Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
fgasimzade
New Contributor

FortiWeb Real Client IP

Hello, I am configuring Fortiweb for the first time. I managed to publish a test Website on IIS, all good. But when I enable Client Real IP option in the policy, I can no longer access my test website. I can see requests in the logs, but looks like no reply is being made by the webserver. Out topology is the following: Internet - FortiWeb - Palo Alto - Web Server. Web Server's default gateways is at Palo Alto, which is then forwarded to Fortiweb.   I saw a hint note, that default gateway of the server must be Fortiweb - but even though it is not the case in our topology, technically we have a default route from Palo Alto to Fortiweb.    Is there something I am missing?

1 REPLY 1
ESCHAN_FTNT
Staff
Staff

Hi fgasimzade, have you tried to perform tcpdump on the web server and Palo Alto to see if the reply is being sent/received?

Announcements

Select Forum Responses to become Knowledge Articles!

Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.

Labels
Top Kudoed Authors