Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
adymohd
New Contributor

allow connection both way

hi.  i would like to know how to allow connection both way in Fortinet for below user? can show me guide steps easy for me to follow and configure.  since i am still new on this would appreciate your simple guideline for me to configure thanks

Title:request open connection between Evo1 to Evo2 only.

for user name: abc.com

 

source IP                       Destinaton IP    Port         Direction 

-10.100.20.1                72.16.251.62         22        Both way

--------------------------------------------------------------------------------

-https://*.newbe.com    10.100.20.20         22        Both way

 

2 REPLIES 2
hbac
Staff
Staff

Hi @adymohd,

 

You can create a firewall policy to allow the traffic. Please refer to https://docs.fortinet.com/document/fortigate/7.4.1/administration-guide/656084/firewall-policy

 

Why would you allow traffic from https://*.newbe.com to 10.100.20.20 on port 22? 

 

Regards, 

fricci_FTNT
Staff
Staff

Hi @adymohd ,

 

To configure a firewall policy on FortiGate you can follow the steps similar to this Fortinet video (then choosing the source, destination and destination service/port that you want/need):
https://www.youtube.com/watch?v=36wU22YqrGw

For example to configure traffic both ways between 10.100.20.1 and 72.16.251.62:
Firewall policy 1:

-source IP: 10.100.20.1
-destination  IP: 172.16.251.62
-destination port: 22 (SSH)

Firewall policy 2:

-source IP: 172.16.251.62 
-destination  IP: 10.100.20.1
-destination port: 22 (SSH)

You can find more details here as well:

https://docs.fortinet.com/document/fortigate/7.4.1/administration-guide/656084/firewall-policy#Confi...

 

Best regards,

---
If you have found a useful article or a solution, please like and accept it to make it easily accessible to others.
Labels
Top Kudoed Authors