I have a basic policy with web filter as below... when I browse to the site listed as blocked it allows me out on the same policy. perhaps I have missed something obvious here,...
and here is the web filter
Hi @Mes-Lili2 ,
Have a look at these tips here :
I just did a fresh config in the lab like this :
Make sure you are matching the correct firewall policy!
OK thanks for the example, but what would you do if you just wanted that policy to allow access to only www.cheese.com, would you simply set to allow. this is what i have done for microsoft .com only but my test connection to my own website is using the policy allows the traffic through. and the logs show the policy used.
In your policy above, yes it will block www.cheese.com but it will also allow users to go to every other site... and if you put a wildcard block below www.cheese it will block all users and prevent them getting to any websites allowed in policies further down... or am i wrong??
Hi @Mes-Lili2,
Can you check webfilter logs and make sure the URL is matching the one you configured under static URL filter.
Regards,
Created on 10-11-2023 01:29 PM Edited on 10-11-2023 01:30 PM
Where are the webfilter logs…”?”?
It depends on FortiOS version, you can check Log & Report -> Web Filter. Or Log & Report -> Security Events > Web Filter
Depending on the version, it either shows directly Log & Report > Web filter or Log & Report > Security Events > Web filter
Log report shows no option for web filter and security events shows “no results” in main window.
User | Count |
---|---|
2074 | |
1176 | |
770 | |
450 | |
344 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.