Hello everyone.
I am encountering difficulties with our FortiGate 200E device at the company.
We are utilizing the web filter to control content access, however, we are observing inconsistent blocking behavior.
Specifically, when Proxy mode is enabled, certain categories of content are not being blocked as expected, despite being configured to do so. Conversely, when switching to Flow mode, the device is over-blocking content and miscategorizing websites. For instance, OneDrive is being classified as an abortion site, and YouTube is categorized as unknown.
I have already attempted to resolve this issue by updating firmware, cleaning the cache and implementing new rules, but the problem persists.
I would appreciate any insights or experiences that you may have regarding this matter. Thank you.
Nominating a forum post submits a request to create a new Knowledge Article based on the forum post topic. Please ensure your nomination includes a solution within the reply.
Hello
Does it happen in flow mode as well?
What do you see when you test rating lookup?
It should match when you do it from your FG and from FortiGuard. Does it match?
Hello!
Flow mode seems to be working better than proxy mode. It's blocking more sites (including allowed ones).
I tested the link you sent, and it doesn't match what's happening. I tested Amazon's website, which is classified as Shopping, but it's being blocked and treated as unknown.
@luccap07 Make sure that your web filter is in flow mode and it is able to identify category.
If you see category shows unknown then please provide screenshot of error and also provide log output.
Hi Lucca
Which FortiOS version?
Hi @luccap07 ,
Could you please show your firewall policy settings and/or the relevant log messages in this issue?
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1662 | |
1077 | |
752 | |
446 | |
220 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.