FortiGate
FortiGate Next Generation Firewall utilizes purpose-built security processors and threat intelligence security services from FortiGuard labs to deliver top-rated protection and high performance, including encrypted traffic.
kpanchal
Staff
Staff
Article Id 401551
Description

 

This article explains how to block specific adult content websites using FortiGate. Sometimes, certain websites are not blocked by the web filter even though the 'For adults'(see screenshots) category is blocked under the web filter. This article provides a step-by-step solution to resolve this issue.

 

Scope

 

FortiGate.

 

Solution

 

To block a specific adult content website using FortiGate, follow these steps:

  1. Go to Policy & Objects and create a new policy.
  2. In the policy, select the Web Filter profile and enable the 'For adults' (see screenshots) category block in that web filter.

 

Note:

  • The firewall Policy must have Inspection mode set to proxy-based.
  • The web filter applied in this policy must have the feature set set to Proxy-based.

 

first image.png

second image.png

 

  1. If the website is still not blocked, create a Static URL filter for the specific website. Check the following KB article to get information How to create a static URL: Technical Tip: Using a static URL filter feature to allow/block web sites

 

3rd image.png

 

 

  1. If the issue persists, create a new policy with the Destination IP set to the IP address of the website and set the action to
    Deny.
  2. In some cases, these websites can bypass the filtering by using the HSTS protocol. In that case, a deep-inspection profile may be required

 

Apply the new policy to the traffic and verify that the website is blocked.