Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
yeowkm99
Contributor

Restrict incoming traffic to email archive server

We want to restrict incoming traffic from external to our email archive server.

We are currently using M365 email service.

currently we have on policy from WAN to LAN, all to archive server, services - https, ssh, ntp, dns, tcp8000.

how can we restrict the incoming traffic ?

3 REPLIES 3
rahul_p1
Staff
Staff

Hi,

Please create a firewall policy from wan to lan to deny traffic on the basis of ISDB or server IP:- 

https://community.fortinet.com/t5/FortiGate/Technical-Tip-Creating-a-Deny-Policy-using-Internet-Serv...

 

yeowkm99

we want to allow only microsoft services but it seems if I use Internet service group, some services are for destination only and cannot be used as source

bkrishnan
Staff
Staff
Announcements
Check out our Community Chatter Blog! Click here to get involved
Labels
Top Kudoed Authors