Hello,
I have sucessfully managed to block http and https traffic on my Fortigate 100D but for some reason, if I open Google Chrome, all blocked HTTPS sites are accessible wile HTTP sites remain blocked !!!
I tried with Safari and Firefox and both HTTP & HTTPS sites are blocked...
Is there any reason why Chrome is bypassing the firewall settings?
The settings on the firewall are:
SSL/SSH Inspection ON, blocking HTTPS traffic
WebFilter ON, blocking all websites (* wildcard - deny) and allowing only 3 specific ones.
IPv4 Policy that incorporates the above rules.
Solved! Go to Solution.
The diag debug flow is your best friend, run the command and with a filter on chrome and non-chrome client ipv4:port . If I had to guess, one of the following is taking place
[ul]
For example on running diag debug flow, search here on this forum.
PCNSE
NSE
StrongSwan
The diag debug flow is your best friend, run the command and with a filter on chrome and non-chrome client ipv4:port . If I had to guess, one of the following is taking place
[ul]
For example on running diag debug flow, search here on this forum.
PCNSE
NSE
StrongSwan
Thank you for your swift reply and suggestions.
I tried to replicate this on my machine and it does the same thing...
Traffic from all browsers is blocked except from Chrome...
I have no proxy setting on Chrome or any other browser...
Is Chrome using some built in SSL/SSH proxy of some sort that fortigate can't catch?
The diag debug flow is your best friend
see the above & stop guessing
PCNSE
NSE
StrongSwan
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1740 | |
1108 | |
752 | |
447 | |
240 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.