Skip to main content
DPadula
Staff & Editor
Staff & Editor
January 10, 2024

Technical Tip: How to enable Explicit Proxy

  • January 10, 2024
  • 0 replies
  • 6869 views
Description This article describes how to enable Explicit Proxy on FortiGate with different versions of FortiOS.
Scope FortiGate.
Solution

For FortiGate v7.0.x and previous:

  • Go to System -> Feature Visibility, enable Explicit Proxy, and select 'Apply'.

 

7.0.x_previous.png

 

For FortiGate v7.2.x or later, in some models, the option above may be greyed out. To enable it:

  1. From CLI: 

 

config system settings

    set gui-proxy-inspection enable

end

 

Note:

The commands above enable Proxy Features on the FortiGate (for example, enabling proxy inspection in firewall policies). However, this is not enough to enable the Explicit Proxy feature, which still needs to be enabled from Feature Visibility in the following steps. 

 

CLI_commands.JPG

 

7.2.x_future.JPG

 

  1. From the GUI: Go to System -> Feature Visibility, enable Explicit Proxy, and select 'Apply'.

 

7.4.x_gui.png

 

Enabling this feature will also enable and allow administrators to create Authentication Rules and Schemes on the FortiGate.

 

auth3.PNG

 

Note:

It was reported by users and tested in the lab that in v7.2.6, the explicit proxy feature is disabled after reboot. The latest version, v7.2.9, is not affected by the issue; explicit proxy is kept enabled after reboot, as it is supposed to. Effective from v7.4.4 and later, explicit proxy features are no longer supported on FortiGate models with 2 GB RAM or less.

Thought Leadership Security Summit. Outpace New Threats with AI - enhanced defense. Tuesday, Septmeber 15, 8:30 AM - 2:30 PM PT. The Golf Club at Newcastle, WA.
Fortinet Flag the Hack. Wednesday, August 26, 9:00 AM - 5:00 PM ET, COSM, Atlanta, GA.
Virtual event | September 2026. SASE summit. The age of autonomous trust. Register here!