Hello,
If somebody knows if possible to create a policy that will block internet access to computers where their hostnames are starting with "XX". FG800C. version 5.6.5.
Hi Sergey,
Device blocking is usually either performed via MAC address (ACL), OS/device type, and authentication. Perhaps if you could provide more information or the context of your problem, we might be able to provide more of a solution.
NSE4/FMG-VM64/FortiAnalyzer-VM/6.0 (FWF30E/FW92D/FGT200D/FGT101E/FGT81E)/ FAP220B/221C
Hello Dave,
Thanks for your reply. Here is the context of the problem:
All domain laptop's host names are starting with the standard prefix "DDAXXXXXXX".
I want to prevent access of these laptops to connect to guest wi-fi network due security risk.
I can block all Windows OS based devices and grant access to iOS/Android platforms only, but in this case it will affect Windows based laptops of our visitors / contractors.
If this is an issue, there is no rule/device set for grouping devices by host names (someone correct me if this is not correct) - your best bet is to view the device listing, sorted by host name then assign those laptops (mac addresses) to a group. After this, created a device firewall rule to block them on the guest wifi. Alternately you can create a black list of those laptop mac addresses in the DHCP IP reservation list.
NSE4/FMG-VM64/FortiAnalyzer-VM/6.0 (FWF30E/FW92D/FGT200D/FGT101E/FGT81E)/ FAP220B/221C
User | Count |
---|---|
2559 | |
1357 | |
795 | |
650 | |
455 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.