FortiGate
FortiGate Next Generation Firewall utilizes purpose-built security processors and threat intelligence security services from FortiGuard labs to deliver top-rated protection and high performance, including encrypted traffic.
egudino
Staff
Staff
Article Id 194481

Description

 

This article describes the configuration needed to allow access to just certain VIMEO channels instead of the whole site. 

 
Scenario: Internal user PC connected to the internal interface and a WAN connection.
 
Policy must have a web-filter profile enabled and SSL Deep Inspection as well.


Scope

 

kbimage1.JPG
 

Allow certain VIMEO channels by using web-filter rules while blocking all "Media and Download" category.

Solution


In the URL Filter profile, configure the following data as "WILDCARD" and "EXEMPT", as illustrated below:

 'vimeo.com/channels/examplechannel'          -> Where 'examplechannel = to the actual VIMEO channel to be allowed'.
'player.vimeo.com'
'vimeocdn.com'
'api.vimeo.com'
 
vimeo.png 
Enable Deep Inspection in the policy and make sure that the FortiGate's certificate is installed in the PC.

ssslinspectionvimeo.JPG