Description | This article describes how to block Deepseek.com using a web filter. |
Scope | FortiGate. |
Solution |
Blocking deepseek.com can be done from Web Filter, using a static URL filter:
The expected result will be:
However, in certain situations, organizations have allowed ISDB to object before deepseek.com blocking policy, for example, the screenshot below, that possibly causes deepseek.com not to be blocked properly, especially containing 'Cloudflare-CDN':
Cause: When deepseek.com has been loaded, the first hop will be Cloudflare CDN.
Since Cloudflare CDN has been allowed in the policy before block policies hence deepseek.com will still be able to visit.
Solution: Apply application control and deep inspection in ISDB policy.
Blocking deepseek.com will now, work properly. However, the FortiGate block page will display application control:
Related article: Troubleshooting Tip: Why some blocked Websites are still accessible on FortiGate |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.