Skip to main content
WaveDev
New Member
April 8, 2024
Solved

Separate anti DDoS quarantines

  • April 8, 2024
  • 3 replies
  • 2897 views

Hi,
I'm using FotiOS 7.0.14

Behind my Fortigate cluster i have running multimple web services with separate public IPs.
When DOS threshlds are triggered Fortigate starts blocking source IPs including those that belongs to our Pingdom monitoring.
Since quarantine is global it also influence other applications.
Is there a way to configure quarantines per project or public IP?

 

Best answer by Yurisk

Hi, 

nope, there is no such option. But you do have option of creating DDOS policy per source/destination IP - you could create as top most the specific DDOS rules for Pingdom servers IP to basically exempt them from DDOS policy. 

3 replies

Yurisk
SuperUser
YuriskAnswer
SuperUser
April 8, 2024

Hi, 

nope, there is no such option. But you do have option of creating DDOS policy per source/destination IP - you could create as top most the specific DDOS rules for Pingdom servers IP to basically exempt them from DDOS policy. 

yurisk.info - all things Fortinet blog, no ads
WaveDev
WaveDevAuthor
New Member
April 8, 2024

For Pingdom it will not work since they are using some cloud solution for it's uptime checks, and IPs are constantly changing.
Any way, thanks i'we get information that i needed.

AEK
SuperUser
SuperUser
April 8, 2024

Just a detail.. FG can do anti-DoS, not anti-DDoS.

AEK