Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
sharpal
New Contributor

Webfilters not working and unable to see network logs from clients

  • I need a help to send outbound connection requests logs to EMS from all the endpoint clients installed in my company devices.
    Also even thought added rules to block rules in the list it's not blocking the traffic.
11 REPLIES 11
funkylicious
SuperUser
SuperUser

hi,

can you share more info about what you've configured in EMS ?

is it a Web Filter profile assigned to clients which contains the webfilter plugin for Chrome and FIrefox or something else?

"jack of all trades, master of none"
"jack of all trades, master of none"
sharpal

Hi, not sure what plugin you are talking about. I've just enabled the WF in EMS and all client side I can see it's showing webfiltering enabled. Anything else I should explicitly setup.

Do you have document or can help with the following logging task.

I want to install the forticlient on all the systems and want to push netwokr request logs to EMS. E.g. Target IP, Port and doamin (optional).

sharpal
New Contributor

Attaching ss for your ref.
Screenshot from 2025-10-31 13-09-11.pngScreenshot from 2025-10-31 13-09-18.pngScreenshot from 2025-10-31 13-09-25.png

funkylicious

awesome.

i assume that this Web FIlter profile is assigned to a Endpoint Policy and in the All Endpoints you can see the Web Filter events tab when selecting an endpoint.

make sure that in Endpoint Profiles > System Settings > in the Log tab you have Web Filter enabled.

"jack of all trades, master of none"
"jack of all trades, master of none"
sharpal

yeah on client I can see web filter enabled and inside log tab also it's enabled.

funkylicious

in EMS, after you enabled Web&Video Filter a tab has populated in FortiClient like the one below, in which it should tell you that you need to install Chrome/Edge/Firefox plugins in order for this to work.

Screenshot 2025-10-31 at 09.56.53.pngScreenshot 2025-10-31 at 09.57.16.pngScreenshot 2025-10-31 at 09.58.39.pngScreenshot 2025-10-31 at 09.59.50.pngScreenshot 2025-10-31 at 10.00.15.png

"jack of all trades, master of none"
"jack of all trades, master of none"
sharpal

No it didn't give any option to install plugins.Screenshot from 2025-10-31 13-31-53.png

sharpal
New Contributor

Also what about the curl or wget kind of requests? I want to log all the network logs not just the blocked one? 

Also how to configure blocked site? That is also not working.

funkylicious

i dont think FortiClient/EMS was meant to monitor and block traffic that isnt from a browser initiated, like you are describing.

it appears that from what you need is that a FortiGate to handle/reach this traffic and in it you can block/log it.

"jack of all trades, master of none"
"jack of all trades, master of none"
Announcements
Check out our Community Chatter Blog! Click here to get involved
Labels
Top Kudoed Authors