Hello All,
I Created a Virtual IP and Group for RDP access, then created the Firewall policy. I am unable to move the Virtual IP Group Policy to the top in Interface Pair View but I can in By Sequence. is that the way its supposed to be done? The external connection using RDP does work.
Solved! Go to Solution.
Nominating a forum post submits a request to create a new Knowledge Article based on the forum post topic. Please ensure your nomination includes a solution within the reply.
Hey Josiah,
That IS the top of the effective policies for that traffic. That's what so beautiful about interface pair view - you only have to look at the relevant policies.
If the traffic you're concerned about is coming FROM wan1, the policies affecting traffic FROM lan have no effect. You could build thousands of LAN -> WAN policies and none of them would prevent this WAN -> LAN policy from being the first one considered for traffic from the WAN.
Hope that helps! Welcome to FortiGates... :)
- Daniel
please show us the policy...
Hey Josiah,
That IS the top of the effective policies for that traffic. That's what so beautiful about interface pair view - you only have to look at the relevant policies.
If the traffic you're concerned about is coming FROM wan1, the policies affecting traffic FROM lan have no effect. You could build thousands of LAN -> WAN policies and none of them would prevent this WAN -> LAN policy from being the first one considered for traffic from the WAN.
Hope that helps! Welcome to FortiGates... :)
- Daniel
Thanks for the information.
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1688 | |
1087 | |
752 | |
446 | |
227 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.