Created on 05-19-2020 05:03 AM Edited on 03-30-2022 08:09 AM By Anonymous
Description
This article describes how to block TOR traffic from the WAN to the LAN, by using the ISDB object.
This ISDB object contains a list of all TOR exit nodes currently known and is updated by FortiGuard.
Scope
Fortigate
Solution
Go to Policy & Objects -> IPV4 Policy and select 'Create New'.
Incoming interface: WAN.
Outgoing interface: LAN.
Go to Source -> Internet Service, search for 'Tor' and select 'Tor-Exit node'.
When creating the policy is finished, place it as high in the policy list.
Since policy lookup is done from top to bottom, place this policy as high as possible to prevent traffic coming from TOR to run through all the other policies above it.
Application Control can be used as well:
Blocking Tor traffic using the Application Control profile
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.