FortiADC
FortiADC enhances the scalability, performance, and security of your applications whether they are hosted on premises or in the cloud.
gsharma
Staff
Staff
Article Id 415757
Description This article describes how to enable IP Reputation Blocklist for Virtual Server.
Scope FortiADC.
Solution

When IP Reputation Blocklist is configured, it will not function unless it's enabled inside the Application profile.

Once IP Reputation Blocklist is configured, follow the below steps to make the list active.

 

Navigate to Server Load Balance -> Application resources -> Application Profile.

 

  1. Create a new application profile (changes cannot be made to default profiles).
  2. Give name to new profile, select type and enable the IP Reputation button. This button will ensure that IP reputation module will be enable for that Application profile. 
    Note: By default, IP reputation is disabled in all Application profiles.

    iprep1.jpg
  3. Save the config.
  4. Navigate to the Virtual server for which IP reputation blocklist have to be enabled.
  5. Open the General settings and call the Application profile in which IP Reputation module was enabled.

    IPrep2.jpg
  6. Save the settings. 
  7. Logs for IP reputation can thus be seen under security logs.


IPrep3.jpg

 

Related documents:

Technical Tip: How to enable logging of IP reputation logs for Blocklist IPs
Managing IP Reputation Policy settings