FortiSandbox
FortiSandbox provides a solution to protect against advanced threats and ransomware for companies who don’t want to implement and maintain a sandbox environment on their own.
alya
Staff
Staff
Article Id 246573
Description This article describes how to configure the Inline Block in FortiGate and FortiSandbox.
Scope

FortiSandbox v4.2.0 and above, FortiGate v7.2.0 and above.

Solution

This feature is only available in Proxy-based.

 

Add the FortiSandbox to the FortiGate: Go to Security Fabric -> Fabric Connectors -> FortiSandbox and configure as below:

 

unauthorized.png

 

Authorize the FortiGate in the FortiSandbox and enable Inline Block Policy:

 

authorized.png

 

Once authorized, go to the FortiGate Security profiles -> AntiVirus, select 'Create New' and configure as below:

 

FGT config.png

 

In the FortiGate Policy & Objects -> Firewall Policy, select 'Create New' firewall Policy or modify the current proxy-based firewall policy to use the previous AntiVirus profile.

 

fgt policy.png

 

Note:

Starting from v7.4.4, Proxy-related features are no longer supported in FortiOS with 2GB RAM or less. This change affects models 30G, 40F, 50G, 60E, 60F, 80E, and 90E series, including their variants (FortiWifi, FortiGate-3G4G, FortiGate-5G, FortiGate-POE), as well as the FortiGate-Rugged 60F (2 GB versions only).

 

Related document:

Proxy-related features not supported on FortiGate 2 GB RAM models.