FortiWeb
A FortiWeb can be configured to join a Security Fabric through the root or downstream FortiGate.
shafiq23
Staff & Editor
Staff & Editor
Article Id 426692
Description This article describes how to search for signature availability in the FortiWeb signature database by using CVE-ID.
Scope FortiWeb.
Solution

In the event of a new CVE reported that is classified as a web attack, administrators usually will research whether FortiWeb has signature patterns to mitigate such an attack vector.

 

To easily identify whether FortiWeb has the relevant signature for mitigation, search the signature database by using the CVE ID.

 

  1. Navigate to Web Protection -> Known Attacks -> Signature -> Edit the respective signature profile.
                                                            
    1.png

     

  2. Select the respective signature profile and the Signature Details button.
                  2.png                                                              
  3. Select Search in the Dictionaries pane.

    3.png

     

  4. Enter CVE ID and select Search.
                                                                                    
    4.png

     

The administrator will be able to understand the details of the signature and determine the next step of the attack mitigation.

 

Related article:
Technical Tip: CVE lookup and other important features in FortiGuard Labs