Skip to main content
fortinetuser2020
New Member
July 8, 2017
Question

web application firewall and exchange 2016

  • July 8, 2017
  • 1 reply
  • 7398 views

i want to implement the fortigate's (900d cluster with 5.4.5 fw) fortigate web application firewall (not FortiWeb) on exchange 2016 dag environment

i know from past experience that the wrong settings of the profile may cause problems (phones not connecting, outlooks disconnecting on and of and such).

 

does anywhere have a recommended settings for the profile so it will work best with exchange 2016? for services like rpc/outlook anywhere/activesync/mapi/owa

 

thank you

    1 reply

    jintrah_FTNT
    Staff
    Staff
    July 9, 2017

    Hi,

    A good option would be to turn the profiles in detection mode, run for a period of time and identify any false positives. These signatures can be disabled or set to alert only while rest of them in alert and deny action.

    fortinetuser2020
    New Member
    July 9, 2017

    you mean turn on the waf profile and set everything to monitor?

    Marcde_J
    Explorer
    June 23, 2023

    How do you view the events that it would have blocked to verify false positives etc?