Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
yeowkm99
Contributor

Restrict incoming traffic to email archive server

We want to restrict incoming traffic from external to our email archive server.

We are currently using M365 email service.

currently we have on policy from WAN to LAN, all to archive server, services - https, ssh, ntp, dns, tcp8000.

how can we restrict the incoming traffic ?

3 REPLIES 3
rahul_p1
Staff
Staff

Hi,

Please create a firewall policy from wan to lan to deny traffic on the basis of ISDB or server IP:- 

https://community.fortinet.com/t5/FortiGate/Technical-Tip-Creating-a-Deny-Policy-using-Internet-Serv...

 

yeowkm99

we want to allow only microsoft services but it seems if I use Internet service group, some services are for destination only and cannot be used as source

bkrishnan
Staff
Staff
Announcements

Select Forum Responses to become Knowledge Articles!

Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.

Labels
Top Kudoed Authors