Hi, I have a device on the DMZ with port 443 open and the site can be accessed fine, no other ports are in the allow policy for that device. When I do a scan on the devices external IP however I saw ports 8008 and 8010 listed as open and whn I went to port 8008 it redirected to a Web Filter Block Override page on port 8010.
Now there are no login fields or even links on the page so I'm not sure if it's much of a risk however I am more concerned that it is open at all given I can't see any reference to it in my policy. It is a Fortinet branded page.
Anyone know how I can close this off and explain why its open on the WAN in the first place?
Many thanks
Gerry
Found the cause of this, there was a web filter rule enabled on this particular policy even though it was a WAN --> DMZ rule for https access. Once I disabled web filtering on the policy the access on port 8008 and 8010 is no more.
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1778 | |
1116 | |
767 | |
447 | |
242 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.