Hi Team,
Though we disabled FMG-Access in the administrative access we see the port scan is showing 541 opened on WAN interface.
I followed the below article.
I used the command and found that the port is still listening on 541. Please let us know what would be the reason for this, even after disabling we still see it is listening. Is it normal or this needs to be checked?
Regards,
Sanjay S
Hi @ssan239,
TCP/541 is also used for FortiGuard connection. Please refer to https://docs.fortinet.com/document/fortigate/6.4.0/hardening-your-fortigate/529217/fortios-ports-and...
Regards,
Hi Hbac,
Thanks for the response. I dont think we use Fortiguard, even in licenses i dont see any specific option called Fortiguard Services. In licenses i can only see Forti Support, Firmware and Updates, IPS, AV and Web Filtering. Does it mean Fortiguard enabled?
Hi @ssan239,
Port 541 is generally used for management.
Is central-management configured on the device ?
# get system central-management
Regards,
User | Count |
---|---|
1923 | |
1144 | |
769 | |
447 | |
277 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.