Skip to main content
krusty
New Member
March 27, 2017
Solved

Web filtering not performed following Application control

  • March 27, 2017
  • 1 reply
  • 12544 views

Hello,

 

Hope someone can help here.

 

The fortigate seems to skip web filtering following application control. Is this normal?

 

Thanks in advance.

    Best answer by hmtay_FTNT

    Hi krusty,

     

    I replied to the PM. Can you enable certificate-inspection under "SSL Inspection"? If you do not enable that, the IPS engine will not scan any SSL sessions.

     

    HoMing

    1 reply

    hmtay_FTNT
    Staff
    Staff
    March 27, 2017

    Hello krusty,

     

    If you enabled a Web Filter profile with Application Control, and the App Control action does not drop the traffic, no, it should not skip web filtering. However, if App Control drops the traffic, then Web Filter will not apply. How did you test your policy? Can you send me your configuration file and let me know which policy ID are you using?

     

    HoMing

    Iescudero
    New Member
    March 27, 2017

    Hello!

    Application Control and IPs were applied before web filter, so this is a normal behaviour.