Skip to main content
kelvinshee
New Member
June 13, 2016
Solved

Web Filter URL Not Working

  • June 13, 2016
  • 4 replies
  • 83387 views

hi,

on FortiGate 60D, I want allow web filter from URL filter.

but I try for setting and is not working? is still blocking!

 

may know do have sample or how to solve it?

 

thanks.

    Best answer by bcallan

    Did you resolve this?  I know it's a pretty stale thread, but maybe this will help you or the next person.

     

    Static URL filter is slightly counter-intuitive and may not behave quite the way you expect.  Please review documentation (for 5.4, see http://help.fortinet.com/fos50hlp/54/Content/FortiOS/fortigate-security-profiles-54/Web_Filter/Static%20URL%20Filter.htm).  Pay close attention to the notes for Allow action.  Allow passes the request on to other proxy functions, such as AV and Web Filter, so if the URL is in a blocked category, it will still be blocked.  The Exempt action bypasses other proxy functions, and while this does prevent web filter from being applied, it also prevents AV scanning.  A better solution may be to use web rating override to re-categorize a URL pattern from it's default Fortiguard category to another Fortiguard category or a custom category, then set that category action to the desired action.

    4 replies

    kelvinshee
    New Member
    June 16, 2016

    from the Fortigate category web filter is been block, is that i can allow fews website is allow from category? 

    kelvinshee
    New Member
    June 16, 2016

    from the fortigate web filter category, i been set for block some category. 

    but i want just allow fews website from that category. 

     

    i been try for allow from URL filter. but is still blocking. 

    how i can allow it? 

     

    thanks.

    bcallan
    bcallanAnswer
    New Member
    September 7, 2016

    Did you resolve this?  I know it's a pretty stale thread, but maybe this will help you or the next person.

     

    Static URL filter is slightly counter-intuitive and may not behave quite the way you expect.  Please review documentation (for 5.4, see http://help.fortinet.com/fos50hlp/54/Content/FortiOS/fortigate-security-profiles-54/Web_Filter/Static%20URL%20Filter.htm).  Pay close attention to the notes for Allow action.  Allow passes the request on to other proxy functions, such as AV and Web Filter, so if the URL is in a blocked category, it will still be blocked.  The Exempt action bypasses other proxy functions, and while this does prevent web filter from being applied, it also prevents AV scanning.  A better solution may be to use web rating override to re-categorize a URL pattern from it's default Fortiguard category to another Fortiguard category or a custom category, then set that category action to the desired action.

    jimzky1026
    New Member
    September 30, 2019

    I have the same problem. Some category in fortiguard are blocked but in static URL filter I put some websites to give an access but not working, still blocked... How to solved this?

    Dave_Hall
    New Member
    September 30, 2019

    Hi jimzky1026.

     

    Need more information about your situation.  Where in the firewall rules chain is the FortiGuard web filtering policy applied to?  Do you have more than one firewall policy covering web traffic? Do you have a firewall policies covering general (any) traffic and if so is your web filtering policy placed above it?  Are you using security certificate inspection or pure SSL (deep packet) inspection?  Are the site(s) in question hosted an virtual cloud(hosted) servers - does an NSLookup resolve the hostname to more than one IP or FQDNs?

     

    What firmware is your fgt running?

    Sajjad
    New Member
    September 5, 2023

    Step 1:
    Just Enable URL Filter enter the website name and allow it

    Step 2:
    Bottom of URL filter tab you can see Content filter tab just enable it
    Enter the website name with https: and wwww and choose wildcard and regular expression.

    Then website will be allowed to acces.

    Thanks