Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
dirkdigs
New Contributor

block facebook.com

what is the simplest way to block facebook.com

 

the "fortiguard categories" does not seem to do it.

11 REPLIES 11
Fullmoon
Contributor III

Recommended to use App Control inorder for your to block facebook.

Fortigate Newbie

Fortigate Newbie
Fullmoon
Contributor III

Recommended to use App Control inorder for your to block facebook.

Fortigate Newbie

Fortigate Newbie
Suneelkumar
New Contributor

Block it  in URL filter using wildcard

like facebook.com and *.facebook.com

 

Regards

Suneel

dirkdigs
New Contributor

this does not block https://facebook.com only HTTP

Dave_Hall
Honored Contributor

dirkdigs wrote:

this does not block https://facebook.com only HTTP

SSL or deep inspection needs to be enabled on the firewall rule covering web traffic. 

 

That being said, Fortinet has already published the steps for blocking facebook here, as well a video walkthru here.

 

NSE4/FMG-VM64/FortiAnalyzer-VM/6.0 (FWF30E/FW92D/FGT200D/FGT101E/FGT81E)/ FAP220B/221C

NSE4/FMG-VM64/FortiAnalyzer-VM/6.0 (FWF30E/FW92D/FGT200D/FGT101E/FGT81E)/ FAP220B/221C
dirkdigs
New Contributor

i had to install the fortinet ssl certificate into client web browser or else it would block ALL HTTPS sites.

Bromont_FTNT

 

If you enable SSL/SSH inspection on your firewall policy using a profile that has "SSL Certificate Inspection" instead of "SSL Full Inspection" you should be able to block without resorting to Full SSL inspection. Keep in mind that when the Fortigate presents the blocked page message it will be using its own certificate and that will result in certificate warnings in browsers.

dirkdigs
New Contributor

yea well nobody wants the see a security error every time they hit a webpage using HTTPS. so installing the certificate is the only was to accomplish this.

Bromont_FTNT

Certificate inspection would only give the cert warning on blocked pages.

Announcements

Select Forum Responses to become Knowledge Articles!

Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.

Labels
Top Kudoed Authors