- Access exclusive content
- Connect with peers
- Share your expertise
- Find support resources
08-23-2021 10:22 AM - edited 08-23-2021 11:04 AM
I have configured Captive Portal with MFA and it works fine when the user traffic is originated from Untrust side of the firewall. When the URL "https://<firewall name>:6082/php/uid.php?vsys=1&rule=0" access from one of the internal zones (e.g.) Trust, it does not work. I have user-identification enabled on all zones.
User from outside of firewall -> captive portal URL on untrust interface -> [Works fine]
User from inside of firewall -> trust -> captive portal URL on untrust interface [Does not work]. Ping works fine.
I tried packet capture and could only see SYN packets. Ping works fine. The firewall is also configured to allow non-syn tcp. There is no return traffic or 0 bytes for the traffic received. Intra-zone and security policies are configured to allow as well. Packet capture shows drop file created with SYN packets only.
No NAT involved. All internal configuration.
Any suggestion?