Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
neuregion
New Contributor

Websense proxy blocked by fortigate

We have one of our staff abroad in turkey working at a clients office.  While on site, the staff member gets no internet access due to the clients Fortigate blocking our Websense proxy settings.  Can anyone advise of what kind of rule we can enter to allow the HTTP.Proxy service on the Fortigate for Websense to work?   The Clients IT section are unable to advise on a resolution.

 

 

3 REPLIES 3
Somashekara_Hanumant
Staff & Editor
Staff & Editor

Hi,

 

To further understand your problem, could you provide the exact error message which your client is getting.

 

If the websence proxy port is other than port 80, and if you have enabled protocol options on the respective firewall policy, then edit the protocol options profile, add the proxy port under HTTP.

 

Let me know the status.

 

Regards,

Somu

EMEA Technical Support
neuregion
New Contributor

Hi There,

 

Thanks for the reply, screen shot attached.

emnoc
Esteemed Contributor III

The diag debug flow is your friend but you need to find the UUID that reference that policy and start at that point.

 

Ideally, you should place a policy-specific to your proxy and allow traffic from the correct src_subnets to that proxy ( on what ever port/service you have the proxy running on )

 

This would at least  allow the clients access to the proxy(s). I'm guessing but you either have some type of tight  UTM features on the policy or incorrect policy for allow the websense proxy access going by just the  screenshot. Run the  above diagnostic cmd , find the policy that matching, review the policy and go from that start.

PCNSE 

NSE 

StrongSwan  

PCNSE NSE StrongSwan
Announcements
Check out our Community Chatter Blog! Click here to get involved
Labels
Top Kudoed Authors