fortinet / azure-templates

A set of Azure Templates for getting you started in Azure with Fortinet.
MIT License
94 stars 100 forks source link

No internet access for non Microsoft IP's #45

Closed evopilottuner closed 2 years ago

evopilottuner commented 2 years ago

I have an issue that my VM's in any of the default spokes with default configuration can not reach the internet.

Checking the firewall logs i can see SENT traffic but 0 bytes received on the same session.

To add also that any traffic HTTPS/HTTP/NTP etc that is going over the same policy but to azure or Microsoft IP's has traffic flowing both sent and received in the same session.

My routes are good but i feel like i missed something during deployment

evopilottuner commented 2 years ago

image

evopilottuner commented 2 years ago

image

evopilottuner commented 2 years ago

Apologies, to also add: Both FortiGates can contact FortiGaurd and pull updates I can connect from WAN to LAN via RDP to my test server deployed in spoke1 using a VIP on the WAN interface

lastly: IPSec site to site VPN i can establish the tunnel however i can only send data on both sides of the tunnel i can not see any recieved data on both sides, may not be relevant but another similar traffic flow symptom

jvhoof commented 2 years ago

Hi,

Appologies for the delay. Have you in the meantime resolved the issue? What template did you deploy? Did the public IP deploy correct and attached to the VM or Load Balancer?

Regards,

Joeri

jvhoof commented 2 years ago

Closing due to non activity. Please reopen or open a new issue if you have continues issues.

Joeri