Query - How to achieve Bandwidth Capping with Traffic Shaping for LAN User Based Settings
Setup required as follows: -
In office LAN- User logs into PC/ Laptop with authentication and gets access to internet.
Internet usage capping is done on particular user/ group (example- 10GB daily traffic is assigned). Currently we are achieving this via web filter security profile usage capping bandwidth quota in proxy mode.
Post user/ group has consumed the 10gb daily traffic; automatically the speed should reduce as per traffic shaping applied.
Query here: -
How to set it to daily usage for the amount of GB traffic capped.
How to configure firewall to automatically allow traffic shaping applied over users in scope once they have consumed daily traffic allowance.
Is it possible even or not to achieve such use case?
Yea fairly certain this won't work on FortiGate as you want it to. Web Filter quota is per user.
Why do you want to limit users to 10GB of daily web traffic? Assuming you are trying to preserve bandwidth usage on your WAN link a better way to do this would be traffic shapers. You can tune these quite nicely to fit your needs. You can also review FortiView logs and analysis to see which type of traffic is using most bandwidth and apply a shaper to that specific type of traffic only.
Like we have in mobile operator providers these days, 2gb daily data to use internet and post consumption is completed, our internet speed is reduced.
Similar way achieving it in FortiGate for LAN users who authenticates themselves with username password and uses daily allowed usage for internet bandwidth and post that they should have limited internet speed allowed for rest of the day.
For capping it can be done with web-filtering.
For internet speed limit we can use traffic shaping.
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.