Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
hpnetthuyle
New Contributor

I can't block request by Policy (Fortigate 200D)

I configed policy to deny all request from 113.179.126.31 and some IP Wanacry FROM Wan1 to Port10, show below. But not match rule.

Please help me?

 

2 REPLIES 2
FatalHalt
Contributor II

Open the command line, and edit the block policy. Make sure the command 

 

'set match-vip enable' is set.

 

This will allow a block policy to check against existing VIPs. 

 

Give that a shot and see if it works. 

hpnetthuyle

 

Thank FataHalt so much!

 

all request is match the rule!

Announcements
Check out our Community Chatter Blog! Click here to get involved
Labels
Top Kudoed Authors