Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
bujaam
New Contributor

Fortigate rules not hitting

Hi guys. So I’m new to firewall management and had a question. I’ve put some deny rules the firewall and have added some source ips and some destination ips. The thing is, if the rules are not being hit even after the policy has been pushed. The destination ips are NATed, so I need to know, do I put the IPs the real IPs are mapped to ( from the NAT pool)? Or the real IPs in the rule?

router login 192.168.l.l
1 REPLY 1
amrit
Staff
Staff

What is your FortiOS version? If the destination IPs are NATed, you must use the VIP object in the policy destination of the deny policy. Please follow this link : https://community.fortinet.com/t5/FortiGate/Technical-Tip-Firewall-does-not-block-incoming-WAN-to-LA...

Amritpal Singh
Announcements

Select Forum Responses to become Knowledge Articles!

Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.

Labels
Top Kudoed Authors