FortiGate
FortiGate Next Generation Firewall utilizes purpose-built security processors and threat intelligence security services from FortiGuard labs to deliver top-rated protection and high performance, including encrypted traffic.
bkarl
Staff
Staff
Article Id 318469
Description

This article describes a fast way to install a Web server in order to establish a threat feed IP address list as an example and integrate it with FortiGate. This affordable option is useful for setting up on small networks without the need to install a Windows Server.

Scope FortiOS, Windows 10
Solution

To configure an HTTP server for the threat feed in Windows 10:

 

Go to Control Panel -> Programs and features -> Turn Windows features on or off.

Enable the Internet Information Services (IIS) and the engaged options and subfolders.

 

KB 42.jpg

KB 42 2.jpg

 

Now, test it on any browser by accessing 127.0.0.1.

 

KB 42 3.jpg

 

Go to IIS manager and create a new web site:

 

KB 42 4.jpg

 

Now on the Sites folder, right-click and add a new web site and fill in the information as below.

 

KB 42 5.jpg

 

Open the hosts file on the next path:

 

KB 42 6.jpg

 

Edit the hosts file as below:

 

KB 42 7.jpg

 

After that, upon entering it in the browse URL bar, the site should be seen:

 

KB 42 8.jpg

 

Now that the web server has been configured, a text file of IP addresses can be placed on the web server for the FortiGate to read the threat feed from. The URL used to configure threat feed on the FortiGate will be http://<ip address of server>/<textfile.txt>.

To configure an external threat feed using an IP address list on the FortiGate, see the documentation: IP address threat feed - FortiGate administration guide.