Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
psmith6214
New Contributor

cannot ping firewall's management interface from outside its local subnet

Hi

I wonder if anyone can advise me.  I am completely new to Fortigate.  I am trying to set up a Fortigate 200E running firmware version 5.6.4.   

I have configured a management address of 64.212.148.60/24 on the firewalls mgmt interface.   I can connect to this address via https using a host on its local subnet 64.212.148.66. 

However when I try to connect from a different subnet 77.85.2.0/24 I can't connect to the firewall via https (pings also fail).   

I can however ping successfully FROM the firewall TO the host on the 77.85.2.0 subnet so I know that the routing is working OK!   

I've added the 77.85.2.0 subnet in the "trusted hosts" configuration on the management interface and I've configured the "administrative access" to allow various protocols including ping and https.

I've also added a route to the 77.85.2.0 subnet on the management interface (as I say I know the routing is OK because I can ping successfully FROM the firewall to this subnet). 

I wondered if this might be anything to do with anti-spoofing or implied rules?    Anyway if you have any ideas I would be very grateful!

Many thanks

 

 

 

 

 

 

 

 

1 REPLY 1
psmith6214
New Contributor

Actually  this turned out to be me being a bit stupid.  I had to add a static route to my laptop and then it worked OK.  (It was strange that I was able to ping from the firewall to my laptop though, but this may be a peculiarity of the windows networking on my laptop)

Labels
Top Kudoed Authors