Skip to main content
Alxndr3
New Member
March 8, 2018
Question

Mobile deny for specific network

  • March 8, 2018
  • 1 reply
  • 31456 views

Hi!

I would like to deny the access to the internet for smarphones.

I've created a device based rule, for while to block the access from all networks, however it's not working.

 

    1 reply

    EMES
    New Member
    March 9, 2018

    Do you have device detection enabled on the interface facing your users? also how is your network layed out, is the fortigate the gateway for the subnet where the mobile users reside?

    Alxndr3
    Alxndr3Author
    New Member
    March 9, 2018

    Yes, it`s enabled, the gateway is a core switch. I have only one fortigate`s interface (lan) connected to that swich.

    Dave_Hall
    New Member
    March 9, 2018

    Hi Alexandre.

     

    Can't tell from your screenshot if you have set the action to deny on those polices nor able to tell if you have set a schedule.  Are there any firewall polices above those policies in question that may be allowing general device traffic through.?