Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
MFOM_
New Contributor II

Getting certificates from Let's Encrypt with Geo IP Block enabled

I'm setting up my first webapp on a brand new FortiWeb Cloud.

The webapp is going to use the automatic certificates from Let's Encrypt; I also need to setup a very strict Geo IP Block.

Turns out that Let's Enrypt is not going to work with that setup, as HTTP requests from blocked countries will be dropped.

However, on the Let's Encrypt community someone got a solution:

https://community.letsencrypt.org/t/whitelist-letsencrypt-server-ips/215833 

 

How can I implement a whitelist for incoming HTTP request to /.well-known/acme-challenge?

 

Thanks!

Marco

1 Solution
MFOM_
New Contributor II

I opened a ticket on this topic. Support stated that the reported behaviour was fixed in a recent version of FortiWeb Cloud. I can confirm that the setup worked correctly in the following round of certificate renewal from Let's Encrypt.

m.

View solution in original post

3 REPLIES 3
ebilcari
Staff
Staff

Have you checked this section from the Administration guide?

- Emirjon
If you have found a solution, please like and accept it to make it easily accessible for others.
MFOM_
New Contributor II

Hello Emirjon,

 

my environment uses FortiWeb Cloud, so I referred to its User Guide.

The corresponding section is: URL Access | FortiWeb Cloud 24.2.0 | Fortinet Document Library

However, URL Access comes much later than GeoIP in the Sequence of Scan for FortiWeb Cloud, so I think it wouldn't be of much help. 

 

m.

MFOM_
New Contributor II

I opened a ticket on this topic. Support stated that the reported behaviour was fixed in a recent version of FortiWeb Cloud. I can confirm that the setup worked correctly in the following round of certificate renewal from Let's Encrypt.

m.

Announcements

Select Forum Responses to become Knowledge Articles!

Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.

Labels
Top Kudoed Authors