Firewall configuration

 

 

Services

 

 

 

 

 

 

 

Table 38: FortiGate predefined services (Continued)

 

 

 

 

 

 

 

 

 

 

Service name

Description

Protocol

Port

 

 

 

 

 

 

 

 

TCP

All TCP ports.

tcp

0-65535

 

 

 

 

 

 

 

 

TELNET

Telnet service for connecting to a remote

tcp

23

 

 

 

computer to run commands.

 

 

 

 

 

 

 

 

 

 

TFTP

Trivial file transfer protocol, a simple file

udp

69

 

 

 

transfer protocol similar to FTP but with no

 

 

 

 

 

security features.

 

 

 

 

 

 

 

 

 

 

UDP

All UDP ports.

udp

0-65535

 

 

 

 

 

 

 

 

UUCP

Unix to Unix copy utility, a simple file copying

udp

540

 

 

 

protocol.

 

 

 

 

 

 

 

 

 

 

VDOLIVE

For VDO Live streaming multimedia traffic.

tcp

7000-7010

 

 

 

 

 

 

 

 

WAIS

Wide Area Information Server. An Internet

tcp

210

 

 

 

search protocol.

 

 

 

 

 

 

 

 

 

 

WINFRAME

For WinFrame communications between

tcp

1494

 

 

 

computers running Windows NT.

 

 

 

 

 

 

 

 

 

 

X-WINDOWS

For remote communications between an

tcp

6000-6063

 

 

 

X-Window server and X-Window clients.

 

 

 

 

 

 

 

 

 

Adding custom TCP and UDP services

Add a custom TCP or UDP service if you need to create a policy for a service that is not in the predefined service list.

To add a custom TCP or UDP service

1Go to Firewall > Service > Custom.

2Select TCP/UDP from the Protocol list.

3Select New.

4Type a Name for the new custom TCP or UDP service. This name appears in the service list used when you add a policy.

The name can contain numbers (0-9), uppercase and lowercase letters (A-Z, a-z), and the special characters - and _. Other special characters and spaces are not allowed.

5Select the Protocol (either TCP or UDP) used by the service.

6Specify a Source and Destination Port number range for the service by entering the low and high port numbers. If the service uses one port number, enter this number in both the low and high fields.

7If the service has more than one port range, select Add to specify additional protocols and port ranges.

If there are too many port range rows, select Delete to remove each extra row.

8Select OK to add the custom service.

You can now add this custom service to a policy.

FortiGate-800 Installation and Configuration Guide

203

Page 203
Image 203
Fortinet FortiGate-800 manual Adding custom TCP and UDP services, 203