We normally don't use application control, but fixed ports, more or less just allow http/https for the employee networks.
I have now received a request whether we can allow Whatsapp. We don't have a general policy about not using it, it's just not very clear on how to enable it specifically.
So, my general question, is possible to add a new policy that only allows Whatsapp, that would work together with the rest of the policies?
The device is a FortiGate 60D.
Firewall policy rules are executed from top-to-bottom. So create a new firewall policy rule tailored to allowing access to Whatsapp (or service) and move this rule above the existing http/https firewall policy rule.
NSE4/FMG-VM64/FortiAnalyzer-VM/6.0 (FWF30E/FW92D/FGT200D/FGT101E/FGT81E)/ FAP220B/221C
 
					
				
				
			
		
| User | Count | 
|---|---|
| 2645 | |
| 1405 | |
| 810 | |
| 688 | |
| 455 | 
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.