- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Firewall blocked Fortinet Single Sing On Agent Configuration
I have two machines that when the firewall is enabled with Domain it disconnects Fortinet Single Sing On Agent Configuration, if I disable the Domain Network firewall it works perfectly. This machine has the same rules as all the other machines. Has anyone experienced this?
Solved! Go to Solution.
- Labels:
-
FortiGate
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Please check these articles to allow the FSSO blocked ports by the Windows firewall which can disrupt the normal functions FSSO agent
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Hi @Marcos_FDS1012,
I believe that TCP 8000 and UDP 8002 should be allowed on you window firewall. You can try the following command on Window server and see if that help:
For Inbound Traffic:
C:\>netsh advfirewall firewall add rule name="FSSO_TCP_8000" dir=in action=allow protocol=TCP localport=8000 C:\>netsh advfirewall firewall add rule name="FSSO_UDP_8002" dir=in action=allow protocol=UDP localport=8002
For Outbound Traffic:
C:\>netsh advfirewall firewall add rule name="FSSO_TCP_8000" dir=out action=allow protocol=TCP localport=8000 C:\>netsh advfirewall firewall add rule name="FSSO_UDP_8002" dir=out action=allow protocol=UDP localport=8002 |
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Please check these articles to allow the FSSO blocked ports by the Windows firewall which can disrupt the normal functions FSSO agent
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Hi @Marcos_FDS1012,
I believe that TCP 8000 and UDP 8002 should be allowed on you window firewall. You can try the following command on Window server and see if that help:
For Inbound Traffic:
C:\>netsh advfirewall firewall add rule name="FSSO_TCP_8000" dir=in action=allow protocol=TCP localport=8000 C:\>netsh advfirewall firewall add rule name="FSSO_UDP_8002" dir=in action=allow protocol=UDP localport=8002
For Outbound Traffic:
C:\>netsh advfirewall firewall add rule name="FSSO_TCP_8000" dir=out action=allow protocol=TCP localport=8000 C:\>netsh advfirewall firewall add rule name="FSSO_UDP_8002" dir=out action=allow protocol=UDP localport=8002 |
data:image/s3,"s3://crabby-images/129f9/129f93412463eaf0ef8f15fad9aa6d16c420223b" alt=""