Skip to main content
dilekc
New Member
March 18, 2024
Question

Fortigate 100F webfilter

  • March 18, 2024
  • 2 replies
  • 1490 views

Hi,

 

On the Fortigate 100F I've created a Web filter to block www.facebook.com

Security Profiles - Web Filter - Static URL Filter

www.facebook.com (Simple - Block - Enable)

But our company has a subpage on facebook like www.facebook.com/companyname

How can I configure Fortigate - Webfilter to block www.facebook.com but allow the users to see www.facebook.com/companyname

 

Thanks for your support.

2 replies

ezhupa
Staff
Staff
March 18, 2024

Hello dilekc,

You might be able to achieve it with static URL filtering. 
1st rule -> Exempt www.facebook.com/companyname 
2nd rule -> Block <whatever you want to block> 

In your case you are trying to allow a specific path after the main link www.facebook.com  so the policy would need to be in proxy mode and deep inspection would need to be enabled.

The exempt rule I would suggest in format "Regex" and you can test regex formats using the below regex tester:
https://regex101.com/

ozkanaltas
Valued Contributor III
March 18, 2024

Hello @dilekc ,

 

If you use ssl-deep inspection or proxy mode you can achieve this request with a static URL filter. For example like this,

 

image.png

 

But Facebook uses a lot of URLs, so you need to allow these URLs also.