Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
fortinetuser2020
New Contributor

web application firewall and exchange 2016

i want to implement the fortigate's (900d cluster with 5.4.5 fw) fortigate web application firewall (not FortiWeb) on exchange 2016 dag environment

i know from past experience that the wrong settings of the profile may cause problems (phones not connecting, outlooks disconnecting on and of and such).

 

does anywhere have a recommended settings for the profile so it will work best with exchange 2016? for services like rpc/outlook anywhere/activesync/mapi/owa

 

thank you

3 REPLIES 3
jintrah_FTNT
Staff
Staff

Hi,

A good option would be to turn the profiles in detection mode, run for a period of time and identify any false positives. These signatures can be disabled or set to alert only while rest of them in alert and deny action.

fortinetuser2020

you mean turn on the waf profile and set everything to monitor?

Marcde_J

How do you view the events that it would have blocked to verify false positives etc?

 

Announcements

Select Forum Responses to become Knowledge Articles!

Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.

Labels
Top Kudoed Authors