Hello, I am configuring Fortiweb for the first time. I managed to publish a test Website on IIS, all good. But when I enable Client Real IP option in the policy, I can no longer access my test website. I can see requests in the logs, but looks like no reply is being made by the webserver. Out topology is the following: Internet - FortiWeb - Palo Alto - Web Server. Web Server's default gateways is at Palo Alto, which is then forwarded to Fortiweb. I saw a hint note, that default gateway of the server must be Fortiweb - but even though it is not the case in our topology, technically we have a default route from Palo Alto to Fortiweb. Is there something I am missing?
Hi fgasimzade, have you tried to perform tcpdump on the web server and Palo Alto to see if the reply is being sent/received?
User | Count |
---|---|
2074 | |
1176 | |
770 | |
450 | |
344 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.