Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
New Contributor

VIP does not listen on specified port

I'm running the following:

FortiGate VM64-AZUREONDEMAND v6.0.4 build0231 (GA)

After creating a VIP and IPv4 policy I'm unable to reach the port. I've tried via the CLI with:

diagnose sys tcpsock | grep

via the Local In Policies page, and via a nmap scan from another machine.

I even tried rebooting the firewall to see if it was unable to bind at runtime, but no luck.

Please could you let me know if I'm missing a step or if there's a known bug/workaround?

New Contributor

I've managed to resolve my own issue/misunderstanding...

The VIP will only come up if the target is in the same subnet as the firewall interface that is establishing the connection.