Skip to main content
pewpew123
New Member
February 25, 2026
Solved

Block accessing websites via IP Address

  • February 25, 2026
  • 3 replies
  • 261 views

My security team has this compliance requirement.

"Attempts to access websites through their IP addresses instead of their domain names are blocked by web content filters."

 

How would this be configured in FortiGate?

 

Best answer by funkylicious

try a regex in the webfilter as static for (?:(?:25[0-5]|2[0-4][0-9]|[01]?[0-9][0-9]?)\.){3}(?:25[0-5]|2[0-4][0-9]|[01]?[0-9][0-9]?) to block

https://community.fortinet.com/t5/FortiGate/Technical-Tip-How-to-block-IP-based-HTTPS-web-site-access-when-a/ta-p/197148 

https://community.fortinet.com/t5/FortiGate/Technical-Tip-Using-a-static-URL-filter-feature-to-allow-block/ta-p/193086 

3 replies

funkylicious
SuperUser
SuperUser
February 25, 2026
"jack of all trades, master of none"
pewpew123
pewpew123Author
New Member
February 25, 2026

I think the first link might be the one. Thanks for sharing.

 

Do you know if this will inadvertently block internal server web apps where you access via IP?

funkylicious
SuperUser
SuperUser
February 26, 2026

if you apply the webfilter for internal destination, yes.

"jack of all trades, master of none"
Thought Leadership Security Summit. Outpace New Threats with AI - enhanced defense. Tuesday, Septmeber 15, 8:30 AM - 2:30 PM PT. The Golf Club at Newcastle, WA.
Fortinet Flag the Hack. Wednesday, August 26, 9:00 AM - 5:00 PM ET, COSM, Atlanta, GA.