FortiGate
FortiGate Next Generation Firewall utilizes purpose-built security processors and threat intelligence security services from FortiGuard labs to deliver top-rated protection and high performance, including encrypted traffic.
nweckel
Staff
Staff
Article Id 389137
Description This article describes the FortiGate configuration block Amazon Prime Video.
Scope FortiGate.
Solution

The following sample configuration goal is to block access to Amazon Prime videos but allow access to the Amazon website.

 

  1. Application Control configuration: Refer to the Application Control filters and overrides documentation to block Amazon.video signature.

The Amazon.Video signature will block access from Amazon Prime application and block access to the URL https://www.pimevideo.com, but accessing https://www.amazon.com/gp/video/tv in the web browser will still be possible.

 

  1. Web Filter configuration: Refer to the Static URL filter documentation to create a wildcard static URL filter.

Enter the following wildcard string and set the action to 'block'.

 

*.amazon.*/gp/video/*

 

webfilter.png

 

The purpose of this filter is to block URLs such as:

 

  1. Firewall policy configuration:

Refer to the Firewall policy documentation to create a new firewall policy and set the following security profiles:

  • Web Filter.
  • Application Control.
  • SSL inspection using a deep inspection profile.

 

As a result, access to the following URLs will be blocked: https://www.amazon.com/gp/video/tv.

 

Amazon.Video_block.PNG

 

https://www.primevideo.com:

 

Amazon.Video_block2.PNG

 

Note: If a custom SSH/SSL deep inspection profile is configured, make sure Reputable Website is not enabled, as it will not fully inspect the amazon.com domain.