When looking at the forward traffic logs (for incoming connections), I see that some sources are from "known malicious sites" when I hover over the source IP. But when I add the column "source reputation", it's always empty.
I'd like to ad some reputation filtering, but it would be nice to be able to see the reputation for each log line first, without having to hover over each line. Is there a way to show the source reputation in the table?
Solved! Go to Solution.
I'm not sure but I guess this log field may be added once you use firewall policy params reputation-minimum & reputation-direction.
Here is how you use them. I think it's worth trying.
I'm not sure but I guess this log field may be added once you use firewall policy params reputation-minimum & reputation-direction.
Here is how you use them. I think it's worth trying.
Seems like this is indeed the case. Thanks for the thip.
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1789 | |
1120 | |
768 | |
447 | |
242 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.