Skip to main content
jollerlee
New Member
January 26, 2021
Question

Blocking fake-HTTP(S) traffic with Web-Filter

  • January 26, 2021
  • 0 replies
  • 1828 views

We protect a group of servers with a Fortigate 500D (running OS 5.6).

What I am trying is block all outbound traffic with only a few exceptions, such as Windows Update.

Since they are servers, they do not need access to most of the websites out there.

So I white-list those exceptions with url-filters (due to the lack of license).

 

The problem is, while my Fortigate makes it to block outbound web requests to those not white-listed, 

it forwards "fake" HTTP traffic, that is, non-HTTP(s) traffic from 80/443 ports.

I've tried "Block invalid URLs", with no luck.

 

I prefer web-filter to FQDN addresses, because I need partial hostnames and wildcards.

Besides, FQDN for IPv6 is not available in my version of OS.

 

Is it possible to have web-filter block non-HTTP traffic?

 

Thought Leadership Security Summit. Outpace New Threats with AI - enhanced defense. Tuesday, Septmeber 15, 8:30 AM - 2:30 PM PT. The Golf Club at Newcastle, WA.
Fortinet Flag the Hack. Wednesday, August 26, 9:00 AM - 5:00 PM ET, COSM, Atlanta, GA.
Virtual event | September 2026. SASE summit. The age of autonomous trust. Register here!