FortiGate
FortiGate Next Generation Firewall utilizes purpose-built security processors and threat intelligence security services from FortiGuard labs to deliver top-rated protection and high performance, including encrypted traffic.
metz_FTNT
Staff
Staff
Article Id 243903
Description

This article describes the meaning of the message 'webfilter_command_block' and how to allow the traffic to pass through the web filter.

Scope

FortiGate.

Solution

The traffic can be blocked by the web filter and the following message can appear in WF logs: 'webfilter_command_block'.

 

webfilter_command_block.jpg

 

This message means that the web filter has blocked a 'POST' HTTP method.

 

To allow this traffic, set 'HTTP POST Action' to 'Allow' as shown in the screenshot below:

 

Screenshot_2023-01-26_09-36-53.png

 

Also, an error at 'FILE FILTER' may be be shown as a block page cause of an authentication fail on a HTTP page. This is a false positive over the File Filter profile, but is an error on the HTTP form level over the page.

 

Captura de pantalla 2025-08-07 145056.png

 

Note: It is recommended to allow the post action, because if the post action is blocked, put or post actions will not work properly and will be blocked.