NAT ingress over Verizon

I’m setting up BR1’s and HD2’s in front of a FortiGate for cellular failover. I’ve got NAT and policies set for the WAN and LTE. I can reach the FGT management interface from the WAN through the NAT, but fail when on LTE using the same policy. We’ve got a static address from Verizon and I can ping the LTE interface from outside. Is there something else to look at that I might be missing?

This is weird. Please open a support ticket here for support team to check.

I’ve opened ticket #775382 with details.

I have six HD2’s to deploy and the BR1’s on FW 7.0.1 build 2621 behave the same. I’m wondering if Verizon is blocking ports on ingress.

Thanks.

Let us work this out using support ticket. Packet capture need to perform from the device to confirm the traffics flow.