Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
Gerry
New Contributor

Web Filter Block Override Accessible Externally

Hi, I have a device on the DMZ with port 443 open and the site can be accessed fine, no other ports are in the allow policy for that device.  When I do a scan on the devices external IP however I saw ports 8008 and 8010 listed as open and whn I went to port 8008 it redirected to a Web Filter Block Override page on port 8010.

 

Now there are no login fields or even links on the page so I'm not sure if it's much of a risk however I am more concerned that it is open at all given I can't see any reference to it in my  policy.  It is a Fortinet branded page.

 

Anyone know how I can close this off and explain why its open on the WAN in the first place?

Many thanks

Gerry

 

 

1 REPLY 1
Gerry
New Contributor

Found the cause of this, there was a web filter rule enabled on this particular policy even though it was a WAN --> DMZ rule for https access.  Once I disabled web filtering on the policy the access on port 8008 and 8010 is no more.

 

Announcements

Select Forum Responses to become Knowledge Articles!

Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.

Labels
Top Kudoed Authors