FortiGate
FortiGate Next Generation Firewall utilizes purpose-built security processors and threat intelligence security services from FortiGuard labs to deliver top-rated protection and high performance, including encrypted traffic.
pavankr5
Staff
Staff
Article Id 334375
Description This article describes how to use the 'Remove Cookies' option on the FortiGate Web Filter.
Scope FortiGate.
Solution

Screenshot 2024-08-19 184031.png

 

Action taken for HTTP POST traffic:

  • Allow: Normal, POST requests are allowed.
  • Block: POST requests are blocked.

 

In the GUI:

  • Go to Security Profiles -> Web Filter.
  • Navigate to the Proxy Options section.
  • Select the 'Remove Cookies' filter.

 

The 'Remove Cookies' feature on FortiGate is used to enhance security and privacy by removing cookies from web traffic passing through the firewall. Cookies are small pieces of data stored on a user's computer by websites to track user activity and preferences. By removing cookies, FortiGate can help prevent tracking, profiling, and potential security risks associated with malicious cookies.

 

Websites using cookies might not function properly if this filter is enabled.

 

Below is an example of a log when a Website (htttps://test.mapnwea.org) is not reachable due to having the 'Remove Cookies' feature enabled, and thus requiring to disable it.

 

cookie_example.png

 

If the 'Remove cookie' feature still requires enabling and only allows one or more URLs, a static URL filter can be used for the websites/destination URLs, and the action can be set to exempt in the Web Filter profile.

For more information on configuring static URL filters, refer to the article below:

Technical Tip: Using a static URL filter feature to allow/block web sites