Options
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Block IP address with Threat intelligence For Fortigate.
Currently I manual Block the IP address has given by our SOC at Firewall Level.
Can fortigate do auto blocking IP based Threat Intelligence?
IF Yes, what the products need to be intergrade with our fortigate?
The Objective is to reduce ticket from SOC and manual block IP address.
Thanks
2 REPLIES 2
Options
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
This may not give you the full answer, but by default there is an automation stitch that works with FortiAnalyzer to blocks the compromised IP af FGT level.
AEK
AEK
Options
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
The below document might help you in configuring IP List in the threat feed using external connectors;
https://docs.fortinet.com/document/fortigate/7.6.0/administration-guide/379433/configuring-a-threat
