Currently I manual Block the IP address has given by our SOC at Firewall Level.
Can fortigate do auto blocking IP based Threat Intelligence?
IF Yes, what the products need to be intergrade with our fortigate?
The Objective is to reduce ticket from SOC and manual block IP address.
Thanks
This may not give you the full answer, but by default there is an automation stitch that works with FortiAnalyzer to blocks the compromised IP af FGT level.
The below document might help you in configuring IP List in the threat feed using external connectors;
https://docs.fortinet.com/document/fortigate/7.6.0/administration-guide/379433/configuring-a-threat
User | Count |
---|---|
2400 | |
1289 | |
778 | |
522 | |
454 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.