Fortigate-100A 2.80,build357,050127 I had a UDP session running that I
couldn' t fathom the source of. Worst still, I couldn' t quosh it using
the policy statements - which I am guessing is a result of this type of
communication not being catered for...
It maybe that the requirements are to not block certain ports from the
phone to the PBX (offsite/hosted PBX presumably). In a few proprietary
phone services I' ve witnessed the phones are SIP but there is an
initial ' lock and key' protocol that open...
My understanding is that if I NAT something inbound then it should use
the same external IP on the VIP to go outbound? This is an incorrect
preconception. What interface and what IP your server has for flows
(sessions) it initiates itself is controll...
Irrespective of PBR, you' ve got two main choices for how your DMZ
server will present itself when initiating flows to the WAN ports you
direct it/them to. Either 1. If you have a Virtual-IP or Load-Balancer
installed on the firewall, then as long as...
I have a similar problem on build179 5.0 (patch2) [aka 5.0.2]. There is
a similar forum thread talking of host-load-balancing being a similar
issue with 5.0.3 where the fix was to regress back to 5.0.2. So unless
the fix for this is in beta, we need ...
I can confirm this occurs with the prohibited message. ssh connects to
the firewall and the authentication occurs. Usually this will allow
connection to the firewall and through it. With a FG200A that was
working on 2.80 bld 489 the upgraded FortiOS3...