Solved
Detect HTTP return code 401 and block IP
Hello,
we are using Fortiweb VM version 7.0.8 and i'm not specialist in the system. Our Exchange server is behind the fortiweb. We have a lot of attempt to connect to the exchange using EWS.
I can see in the Traffic (Log & Report) for attempts and the return code is 401 (forbidden).
My question : Is it possible to create a rule/policy to automatically block IP for all attempt getting the Return code 401?
Thank you
