FortiGate
FortiGate Next Generation Firewall utilizes purpose-built security processors and threat intelligence security services from FortiGuard labs to deliver top-rated protection and high performance, including encrypted traffic.
Oscar_Wee
Staff
Staff
Article Id 343628
Description This article describes how to restrict access to the admin page of FortiPortal.
Scope FortiGate, 7.0.11 and above, 7.2.1 and above.
Solution
  1. In the GUI of the FortiGate, go to Security Profile -> Web Filter -> Create New -> Name: Static_url_block_admin_allow_users -> Static URL Filter -> URL Filter -> Create New.
    URL : <website_of_portal>/admin.
    Type: Simple.
    Action: Block.
    Status: Enable.

    Static URL Filter -> URL Filter -> Create New
    URL : <website_of_portal>/login.
    Type: Simple.
    Action: Allow.
    Status: Enable.

  2. Ensure that the newly created Web Filter, is included in Firewall policy that governs users and admin logging in from WAN to FortiPortal.

  3. Ensure that SSL Deep Inspection is enabled in Firewall policy that governs users and admin logging in from WAN to FortiPortal.

  4. Verify the block of <website_of_portal>/admin and allow of <website_of_portal>/login by navigating to the pages with a test user.