Skip to main content
Thomas001
New Member
May 2, 2025
Question

Fortisandbox topology suggestion for file upload analysis on website.

  • May 2, 2025
  • 2 replies
  • 544 views

Hi Everyone,

 

I plan to implement Fortisandbox to ensure file uploads by users on the website are safe from potential threats.

 

I would like to ask:

1. How is the topology or architecture of this fortisandbox position placed.
2. Is there a best practice or similar implementation reference that I can learn from.

 

Thanks in advance for you help!

2 replies

Anthony_E
Staff
Staff
May 5, 2025

Hello Thomas,


Thank you for using the Community Forum. I will seek to get you an answer or help. We will reply to this thread with an update as soon as possible.


Thanks,

Best Regards
Anthony_E
Staff
Staff
May 7, 2025

To set up a FortiSandbox topology for file upload analysis on a website, follow these steps:

  1. Integration with FortiWeb: Configure FortiWeb to use a file upload restriction policy. This policy will submit uploaded files to FortiSandbox for evaluation.
  2. FortiSandbox Configuration: Ensure FortiSandbox is properly set up to receive files from FortiWeb. This involves configuring FortiSandbox to accept files for analysis and setting up the necessary network connections.
  3. Network Setup: Place FortiSandbox in a position where it can effectively communicate with FortiWeb. This typically involves ensuring both devices are on the same network or have a secure connection between them.
  4. Policy Actions:  Define actions in FortiWeb based on FortiSandbox results. For example, if FortiSandbox determines a file is malicious, FortiWeb can generate an attack log and take actions such as alerting or denying the file upload.
  5. Monitoring and Logging: Use FortiWeb and FortiSandbox logs to monitor file analysis results and adjust policies as needed. This helps in maintaining security and optimizing the analysis process.
  6. Testing and Validation: Test the setup by uploading various file types to ensure FortiWeb correctly forwards them to FortiSandbox and that the analysis results are accurate. This topology ensures that all files uploaded to your website are thoroughly analyzed for threats, enhancing your security posture.

Regards,

Best Regards