FortiGate
FortiGate Next Generation Firewall utilizes purpose-built security processors and threat intelligence security services from FortiGuard labs to deliver top-rated protection and high performance, including encrypted traffic.
sdebnath
Staff
Staff
Article Id 414043
Description This article describes how to allow trusted websites that are incorrectly flagged as Spam URLs and denied by the DNS Filter.
Scope All FortiGate.
Solution

An authentic website is being blocked by the DNS filter, triggering a 'SPAM: URLs' error as shown in the screenshot below.

 

Domain belongs to .jpg

 

Therefore, to allow access or find a resolution, follow these steps below.

 

From the FortiGate side:

  1. Add an Exempt (Whitelist) entry in the DNS Filter Profile.
  2. If required, use a wildcard domain (e.g. *.my.mexatlantic.co) to ensure subdomains are also allowed. 
  3. Set the action to Exempt for that domain.
  4. Verify that the correct policy profile is applied.

From the Client side: 

  1. Flush the local DNS cache from the user device/PC.

 

After completing the above steps on both the FortiGate and client side, the website will be accessible successfully (see attached screenshot).


Website Working.jpg

Contributors