Created on
04-14-2017
04:05 PM
Edited on
08-13-2025
10:48 PM
By
Anthony_E
Description
Solution
However, executing the following command returns an error message:
The web filter service remains disabled, despite how the web filtering profile with SSL/SSH inspection is applied to at least one firewall policy.
Ensure that 'FortiGuard Category Based Filter' is enabled under the web filter profile.
Once the 'FortiGuard Category Based Filter' is enabled, servers will be visible under 'diagnose debug rating'.
Note:
Web Filtering in System -> FortiGuard -> Filtering Services Availability will still show as UP even if webfilter-force-off is set to enable, which is why it is important for this setting to be checked via CLI.
Related article:
Troubleshooting Tip: Resolving FDS Communication Issues (FortiGuard Distribution Servers)
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.