Description | This article describes how to check the application ID in the logs to allow specific applications when application control is blocking it. |
Scope | FortiGate. |
Solution |
If the application control is blocking the traffic, check the logs from: Log & Report -> Security Events -> Application Control:
'Double-click' on the log and log details will show up as follows:
It will allow this application ID mentioned in the logs (Here 15895) from the application control profile which is mentioned in the specific policy ID (Here it is policy ID 47).
In the Security profile, select the specific Application control profile, scroll down to Application and filter override:
Hit 'Create New' and it will open the following tab:
Check again and the application should be allowed.
Via CLI:
config application list |