FortiGate
FortiGate Next Generation Firewall utilizes purpose-built security processors and threat intelligence security services from FortiGuard labs to deliver top-rated protection and high performance, including encrypted traffic.
fquerzo_FTNT
Staff
Staff
Article Id 196665

Description


This article describes that if the firewall policy is set to flow-mode inspection, it will not be possible to apply a web filter or an antivirus profile to it. This is because both Antivirus and web filter by default will be created with the Feature-set in Proxy. 

 

Scope

 

FortiGate.


Solution


The profile will not be visible in the drop-down menu in those cases.

 

JeanPhilippe_P_0-1745592428632.png

  

Go to Security Profiles -> Web Filter, select the profile and next to 'Feature set', select 'Flow-based' and then select 'OK'.

 
JeanPhilippe_P_1-1745592460642.png

 

 

Or go to 'Security Profiles ' -> 'Anti-Virus', select the profile and choose 'Flow-Based' from option Feature set.

 

av-test.png

 

Go back to the ' Policy & Object ' -> ' Firewall policy '  and edit policy to select the profile 'test' web filter and Anti-virus from above examples.

 kbfirewall.png