Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
Umesh
Contributor

Intrusion prevention system || Fortigate ||

Hi All,

 

When should we apply Intrusion prevention system at Firewall.

 

My concern is  - it should be apply only for WAN policy or LAN policy as well.

 

thank you

 

1 REPLY 1
Muhammad_Haiqal

Hi @Umesh ,

 

IPS means Intrusion Prevention System.
This is to protect Intruder from damaging internal network. Thats why its call "intrusion" = incoming.
Example:
WAN > DMZ - Protect DMZ from WAN

WAN > LAN - Protect LAN from WAN
LAN > DMZ - Protect DMZ from LAN

 

IPS commonly apply to policy that hitting servers.

However, IPS also can block botnet&CC if apply on LAN> WAN.

haiqal
Labels
Top Kudoed Authors