Hi!
I recently discovered this Internet Service while going through the Source.
Would like to know what is the purpose of this? Is it related to Spam databases and should we block it?
Really appreciate the communities' assistance on this.
Solved! Go to Solution.
Nominating a forum post submits a request to create a new Knowledge Article based on the forum post topic. Please ensure your nomination includes a solution within the reply.
Hey there mhrth,
That would be the ISDB object for the SW SPam Experts services and would be the object with all of the associated IPs and ports for that service. This can be used in a variety of ways with policies in different places in FortiOS.
If it's being used in an active policy, it may be good to sort out why it is there or who used it. Is the Solar Winds service something that your company uses? I wouldn't block unless you had a specific reason for traffic not to ingress or egress from those IPs associated in the object.
The ISDB Reputation Database objects also can be used for effective deny policies though, and you may want to have a look at them.
https://docs.fortinet.com/document/fortigate/7.2.2/administration-guide/849970/internet-services
Hey there mhrth,
That would be the ISDB object for the SW SPam Experts services and would be the object with all of the associated IPs and ports for that service. This can be used in a variety of ways with policies in different places in FortiOS.
If it's being used in an active policy, it may be good to sort out why it is there or who used it. Is the Solar Winds service something that your company uses? I wouldn't block unless you had a specific reason for traffic not to ingress or egress from those IPs associated in the object.
The ISDB Reputation Database objects also can be used for effective deny policies though, and you may want to have a look at them.
https://docs.fortinet.com/document/fortigate/7.2.2/administration-guide/849970/internet-services
We did not use any of SW services and I thought this will help us to block any spam emails coming in to our company if we put in the incoming policy.
Anyway, thanks! really appreciate your feedback :D
No problem at all!
Have a look at the ISDB Rep DB entries as using the Botnet/Malicious/Phishing entries as top global deny policies would also help either for inbound server VIPs or for blocking traffic from external bound traffic from users clicking on things in emails. :)
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1502 | |
1011 | |
749 | |
443 | |
209 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.