Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
WQ
New Contributor

should block tor traffics on fortigate as best practice for enterprise ?

hi, can someone pls advise whether we should block tor traffics (tor onion) on internet router as best practice for an enterprise? thanks in advance! 

3 Solutions
funkylicious
SuperUser
SuperUser

you mean Tor traffic?

it depends on your company policy, but i think most companies block it.

https://community.fortinet.com/t5/FortiGate/Technical-Tip-How-to-block-Tor-connections/ta-p/316401 

"jack of all trades, master of none"

View solution in original post

"jack of all trades, master of none"
kaman
Staff
Staff

Hi WQ,

You can also follow the document below on how to block TOR traffic from the WAN to the LAN, by using the ISDB object. This ISDB object contains a list of all TOR exit nodes currently known and is updated by FortiGuard.

https://community.fortinet.com/t5/FortiGate/Technical-Tip-How-to-block-traffic-coming-from-TOR-exit-...


Regards!

View solution in original post

VinayHM
Staff
Staff

Blocking Tor traffic (including Tor onion services) on your enterprise internet router is generally considered a best practice from a security perspective.
Tor can be exploited by malicious actors to anonymize malicious activities, exfiltrate data, or access illicit content, which can pose significant security and compliance risks.

Vinay HM

View solution in original post

4 REPLIES 4
funkylicious
SuperUser
SuperUser

you mean Tor traffic?

it depends on your company policy, but i think most companies block it.

https://community.fortinet.com/t5/FortiGate/Technical-Tip-How-to-block-Tor-connections/ta-p/316401 

"jack of all trades, master of none"
"jack of all trades, master of none"
kaman
Staff
Staff

Hi WQ,

You can also follow the document below on how to block TOR traffic from the WAN to the LAN, by using the ISDB object. This ISDB object contains a list of all TOR exit nodes currently known and is updated by FortiGuard.

https://community.fortinet.com/t5/FortiGate/Technical-Tip-How-to-block-traffic-coming-from-TOR-exit-...


Regards!

VinayHM
Staff
Staff

Blocking Tor traffic (including Tor onion services) on your enterprise internet router is generally considered a best practice from a security perspective.
Tor can be exploited by malicious actors to anonymize malicious activities, exfiltrate data, or access illicit content, which can pose significant security and compliance risks.

Vinay HM
WQ
New Contributor

thanks @VinayHM @kaman @funkylicious  for your advices!

Announcements
Check out our Community Chatter Blog! Click here to get involved
Labels
Top Kudoed Authors