Skip to main content
Infotech22
Explorer III
January 18, 2024
Question

Security Profiles for Firewall Policies

  • January 18, 2024
  • 2 replies
  • 1071 views

Hello,

I would like to get some information's on how you guys deal with this topic.
I'm creating policy for IPSec connection between branch offices, vlan's and ssl.
How you approach with configuring security profiles and do I need them at all.

 

Since it's internal connection I woudln't use anything

2 replies

AEK
SuperUser
SuperUser
January 18, 2024

Hello

Usually when I create such policy I do the following:

  • Open just the required ports/services
  • Just use the predefined default profiles (AV, IPS, App), unless something specific is needed
AEK
dbu
Staff
Staff
January 18, 2024

Hi @Infotech22 ,
I believe the level of control depends on you. Security profiles provide the screening that filters the content coming and going on the network. They instruct the FortiGate what to look for in the traffic that you don’t want, or want to monitor, as it passes through the device. 

Here you find more information :

https://docs.fortinet.com/document/fortigate/7.4.2/administration-guide/680955/security-profiles