Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
PawelP1
New Contributor

How to Drop known external traffic into WAN interface without logging

Hi everyone,

I`m new to forum :)

My question is:
Is there a way to drop (not block) external traffic into my WAN without logging it?
By country or by IP range or single IP?
The goal is to block certain IPs so they can't even port scan my firewall.

I can`t find too much apart from Deny ipv4 policy which still logs everything.


I have Fortigate 60F.


Thanks

1 REPLY 1
Shashwati
Staff
Staff

Hello 

Please refer to the document to block traffic using local in policy

 

https://community.fortinet.com/t5/FortiGate/Technical-Tip-Use-local-in-policy-to-restrict-unauthoriz...

Announcements

Select Forum Responses to become Knowledge Articles!

Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.

Labels
Top Kudoed Authors