Skip to main content
rishab444
Staff
Staff
February 27, 2025

Technical Tip: Unable to apply Application Control in Security Policy when central NAT is enabled.

  • February 27, 2025
  • 0 replies
  • 458 views
Description This article discusses the unavailability of an Application control profile from Security policy including from Feature Visibility.
Scope FortiGate.
Solution
  • When the Central NAT is enabled this is an expected behavior, the application control security profile is no longer available under Security profiles or Security Policy and also from Feature Visibility to be enabled.

    FV1.PNG

     


    FV2e.png

     

  • However, this feature can still be used directly on the profile as below, where a specific application or the whole Category can be selected  as per the requirements:

    SP1e.jpg

     

  • Below is an example where a Whole proxy Category and a single application Bit Torrent which is part of the P2P category are blocked using the security policy with this feature, Category and Specific applications and be selected in the same policy:

    Blocke.jpg