Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
fgasimzade
New Contributor

FortiWeb Real Client IP

Hello,

I am configuring Fortiweb for the first time. I managed to publish a test Website on IIS, all good. But when I enable Client Real IP option in the policy, I can no longer access my test website. I can see requests in the logs, but looks like no reply is being made by the webserver.

Out topology is the following:

Internet - FortiWeb - Palo Alto - Web Server.

Web Server's default gateways is at Palo Alto, which is then forwarded to Fortiweb.

 

I saw a hint note, that default gateway of the server must be Fortiweb - but even though it is not the case in our topology, technically we have a default route from Palo Alto to Fortiweb. 

 

Is there something I am missing?

1 REPLY 1
jintrah_FTNT
Staff
Staff

Hi,

 

It looks like there is someother best route from palo alto to reach the real client which is not through FortiWeb.

 

best regards,

Jin

Announcements

Select Forum Responses to become Knowledge Articles!

Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.

Labels
Top Kudoed Authors