Description | This article describes the configuration requirements to when having FortiGuard webfilter categories set to ‘Warning’ in WCCP setup between FortiGate and FortiProxy. |
Scope | FortiGate, FortiProxy. |
Solution |
This article assumes there is already an existing setup working WCCP setup using FortiGate and FortiProxy. Refer to this article for further reference: Technical Tip: WCCP between FortiGate and FortiProxy
Whenever there are FortiGuard categories set to warning in the webfilter profile used in the FortiProxy for WCCP, it is required to ensure that the client device traffic to port 8010 is forwarded to the FortiProxy by the FortiGate for FortiGuard block and override pages to work.
Required configuration.
On FortiGate:
From GUI:
From CLI:
On FortiProxy:
The Issue observed before making the changes above:
The user device will run into an error upon selecting proceed on the FortiGuard warning page.
Post making the changes:
The site is reachable after selecting ‘Proceed’. |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.