Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
chouaib
New Contributor

Visioconference solution behind WAF

Hi team;

We deployed a visioconference solution for our entreprise, the location of the this solution server in our architecture is behind the front-firewall and WAF.

The HTTP traffic of this solution is happening via the WAF but the others (SIP traffic, H232 traffic ...)  are heppening directelly to the server.

My issue is: The external clients can't connect to the server and can't open a video call.

Cordially

3 REPLIES 3
vacumjh
New Contributor

I’d think it’s largely influenced by where your applications are hosted. If you have an on-prem data centre it makes sense to consider on-prem appliance although you could also combine it with CDN like Cloudflare. I’ve not come across organisations who deploy F5 solely for WAF.

router login 192.168.l.l
AEK
SuperUser
SuperUser

Hello Chouaib

I think you need to check the below docs (go to section HNT).
https://docs.fortinet.com/document/fortigate/6.2.15/cookbook/667795
https://community.fortinet.com/t5/FortiGate/Technical-Tip-FortiGate-Hosted-NAT-Traversal-for-SIP/ta-...

If you already followed the above, make sure you don't have double NAT in front (e.g.: FG NAT + ISP router NAT).

AEK
AEK
chouaib
New Contributor

Hi there;

We found an issue with the certificate, the client application dont trust our certificate deployed in our WAF.

Announcements

Select Forum Responses to become Knowledge Articles!

Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.

Labels
Top Kudoed Authors