Hello,
About Port Allocation settings into TS Agent Configuration, we are not sure about the field "Maximum Number of Port Alloc Ranges"!
Do you know what this field means exactly?
Does it mean the maximum number of separated ranges (of allocated ports) per users, or the maximum of users who can obtain a range of allocated ports?
Regards,
Christophe
Solved! Go to Solution.
Hello Christophe,
"Number of Port Per Allocation" - tells how many ports will be allocated per single user known to FSSO
"Maximum Number of Port Alloc Ranges" - tell how many of those ranges can be assigned per single user
Mechanisms:
- user log in and get some port range X (default 200 ports), and start to open connections, let's count them as N
- when N get closer to X, port pool almost exhausted, TSAgent allocate a new port range to user, let's say Y
- when N get closer to X+Y, new port range should be allocated, let say Z
- if TSAgent has default config which is 200 ports and max 2 ranges, then Z is not allocated as user already has X+Y ranges and reached max port alloc ranges limit. Otherwise Z is allocated and above mentioned alocation repeat till the user need more ports and hasn't reached max alloc range number.
- if user decrease his number of connections N below amount in X, then port range Y, now not used, is getting to be released and user will keep his initial range X
Hope it's a bit more clear, now.
xsilver
Tomas Stribrny - NASDAQ:FTNT - Fortinet Inc. - TAC Staff Engineer
AAA, MFA, VoIP and other Fortinet stuff
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1742 | |
1110 | |
758 | |
447 | |
240 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.