Created on
01-08-2025
01:05 AM
Edited on
11-27-2025
01:29 AM
By
Jean-Philippe_P
| Description | This article describes how 'http_agent="ZmEu" can be blocked. |
| Scope | FortiWeb. |
| Solution |
FortiWeb can be used to block the traffic coming from 'http_agent="ZmEu"'.
This can be achieved by using a Custom Policy. Steps can be performed as below:
Once this is set up, call the Custom Policy in the required Web-protection profile, under Policy -> Web Protection Profile -> Custom Policy, and select OK.
From CLI:
config waf custom-access rule next
Apply a Custom access rule to the policy using CLI:
config waf custom-access policy
If the issue is not resolved, then reach out to the Support helpline with the required config and logs. The Regex code used above might need to be modified based on the requirement. |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.