Solved! Go to Solution.
Nominating a forum post submits a request to create a new Knowledge Article based on the forum post topic. Please ensure your nomination includes a solution within the reply.
Issue us resolved, thanks for your time, default Mgmt port is 8080, the same port used for Proxy listening! i changed this in settings to 8081 to free up 8080 to be used as the HTTP listener, the back end wasnt recieving traffic, as it was MGMT traffic! bit daft why it would use 8080 as the default HTTP for manangement!
Enable traffic logs on the policy and redo the test. Then share what you see on both traffic log and attack log.
Created on 02-11-2024 08:12 AM Edited on 02-11-2024 08:21 AM
Fairly new to these. where is the logging for the policy? If I goto Policy > Server Policy and edit my policy, there is no option to enable traffic logs? EDIT : FOUND THE SETTING, looking at X-FORWARDED FOR setting too, these seem important?
All of this is enabled, I don't see anything at all in the traffic log, which is kind of impossible!
Which FWB version are you using? I'd first fix the log issue otherwise troubleshooting will be almost impossible.
What do you see on the client's browser when you try?
Fortiweb-VM 7.22, Build 0344
Client sees "timeout - xxxxxx taking too long to respond"
Traffic Log is Enabled.
Then I'd start by updating to 7.2.7 which is the most stable of 7.2 versions. I've already seen log related issues (and other issues) in low patch versions.
We get the GET request on port 8080 on the VIP, then the next line on the capture is: status code 302, http 1.1 302 found (text/html)
it never send it to the back end.
302 = redirection.
It seems there is a redirection from your back end web server to another URL.
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1662 | |
1077 | |
752 | |
446 | |
220 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.