Skip to main content
Explorer
June 9, 2026
Solved

Fortigate 401F DoS policy

  • June 9, 2026
  • 2 replies
  • 41 views

Hello,

Would really appreciate it if someone can point me to the right direction or help me with the following.

 

Using DoS policy would like to know if its possible to create 2 polices with source like so

Policy#1 IPs from specific country. The limits are set higher or set to disable.

Policy#2 All other IPs . The limits are set very low

 

The questions are 

  1. Does Fortigate support anything similar to the above?
  2. If both policies are enabled Will this lead to an increase in the resource usage of the Fortigate firewall?

 

Thank you in advance.

Best answer by funkylicious
  1. yes, it can do something like that - the rules are processed top to bottom like a firewall policy - 

     

  2. FGT 400F has a NP7 processor, so DoS traffic would be processed/offloaded to it, not by/to the CPU - https://docs.fortinet.com/document/fortigate/7.6.2/hardware-acceleration/599810/dos-policy-hardware-acceleration  
  3.  

2 replies

funkylicious
SuperUser
SuperUser
June 9, 2026
  1. yes, it can do something like that - the rules are processed top to bottom like a firewall policy - 

     

  2. FGT 400F has a NP7 processor, so DoS traffic would be processed/offloaded to it, not by/to the CPU - https://docs.fortinet.com/document/fortigate/7.6.2/hardware-acceleration/599810/dos-policy-hardware-acceleration  
  3.  

"jack of all trades, master of none"
sjoshi
Staff
Staff
June 9, 2026

Hi ​@SPC 

You can create dos policy as below as it will follow top down approach. It will not increase any load in the resource

 

Thanks, Salon