Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
Ballzack
New Contributor

Fortigate 100D blocking SFTP to remote server

Good day

 

I have the following issue:

 

The Fortigate is causing the Filezilla SFTP connection to fail to the public ip 105.28.100.177 over port 990.

The connection needs to be established from an internal server.

The last 2 log entries on Filezilla reads:

 

Status: Connection established, initializing TLS...

Error:   Could not connect to server.

 

I have created a policy for the internal server, allowing access to all destinations, all ports, and removed all security profiles.

The logs shows that traffic is being allowed through.

 

I get the same result when testing from a desktop on the network.

 

I can connect to the site successfully when testing from outside of the network or over 3G.

 

Not sure where to go from here.

Any assistance will be greatly appreciated.

 

Thanks.

 

 

 

4 REPLIES 4
ede_pfau
SuperUser
SuperUser

hi,

 

and welcome to the forums.

 

Just a speculation but if you are using FOS v5.4.x or up, open the CLI and

- config sys global

set strong dis

end

 

and try again. If I'm right I will explain it.

Ede Kernel panic: Aiee, killing interrupt handler!
Ede Kernel panic: Aiee, killing interrupt handler!
Ballzack

Thanks.

 

Unfortunately no luck after running the command.

Ballzack

I am not an expert but do you think this might be an issue with the Fortigate's session-helper?

Ballzack

Just updating the resolution. 

 

Pushed the connection over another WAN interface.

Issue was ISP related.

Announcements

Select Forum Responses to become Knowledge Articles!

Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.

Labels
Top Kudoed Authors