My aim is mainly blocking bad sites (malware, C2, phishing) not controlling certain types.
Web filter and DNS make sense, though perhaps are a tad similar.
ISDB seems to offer some IP blockers. Would ISDB cover my wish by blocking connections pre/post malware to malicous domains (IP behind)?
Thank you
Solved! Go to Solution.
The smallest relevant package is "Web Security", and that includes both webfilter and DNS filter.
https://www.fortinet.com/content/dam/fortinet/assets/data-sheets/og-fortiguard.pdf
Web filter is for Web navigation, you can control which Web categories you can access or you want to deny.
ISDB IP reputation is not for Web navigation, it is for Tor, Proxy, C&C, bad bots and so.
So they don't have the same goal.
Besides, I think DNS is the old fashion. I think it is not as efficient as Web filter.
Do you think ISDB would safely do my ask of blocking drive by downloads, phishing, c2...please?
According to Fortinet it should.
I used it and it seems working.
I hope one of the Fortinet team can confirm if the IP reputation DB is updated efficiently.
I got a bunch of 30 day trials but oddly does not inc. firmware updates nor IPDB.
Buying Forticare alone is not much money.
Thank you
Hi @graemeb ,
If you have UTM licenses, I would recommend you use Web Filter + Application Control.
No, I am a glorified home user so think it's a bit ott for me. Just after malicous ip/site blocking.
Thank you
@dingjerry_FTNTis it possible to buy just dns or web filter alone not under a pack?
I will ask a reseller thanks
User | Count |
---|---|
2548 | |
1354 | |
795 | |
646 | |
455 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.