Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
janpesek163
New Contributor

Problem with port forwarding

Hi,

 

 i would like to ask you.

I have FortiGate 61E 7.4.8 and i have public static IP.

In one of VLAN i have server with IP 10.0.0.3 and on this server webserver are running on port 8123.

From internal LAN or any internal VLANs i can access to this server.

But from public IP, its not possible to access to this server.

 

I've created Virtual IP - 

 

vip.png

and firewall policy - 

 

fw.png

 

But with this VIP and FW rule its still not working.

But i have FortiGate web access via port 4443 and its working via public IP address correctly.

 

Can you help me ?

Thank you :)

6 REPLIES 6
funkylicious
SuperUser
SuperUser

does the server 10.0.0.3 have a default gateway with the interface of INFRA in your case?

i would enable NAT on the firewall policy in question and see if it solves your issue.

also, make sure that the HTTP Management port of the FortiGate isnt configured on port 80 in System > Settings > HTTP port

"jack of all trades, master of none"
"jack of all trades, master of none"
janpesek163

Thank you. I 've tried it but still not work :(

nat.png

 

AEK
SuperUser
SuperUser

Hi Jan

In the firewall policy, set the service to TCP_8123 (create it first) instead of HTTP/HTTPS.

AEK
AEK
janpesek163

Hi, 

 

 thank serv.pngyou for your reply. I've tried it but still not work :(

 

 

 

AEK

In the new service HA-8123, don't specify source port and IP Range. You specify only destination port 8123.

AEK
AEK
Toshi_Esumi
SuperUser
SuperUser

If you happen to have HTTP (TCP 80) access enabled on wan1, try disabling it.

 

Toshi

Announcements
Check out our Community Chatter Blog! Click here to get involved
Labels
Top Kudoed Authors