Options
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Exempt a local web server (VIP) from FGT WAF signature
Hi
I want to exempt one of my local web server facing internet from SQL Injection (Extended) signature , because it causes so many errors when users want to submit forms. How can I do that?
Reza F.
Solved! Go to Solution.
Reza F.
Labels:
- Labels:
-
FortiGate
1 Solution
Options
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Hi Reza
You need to create a separate WAF profile, in which you disable Extended SQL injection signatures, then create a new firewall policy dedicated for that back-end server and use the new WAF profile in that policy.
AEK
AEK
1 REPLY 1
Options
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Hi Reza
You need to create a separate WAF profile, in which you disable Extended SQL injection signatures, then create a new firewall policy dedicated for that back-end server and use the new WAF profile in that policy.
AEK
AEK
