FortiGate
FortiGate Next Generation Firewall utilizes purpose-built security processors and threat intelligence security services from FortiGuard labs to deliver top-rated protection and high performance, including encrypted traffic.
ajoy
Staff
Staff
Article Id 223481
Description This article describes how to exempt specific subnet or IP from all IPS signatures or specific IPS signatures from GUI.
Scope FortiGate version 7.2.x.
Solution

To exempt an IP from specific subnet from all IPS signature or protection.

For example, 192.168.1.1/32 from 192.168.1.0/24 or the entire subnet:

 

1) Go to Security Profiles -> Intrusion Prevention.

2)  In IPS signatures and Filters section, select 'Create New'.

3) Go to Add Signatures ->Type (Signature) -> Exempt IP's and add all Results.

 

It is also possible to select specific signatures to be excluded by selecting the one needed.

 

Screenshots for reference:

 

ajoy_0-1662929735603.pngajoy_1-1662929759520.png
Contributors