Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
Thomas001
New Contributor

Fortisandbox topology suggestion for file upload analysis on website.

Hi Everyone,

 

I plan to implement Fortisandbox to ensure file uploads by users on the website are safe from potential threats.

 

I would like to ask:

1. How is the topology or architecture of this fortisandbox position placed.
2. Is there a best practice or similar implementation reference that I can learn from.

 

Thanks in advance for you help!

2 REPLIES 2
Anthony_E
Community Manager
Community Manager

Hello Thomas,


Thank you for using the Community Forum. I will seek to get you an answer or help. We will reply to this thread with an update as soon as possible.


Thanks,

Anthony-Fortinet Community Team.
Anthony_E
Community Manager
Community Manager

To set up a FortiSandbox topology for file upload analysis on a website, follow these steps:

  1. Integration with FortiWeb: Configure FortiWeb to use a file upload restriction policy. This policy will submit uploaded files to FortiSandbox for evaluation.
  2. FortiSandbox Configuration: Ensure FortiSandbox is properly set up to receive files from FortiWeb. This involves configuring FortiSandbox to accept files for analysis and setting up the necessary network connections.
  3. Network Setup: Place FortiSandbox in a position where it can effectively communicate with FortiWeb. This typically involves ensuring both devices are on the same network or have a secure connection between them.
  4. Policy Actions:  Define actions in FortiWeb based on FortiSandbox results. For example, if FortiSandbox determines a file is malicious, FortiWeb can generate an attack log and take actions such as alerting or denying the file upload.
  5. Monitoring and Logging: Use FortiWeb and FortiSandbox logs to monitor file analysis results and adjust policies as needed. This helps in maintaining security and optimizing the analysis process.
  6. Testing and Validation: Test the setup by uploading various file types to ensure FortiWeb correctly forwards them to FortiSandbox and that the analysis results are accurate. This topology ensures that all files uploaded to your website are thoroughly analyzed for threats, enhancing your security posture.

Regards,

Anthony-Fortinet Community Team.
Announcements
Check out our Community Chatter Blog! Click here to get involved
Labels
Top Kudoed Authors