FortiGate
FortiGate Next Generation Firewall utilizes purpose-built security processors and threat intelligence security services from FortiGuard labs to deliver top-rated protection and high performance, including encrypted traffic.
fquerzo_FTNT
Staff
Staff
Article Id 196665

Description


This article describes that if firewall policy is set to flow-mode inspection, it will not be possible to apply web filter or antivirus profile to it.  This is because both Antivirus and web filter by default will be created with Feature-set in Proxy. 

 

Scope

 

FortiGate.


Solution


The profile will not be visible in the drop-down menu in those cases.

  

Go to Security Profiles -> Web Filter, select the profile and next to 'Feature set', select 'Flow-based' and then select 'OK'.

 
 

OR  Go to 'Security Profiles ' -> 'Anti-Virus' , select the profile and choose 'Flow-Based' from option Feature set.

av-test.png

Go back to the ' Policy & Object ' -> ' Firewall policy '  and edit policy to select the profile 'test' web filter and Anti-virus from above examples.

 kbfirewall.png