Created on
02-27-2025
10:07 PM
Edited on
02-28-2025
06:56 AM
By
Stephen_G
Description | This article explains how to block specific malicious IP addresses from accessing the internal network of the FortiGate using the Internet Service Database (ISDB). |
Scope | FortiGate. |
Solution |
FortiGate uses the ISDB service, which requires an active subscription. It is necessary to ensure that the FortiGate device has a valid subscription for the FortiGuard services, including ISDB. The status of the FortiGuard service can be checked under System -> FortiGuard.
Step 1: Go to Policy & Objects -> Internet Service Database -> Internet Services -> IP Address Lookup -> Search IP.
Step2: Create IPv4 Policy:
Note:
In the latest firmware versions (above v7.0) the option for IPv4 policy is replaced with Firewall policy under Policy & Objects.
|