 
					
				
		
Created on 10-26-2004 09:06 AM
Hi,
You might try to configure local in policy for inbound traffic.
Please refer to this link:
https://docs.fortinet.com/document/fortigate/6.2.14/cookbook/363127/local-in-policies
BR,
Manosh
Jeez, did anybody notice that this thread was started 19 years ago? Go Fortinet!
But, alas, this situation might still arise today, with FortiOS 6.x/7.x. You can find an explanation and a workaround in the KB using the keyword "match-vip". Will only be applicable in DENY policies from FOS 7.0 on.
and a post from this forum
https://community.fortinet.com/t5/Support-Forum/Match-vip-clarification-for-deny-rules/td-p/95228
 
					
				
				
			
		
| User | Count | 
|---|---|
| 2678 | |
| 1412 | |
| 810 | |
| 703 | |
| 455 | 
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.