I have created GEO blocking policy on top of the policies , I have
blocked Russia specifically. But the following ip from Russia 5.8.16.163
, As per GEO blocking policy its not blocked. I already enabled
match-vip on this policy. Please help why Fort...
Hi ,Greetings, I have created IPS profile by adding SSH protocol and
enabled this IPS profile for SSH related policies.and These policies are
from external interface to DMZ interface. SSH protocol has around 35 IPS
signatures. Is this SSH protocol si...
Hi Team , We are planning to implement IPS profile to be added to the
firewall policies. There are totally 14k signatures are available in the
current fortigate firewall. it is 14k signatures If I create a profile
with critical and high and medium se...
So you're saying you have some VIP policies to allow outside parties to
come through the FGT and forwarded to internal servers like Web server,
FTP server, etc. -- Yes , traffic from Russia is hitting internal
servers
Thank you for the reply. How many IPS profile can we create .do we have
any set of IPS signatures to enable for webserver. Example : consider I
enable HTTPS set of signatures for webserver . Along with that do I need
to enable other services like (HT...
ok , thank you for the reply.I will create profiles as per service . But
when I select HTTP signatures they are around 6k or 8k. If I add the
profile , will there be any impact to web application. will legitimate
traffic will be block by signatures. ...