

     

    PCNSE 

    NSE 

    StrongSwan  

    PCNSE NSE StrongSwan
    fsmar
    New Contributor

    They are indeed part of that list and that is exactly the reason why i dont know how to block them as i have nothing explicitely allowing them from external.

    Announcements

    Select Forum Responses to become Knowledge Articles!

    Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.

    Labels
    Top Kudoed Authors