Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
jefazo92
Contributor

Can directed broadcast be disabled in a Fortigate?

I would like to disable directed broadcast but have been unable to find how it might be disabled for all interfaces. Is there a command to achieve this?
5 REPLIES 5
Jakob-AHHG
Contributor II

What do you mean by "directed broadcast"?

Jakob Peterhänsel,
IT System Admin,
Arp-Hansen Hotrel Group A/S, Copenhagen, DK
Jakob Peterhänsel,IT System Admin,Arp-Hansen Hotrel Group A/S, Copenhagen, DK
sbabu
Staff
Staff

hi @jefazo92 

 

Can you please elaborate on your requirement?

Shaik Babu
jefazo92

@Jakob-AHHG and @sbabu  directed broadcast I mean a broadcast to the whole subnet (not entire network).

sbabu

HI @jefazo92 

If you have a broadcast IP address you can create a firewall policy with deny action and place it top of allow rule. 

Shaik Babu
Jakob-AHHG

Ok, so you want to disable some of the most basic features of the network?
Broadcast is only on the subnet, never anywhere else, unless you have a router that relay the broadcast across subnets, like Bonjour traffic or something like that.

 

The only reason to do so, as I see it, is to disable 'client-to-client' communication, on public wifi or similar.
THat should be easily done with the "Block intra-VLAN traffic" setting on the VLAN or "Block intra-SSID traffic" on the SSID.

Jakob Peterhänsel,
IT System Admin,
Arp-Hansen Hotrel Group A/S, Copenhagen, DK
Jakob Peterhänsel,IT System Admin,Arp-Hansen Hotrel Group A/S, Copenhagen, DK
Announcements

Select Forum Responses to become Knowledge Articles!

Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.

Labels
Top Kudoed Authors