Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
jefazo92
Contributor

Can Cisco Discovery Protocol be disabled in a Fortigate?

I would like to disable CDP and have noticed it is referenced in certain CLI commands in the CLI reference. However, I have been unable to find how it might be disabled globally. Is there a command to achieve this?

12 REPLIES 12
AEK

You said "config switch-controller", then it is for FortiSwitch.

AEK
AEK
sbabu
Staff
Staff

HI @jefazo92 

if you want to block CDP protocol traffic in Fortigate you can create a local in policy and block the communication. 

refer to the below link for the creation of the local_in policy and modify it based on the protocol number of CDP. 
https://community.fortinet.com/t5/FortiGate/Technical-Tip-How-to-block-the-IGMP-protocol-using-a-loc...

Shaik Babu
jefazo92

Thank you @sbabu but the list of protocols (https://docs.fortinet.com/document/fortigate/6.0.0/handbook/451530/protocol-number) which can be configured as a firewall custom service do not include CDP.

Announcements

Select Forum Responses to become Knowledge Articles!

Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.

Labels
Top Kudoed Authors