In my company we have an Fortigate 1200d v 5.2.4 can someone please help me so that i can isolate this ports due to Thank you very much.
If you mean blocking the ports, then create a security policy from inside to outside with the services below and SMB. Enter those commands into the CLI and then create the security policy and set the action to DENY.
config firewall service custom
edit NETBIOSNS
set udp-portrange 137
next
edit NETBIOSDS
set udp-portrange 138
next
edit NETBIOSNS
set tcp-portrange 139
next
end
hope that helps
NETBIOSNS is a standard service, called "SAMBA", no need to configure as custom.
Include tcp/445, "SMB", in that servicegroup to deny Windows file sharing.
 
					
				
				
			
		
| User | Count | 
|---|---|
| 2677 | |
| 1412 | |
| 810 | |
| 703 | |
| 455 | 
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.