Hi there,
Is there any way to configure information disclosure as alert and deny .
I am getting forgery request request in this scenario my server is requesting for internal urls in it behave , fortiweb is blocking it already in standard inline protection profile but not blocking low severity alerts and sessions are very high.
Please help
Hi Dan
I didn't test it but I think it can be achieved with Custom Rule.
Add a custom rule with Action "Alert and Deny", add a Filter based on "Signature Violation", then select "Information Disclosure".
Hope it helps.
| User | Count |
|---|---|
| 2691 | |
| 1412 | |
| 810 | |
| 709 | |
| 455 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.