Skip to main content
hpnetthuyle
New Member
October 18, 2017
Question

I can't block request by Policy (Fortigate 200D)

  • October 18, 2017
  • 1 reply
  • 3888 views

I configed policy to deny all request from 113.179.126.31 and some IP Wanacry FROM Wan1 to Port10, show below. But not match rule.

Please help me?

 

    1 reply

    FatalHalt
    New Member
    October 18, 2017

    Open the command line, and edit the block policy. Make sure the command 

     

    'set match-vip enable' is set.

     

    This will allow a block policy to check against existing VIPs. 

     

    Give that a shot and see if it works. 

    hpnetthuyle
    New Member
    October 19, 2017

     

    Thank FataHalt so much!

     

    all request is match the rule!