Skip to main content
zwilson50
New Member
January 20, 2017
Question

Web Application Firewall Help

  • January 20, 2017
  • 1 reply
  • 5666 views

We are running a FG 600D v5.4.3 and have a question regarding the Web Application Firewall.  We have certain online software modules that students use that's signatures are being categorized under Known Exploit.  To get these online programs to work properly, we are having to turn off Known Exploit signature block.

 

Is there way that we can create custom overrides for web application signatures similar to web filter overrides?  If not, how do you deal with needed websites who have a portion of their website blocked due to a miscategorized web application signature?

 

Thank you for any help you can provide.

 

Zach

    1 reply

    neonbit
    New Member
    January 22, 2017

    Hi Zach, I believe this is possible. You can configure FortiWeb Content routing so that a specific URL will have a different security policy.

     

    For example if your base website is www.company.com and your online software is found under www.company.com/software than you could create the following rules:

     

    1. www.company.com/software use Security profile with Known exploits disabled

    2. www.company.com use Security profile with Known exploits enabled

    Thought Leadership Security Summit. Outpace New Threats with AI - enhanced defense. Tuesday, Septmeber 15, 8:30 AM - 2:30 PM PT. The Golf Club at Newcastle, WA.
    Fortinet Flag the Hack. Wednesday, August 26, 9:00 AM - 5:00 PM ET, COSM, Atlanta, GA.
    Virtual event | September 2026. SASE summit. The age of autonomous trust. Register here!