[AF] The console cannot log in because the login port is mapped
Problem Description
The AF console interface cannot be accessed via the public network address

665565b8a46807103e.png (38.01 KB)
Process——
Check the NAT Policies. Because the full mapping of the public network address is configured, the logged-in public network IP Address 443 is mapped to the intranet address.

859395b4f520e12b28.png (33.14 KB)
Root cause
The external network port address is Destination NAT, and all protocols are selected, which will cause the 443 port of the device to be mapped to the internal network address when accessing it.
solution
Add a new entry in front of the full mapping to access the external network address 443 mapping to the destination Destination NAT of the 443 port of the external network address

82775b5c38c55471a.png (179.67 KB)
Original Link
https://support.sangfor.com.cn/cases/list?product_id=13&type=1&category_id=137&isOpen=true