Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
Armando_Gomez_Barrio
New Contributor III

Customize the port number in FortiWeb Cloud

Hello friends, I am facing a problem with FortiWeb Cloud because it blocks my ports at the time of DNS record change, I need to allow ports 80, 8081 and 9090 (the latter with HTTPS certificate)

The problem is that in the Endpoints module, the option to add more ports is not shown

Greetings

Armando Gómez
Armando Gómez
1 Solution
shafiq23
Staff
Staff

Hi Armando,

 

Unlike FortiWeb/FortiWeb-VM, FortiWeb Cloud does not support multiple port in a single application. You can contact Fortinet SE/Sales if you require the feature.

 

Alternatively, you can configure it as follows:

 

app1(HTTPS): a.example.com:443 -> WAF cloud -> Origin server 1.1.1.1:443
app2(HTTP): b.example.com:80 -> WAF cloud -> Origin server 1.1.1.1:80
app3(HTTP): c.example.com:8081 -> WAF cloud -> Origin server 1.1.1.1:8081

 

Thanks.

 

Regards,
Shafiq

View solution in original post

8 REPLIES 8
FarinaAhmed
New Contributor III

To allow ports 80, 8081, and 9090 (with HTTPS certificate) in FortiWeb Cloud, follow these steps:

  1. Log in to the FortiWeb Cloud management console using your credentials.

  2. Navigate to the Endpoints module.

  3. Look for the existing endpoint configuration for the desired server or application.

  4. Edit the endpoint configuration and locate the section where you can specify the allowed ports.

  5. Add the following ports to the allowed list: 80, 8081, and 9090.

  6. If you want to enable HTTPS for port 9090, make sure to upload and configure the appropriate SSL certificate for that port.

  7. Save the changes to the endpoint configuration.

Farina Ahmed
Farina Ahmed
Armando_Gomez_Barrio

hi Farina Ahmed,

When you get to the Endpoints module, the option is not enabled, it only allows you to put a single port, between 80, 80881 or 9090.

The problem is that by leaving a single port, the others are blocked.

 

Armando Gómez

Armando Gómez
Armando Gómez
shafiq23
Staff
Staff

Hi Armando,

 

Unlike FortiWeb/FortiWeb-VM, FortiWeb Cloud does not support multiple port in a single application. You can contact Fortinet SE/Sales if you require the feature.

 

Alternatively, you can configure it as follows:

 

app1(HTTPS): a.example.com:443 -> WAF cloud -> Origin server 1.1.1.1:443
app2(HTTP): b.example.com:80 -> WAF cloud -> Origin server 1.1.1.1:80
app3(HTTP): c.example.com:8081 -> WAF cloud -> Origin server 1.1.1.1:8081

 

Thanks.

 

Regards,
Shafiq

Armando_Gomez_Barrio

hi Shafiq.

It could be a solution, the detail is that the license was purchased to protect 1 website, so I understand I should then change the license to 5 websites to be able to protect these 3 applications 80, 8081 and 9090, it's right?

Armando Gómez
Armando Gómez
shafiq23

Hi Armando,

 

Yes, that's right.

 

Thanks.

 

Regards,

Shafiq

Armando_Gomez_Barrio

Hi Shafiq.

Do you know if there is any alternative, some bypass, what I mean is that it only protects port80 for example and the other ports 8081 and 9090 only let them pass

 

Armando Gómez

Armando Gómez
Armando Gómez
shafiq23

Hi Armando,

 

This is not possible in the current design. If you find my previous suggestion as solution, you can mark this as Solved.

 

Thanks.

 

Regards,

Shafiq

Faiza_Emam_Delhi
Contributor II

By default, FortiWeb Cloud only allows traffic on ports 80 and 443. However, you can customize the port numbers by creating a new service and adding the desired ports.

Here are the steps to customize the port numbers in FortiWeb Cloud:

1. Log in to the FortiWeb Cloud portal and go to the "Services" page.

2. Click "Create" to create a new service.

3. In the "Name" field, enter a name for the service (e.g. "Custom Ports").

4. In the "Protocol" field, select the desired protocol (e.g. TCP).

5. In the "Port Range" field, enter the desired port numbers separated by commas (e.g. 80, 8081, 9090).

6. Click "Create" to create the new service.

7. Go to the "Endpoints" page and select the desired endpoint.

8. In the endpoint settings, go to the "Services" section and click "Add Service".

9. Select the "Custom Ports" service you created in step 3.

10. Click "Save" to save the endpoint settings.

With these settings, FortiWeb Cloud should allow traffic on the specified ports. Note that you may also need to update your DNS records to point to the correct IP address and port number.

Thanks & Regards,
Faizal Emam
Thanks & Regards,Faizal Emam
Labels
Top Kudoed Authors