Options
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Security Rating - Interface Classification - SSL-VPN tunnel interface (ssl.root)
I'm working on a 60E FortiGate firewall that was recently upgraded to 6.0.2. When I run the Security Rating it says that all interfaces should be classified as LAN, WAN, or DMZ. We have an interface SSL-VPN tunnel interface (ssl.root) that is not classified. What classification should this interface have, LAN, WAN, or DMZ? How is this classification set?
3 REPLIES 3
Options
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Does anyone have a suggestion as to how to respond to the security ratings issue?
Options
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
SecurityPlus wrote:Did you find out how to classify SSL-VPN tunnel interface (ssl.root)?
Does anyone have a suggestion as to how to respond to the security ratings issue?
José Ignacio MartÃn Jiménez
José Ignacio MartÃn Jiménez
Options
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
...further searching brought "WAN" as the "candidate" answer:
https://forum.fortinet.com/tm.aspx?m=158094
https://community.spiceworks.com/topic/2083065-fortigate-interface-role-for-ssl-vpn-tunnel-interface
José Ignacio MartÃn Jiménez
José Ignacio MartÃn Jiménez
