Cybersecurity Forum

This forum is for all security enthusiasts to discuss Fortinet's latest & evolving technologies and to connect & network with peers in the cybersecurity hemisphere. Share and learn on a broad range of topics like best practices, use cases, integrations and more. For support specific questions/resources, please visit the Support Forum or the Knowledge Base.

BuzzWint
New Contributor

Android Phones unable to connect to external sites "Deny: IP Connection Error"

FortiOS 5.4.3

I have several Android Phones that are unable to connect to Google Play, Snapchat, etc and I get "Deny: IP connection error" in the forward traffic log, indicating Threat 262144.

I have a specific policy that I'm testing with removing everything:

        set name "Samsung Phones OUT"
        set uuid 1e949142-d48f-51e6-2586-07958422a8c1
        set srcintf "LAN"
        set dstintf "wan1"
        set srcaddr "Samsung Phone 1" "Samsung Phone 2"
        set dstaddr "all"
        set action accept
        set schedule "always"
        set service "ALL"
        set logtraffic all
        set comments "Allow Samsung Phones Out"
        set scan-botnet-connections monitor
        set nat enable

How can I allow these connections, disable checking for threat 262114 in the policy, etc. so that they can work successfully?

Thank You.

2 REPLIES 2
lolaat
New Contributor

.....

AlekseyMaltsev

Please review next Technical Note on Fortinet Knowledge Base.

For troubleshooting (routing, bad link connection, etc) purpose use "packet sniffer" and "diag debug flow".