Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
hehe001
New Contributor

how to to do this? allowing ports

hi, im using fortigate 200a and now would like to implement 1. all LAN user cannot connect to internet (send email) using port 25 2. all LAN user should connect to internet (send email) using port 587 and 465 thanks
2 REPLIES 2
hehe001
New Contributor

in web config guidance much appreciate thanks
rwpatterson
Valued Contributor III

Basically you have a policy ordering issue. Since all are executed from the top down, you will need 3 in the following order: 1) Allow port 25 SMTP for allowed servers 2) Allow port 465 and port 587 for everyone 3) DENY port 25 to all Number 2 is only required if you do not have an allow all in the policy chain. Hope that helps

Bob - self proclaimed posting junkie!
See my Fortigate related scripts at: http://fortigate.camerabob.com

Bob - self proclaimed posting junkie!See my Fortigate related scripts at: http://fortigate.camerabob.com
Labels
Top Kudoed Authors