fw_log_drop_ex: Packet proto=6 .197:53651 -> .138:443 dropped by vpn_encrypt_chain Reason: encrypt drop I ran zdebug drop command during the issue was occurring and below is fw ctl zdebug drop |grep .138 This problem happens intermittent without a cause, I have already opened case to TAC but they can not find out something wrong as well We do configure as a bypass for those IP public this is expected behaviorīut they sometimes can not get access to that web portal page due to the traffic is redirect to VPN tunnel, look at on column blade is showing VPN blade Here is the screenshot if the connectivity is being successfully to destination IP address, look at on column blade is showing firewall and https inspection. This only happens to Fortigate FW3 ( .138 ) refer screenshot below and there are no IPSec configuration of both sides The problem is when users that's behind Check Point does not get access to Public IP Address of Fortigate sometimes. I have some case that is quite weird, my customer has Security Gateway R80.10 with HF T121 running at the moment.
0 Comments
Leave a Reply. |
AuthorWrite something about yourself. No need to be fancy, just an overview. ArchivesCategories |