FortiGate
FortiGate Next Generation Firewall utilizes purpose-built security processors and threat intelligence security services from FortiGuard labs to deliver top-rated protection and high performance, including encrypted traffic.
bkarl
Staff
Staff
Article Id 252228
Description

This article describes how to allow traffic to a specific game website. Despite the games category being blocked, the website allowed shows nothing when trying to access the website (Roblox in this example).

Scope FortiGate v7.2.3.
Solution

At this time the website appears like this:

 

KB12 1.jpg

 

1) Create a firewall policy with inspection mode configured to Flow.

 

2) Create a Web Filter Profile, in this case, the name is Roblox.com but it is possible to name it differently. On Static URL Filter module, enable URL Filter and add the following URLs as list below:

 

secondlife.com --->Simple

*roblox.com --->Wildcard​

css.rbxcdn.com  -> Simple
ecsv2.roblox.com  -> Simple

images.rbxcdn.com -> Simple

js.rbxcdn.com ->Simple​

www.googletagmanager.com ->Simple

 *rbxcdn.com  ->  Wildcard

 

Do not forget the action for those URLs must be 'Exempt' and consider the action for the category Games as 'block'.

 

KB12 2.jpg

 

For this case, port2 is the LAN interface and port1 will be the WAN interface.

Finally, apply the policy and now It will work.

 

KB12 3.png

 

Contributors