Skip to main content
AbdoSoft1
New Member
October 4, 2022
Question

Prevent web application access using real IP address FortiWeb

  • October 4, 2022
  • 1 reply
  • 3780 views

Hello everyone,

hoping all is well with you , I am using FortiWeb to protect about 10 web servers on my network , I am using subdomain from my domain from Godaddy like ( abc.xyz.com ) and assign NATed real IP to the subdomain so users can use this subdomain to access the web applications that protected by FortiWeb, but if a user use the real IP the web application works fine but I need to prevent using Real IP I need block this , I need users to use only my subdomains , because there are many Bot scanners try to attack my web applications and using Real IP at the column ( HTTP Host )

WAF.png

1 reply

jintrah_FTNT
Staff
Staff
October 4, 2022

hi,

Could you mention the mode of deployment? Is it not reverse proxy?

 

Best regards,

Jin

AbdoSoft1
AbdoSoft1Author
New Member
October 4, 2022

Reverse Proxy Mode

jintrah_FTNT
Staff
Staff
October 4, 2022

So by default, traffic cannot go through directly to a real server via FortiWeb but through a VIP. Did you change any other settings?

 

best regards,

Jin