Hi
I am using a FortiGate 100E with v6.0.1.
I have the following setup:
- VLAN with DHCP and DNS
- Device Detection and DHCP Snooping enabled
- IP4v Policy: with no restrictions (all)
- NAT enabled
- Logging All sessions
When I enable the Web Filter (Standard Setup) my Up and Downstream performance is reduced by aprox. 80%.
I would like to use the Static URL Filter to enable a whitelist of allowed urls. All other features should be disabled.
Any idea whats the problem here?
same problem here. i don't receive the full internet speed..
Try Flow based Webfilter.
Should perform better than proxy based.
Do you do SSL inspection?
I just noticed the same thing on an FG-60D running 6.0.7 and flow-based. SSL inspection is set to the minimum certificate inspection. With all other profiles active (except web filter) I see 115Mb download. I enable web filtering, even with everything set to allow, and download reduces to 25Mb. I was thinking I needed new hardware but seeing that it happens with a 100E too, upgrade won't help. Maybe I'll try returning to 5.6. For now I've reluctantly turned off web filtering.
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1735 | |
1107 | |
752 | |
447 | |
240 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.