Re: Fortigate 60E - "connection refused" for incoming traffic to VIP ports
☼ Best Answerby TechSupport4415 2017/11/14 09:33:37
My take, that 400 message came from the SMTP server so that's a good sign. At this point your NOT blocked.
Now what might be happening is a "SMTP-servers" has a connection limits based on the src_ip.
Let review your policy, 1: you say VIP do you have a SNAT on that and 2: are you SRCNAT'ing all mail-senders behind a src_ip? 3: does you mail server have logs 4: does those logs show the same client or sessions counts limits?
PCNSE6,PCNSE7, ACE, CCNP,FCNSP,FCESP,Linux+,CEH,ECSA,SCSA,SCNA,CISCA email/web