FortiManager
FortiManager supports network operations use cases for centralized management, best practices compliance, and workflow automation to provide better protection against breaches.
hmodi
Staff
Staff
Article Id 201195
Description This article describes how to correctly configure apache.log4j IPS signature in IPS profile using FortiManager.
Scope  
Solution

- The IPS signature for apache.log4j was added in IPS database version 19.00215.

 

Verify there is IPS database version equal to or higher than 19.00215.

 

hmodi_0-1639605560081.png

 

- From the IPS profile in FortiManager add the signature as shown below:
Policy & Object -> Intrusion Prevention -> Edit Profile and select 'Add signature'.

 

hmodi_1-1639605617667.png

 

- Search for apache.log4j and select -> change action per the requirement. (For e.g here its selected block).

 

hmodi_2-1639605688181.png

 

- Edit the policy and verify correct IPS profile is selected. And then install the policy package to FortiGate.

 

hmodi_4-1639605785187.png
Contributors