Description | This article describes how to limit user access based on a source IP address, or it can also apply to all user traffic for an application. |
Scope | FortiAppSec Cloud. |
Solution |
There will be a chance that one of the legitimate IP or multiple IP are sending huge traffic for one application within a second and requesting for same resource again and again.
Admin can configure rate limit for all the IP addresses or specific IP address to limit the user traffic for requesting same resource access multiple times within one second in general team user mistakenly open same application in multiple browser tabs.
To configure Access rate limit, navigate to the application on which it needs to apply and follow the below path: Advanced Applications -> Custom Rule -> Create New -> Add Filter as shown below:
The above configuration is configured for a specific IP address 1.1.1.1, and Request per second means here that if the user send more than 10 request in one second for the application resources then action will be apply as period block which is 60 seconds. |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.