Hello team!!!
My boss asked me to block Internet access for Firefox and Opera browsers in a Fortigate 60F :( with version 7.6.4
In an application control, which is like the "default" (All categories as "Monitor"), I added an application override, to block the following apps:
* HTTP.BROWSER_Opera
* HTTP.BROWSER_Opera.Mini
* Opera.Turbo
* Opera.Update
* Opera.VPN
* Firefox.Update
* HTTP.BROWSER_Firefox
(All applications found with the words "Opera" and "Firefox")
I applied the application control to a policy for the test machine, and when I tested, I still could use any browser.
The policy has applied the default "certificate-inspection" profile as "SSL Inspection"
Does this needs to use full inspection?
Do you know why both browser are still working?
Is there another way to block these browsers from the Fortigate?
I know this is better to block the application from the computer or from a centralized solution, but I need to know if is this possible to accomplish this with the Fortigate
Thanks in advance.
Regards,
Damián
Hello,
I would suggest using policy in proxy inspection mode with deep inspection enabled. Application control and IPs profile can be applied to block the signatures.
Thanks RBA,
I will try to find out how to set the policy in proxy inspection mode with 7.6.4
I also will try with and without full inspection, but we cannot use deep inspection here.
I will tell you later
Regards,
Damián
| User | Count |
|---|---|
| 2798 | |
| 1424 | |
| 812 | |
| 749 | |
| 455 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.