| Description | This article describes how to allow trusted websites that are incorrectly flagged as Spam URLs and denied by the DNS Filter. |
| Scope | FortiGate. |
| Solution |
An authentic website is being blocked by the DNS filter, triggering a 'SPAM: URLs' error as shown in the screenshot below.
To verify the current categorization of a URL/website, can check it on the FortiGuard website:
Therefore, to allow access or find a resolution, follow these steps below.
From the FortiGate side:
From CLI: Create domain filter entry: config dnsfilter domain-filter
Apply the domain filter entry in the DNS filter profile: config dnsfilter profile next end
From the Client side: Flush the local DNS cache from the user device/PC. After completing the above steps on both the FortiGate and client side, the website will be accessible successfully (see attached screenshot).
If it is necessary to correct or update the categorization of a website, it is possible to send an appeal to our FortiGuard team: |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.