Skip to main content
DDSsupport
New Member
October 20, 2017
Question

How to create exception to web filtering rule

  • October 20, 2017
  • 2 replies
  • 29478 views

Hi

 

So i currently setup the web filtering service to block certain URL's we want to block on the network. An example is facebook.com and it's working.

 

What i'm trying to do now is create an exception where i can specify IP's address or MAC address that are excluded from the web filtering and can still access facebook.com for example.

 

Any help would be appreciated...

    2 replies

    beh_arji
    New Member
    October 22, 2017

    this is exception tip that I want to use in other policies too,

    exception some IPs from a range IP that we use in policy.

    I think FGT has not this feature (add exception profile in policy) and we should create new policy and use Policy order technique to exempt specific IPs.

    Regards

    SecurityPlus
    Explorer III
    October 23, 2017
    You can create two different web filter profiles: one called Facebook-Allow and one called Facebook-Block. Create an address group with the users allowed to view Facebook. Create a policy restricted to the allowed address group and apply the Facebook-Allow profile. Create another policy for all users and select the Facebook-Block profile. Make sure that the policy with Facebook-Allow is listed prior to the Facebook-Block policy. You may need to first enable the option to create multiple security profiles by going to System > Config > Features, selecting Show More, and turning on Multiple Security Profiles.
    Thought Leadership Security Summit. Outpace New Threats with AI - enhanced defense. Tuesday, Septmeber 15, 8:30 AM - 2:30 PM PT. The Golf Club at Newcastle, WA.
    Fortinet Flag the Hack. Wednesday, August 26, 9:00 AM - 5:00 PM ET, COSM, Atlanta, GA.
    Virtual event | September 2026. SASE summit. The age of autonomous trust. Register here!