Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
rc179
New Contributor

What filter gets applied first

Within a web filter security policy, which get's applied first, the Category filter, or the URL filter?

3 REPLIES 3
Dave_Hall
Honored Contributor

Static URL filtering followed by FortiGuard categories.  See FD40476 or 11158.

NSE4/FMG-VM64/FortiAnalyzer-VM/6.0 (FWF30E/FW92D/FGT200D/FGT101E/FGT81E)/ FAP220B/221C

NSE4/FMG-VM64/FortiAnalyzer-VM/6.0 (FWF30E/FW92D/FGT200D/FGT101E/FGT81E)/ FAP220B/221C
Toshi_Esumi
Esteemed Contributor III

URL filters are get examined first, then Category filters.

https://kb.fortinet.com/kb/documentLink.do?externalID=11158

The KB is really old but I don't think they've ever changed this order. Otherwise, it would break many policies when it's upgraded.

rc179

So if I turn off the category filter and put a * monitor in the URL filter, I will effectively log all web access.

Labels
Top Kudoed Authors