Skip to main content
superd
New Member
March 13, 2026
Question

Web Filtering Strategy Unrated and Suspicious Websites

  • March 13, 2026
  • 6 replies
  • 597 views

Hi,

We've been experiencing a significant number of security incidents involving websites categorized as "unrated" that are hosting malicious content and scripts.

I'm curious how the community approaches web filtering policies specifically for unrated websites. I don't want to block the entire unrated category globally, as I suspect there will be impact on legitimate websites that fall into this classification. Ive noticed some MS IPs unrated, which Im concerned might impact O365, or other potential unknowns.

Also, see below, if a website is categorized as unrated but has a risk level of "suspicious," how would I go about blocking those suspicious URLs specifically?


Any guidance or best practices would be greatly appreciated.


Example here:

Screenshot 2026-03-13 at 11.11.58.png


6 replies

Jean-Philippe_P
Staff & Editor
Staff & Editor
March 16, 2026

Hello superd, 

 

Thank you for using the Community Forum. I will seek to get you an answer or help. We will reply to this thread with an update as soon as possible. 

Jean-Philippe - Fortinet Community Team
Toshi_Esumi
SuperUser
SuperUser
March 16, 2026

Most of, if not all, our customers using FGT's webfiltering profiles have unrated category blocked. Only situations I hear from those customers having problems with this setting is when they introduced/created a new site (new URL) and they can't access those their own sites. At that time, either instruct them to click the "Request a Review" link in the screen to claim the site is legit for whatever the purpose/content is, or we do it on behalf of them. Then generally within hours they would be rated.

You can always block it to see if someone screams/complains then take a corrective action, either get them rated or just whitelist the domain or URL. But I don't expect you would encounter any serious problems with those major popular and legit cloud services. Unless you're in the industry for scamming/hacking, etc.

Toshi 

superd
superdAuthor
New Member
March 16, 2026

Thanks so much. I would tend to agree, too much is unknown with "unrated" sites. However, the concern I have is, i carried out some due duligence on our logs, and a number of the unrated sites were actually AWS and Microsoft IP addresses, which if blocked, I would assume could impact MS services, and potentially O365. FYI, our web DB is up to date. 

TESangoma
New Member
March 16, 2026

That's what I called "corrective actions" you might need to take. You just need to let them bypass the webfilter policies using Internet Services DB or other methods. Some of our customers are smart enough doing it by themselves while others need our assistance to do it.

Toshi

superd
superdAuthor
New Member
March 16, 2026

Thanks TE. So just for clarity, you mean a separate rule above web filter rule allowing Internet Services (like MS, AWS etc), or do you mean including this withing the same rule?
Thanks for taking the time here to assist.

Thought Leadership Security Summit. Outpace New Threats with AI - enhanced defense. Tuesday, Septmeber 15, 8:30 AM - 2:30 PM PT. The Golf Club at Newcastle, WA.
Virtual event | September 2026. SASE summit. The age of autonomous trust. Register here!