FortiGate
FortiGate Next Generation Firewall utilizes purpose-built security processors and threat intelligence security services from FortiGuard labs to deliver top-rated protection and high performance, including encrypted traffic.
bkarl
Staff
Staff
Article Id 340395
Description This article describes how to know which IP address revolves around the block portal.
Scope FortiGate.
Solution

Type the command:

 

diagnose test application dnsproxy 3

 

Output will looks like this:

 

server=154.52.24.53:53, expiry=2024-12-17, expired=0, type=2

server=154.52.26.53:53, expiry=2024-12-17, expired=0, type=2

server=149.5.232.53:53, expiry=2024-12-17, expired=0, type=2

FGD_CATEGORY_VERSION:10

SERVER_LDB: gid=0314, tz=720, error_allow=0

FGD_REDIR_V4:208.91.112.55 FGD_REDIR_V6:[2620:101:9000:53::55]

 

On the left side, there is the IPv4, and on the right one the IPv6.This information will help to redirect the traffic to the blocked portal.

When redirecting the traffic, it matches a firewall policy for a UTM profile set.

 

KB 49.jpg

Contributors