Hello everyone, Is it possible to bypass DNSBL for certain IP ranges at
FortiMail ? If we enable DNSBL using spamcop, lots of legit messages are
blocked if sent from a shared SMTP clients that are temporarily
blacklisted (such as *prod.protection.out...
Hello everyone, Our #Fortigate v7.0.14 detected a Heartbleed attack, but
it did not block it, so it reached an inner service (luckly not
vulnerable) To my understanding, the default action should be blocking
such malicious connections. Why did it det...
Hello,We're dealing with a significant spam issue, and we're considering
implementing more strict AntiSpam profile settings like SPF, DKIM, and
DMARC. However, I'm concerned that these changes might have a
substantial impact by potentially sending le...
Hello, I cannot properly read rolled logs exported from FortiAnalyzer
because they contain strange character I have found some tips at forinet
community site advising to change settings to roll logs differenty.
E.g.Technical Tip: How to export rolled...
Hello, To meet our conformity requirements, our organization sends all
FortiGate logs to a syslog server. However, approximately 90% of these
logs have limited usefulness for security monitoring purposes. If we
were to remove these logs from FortiGat...
I'd like to know that too.Before restricting VPN access based on OS
version, it is necessary to know how may clients will be affected. I can
access Fortigate logs, but I cannot access VPN users forticlient
logs.Any idea is welcome!
Hello Johnharper,Thanks for your answer. I am looking for log management
in the reference manual, but i can't find it.Do you think you could help
me find the details in the reference manual?Thank you
Thanks for your clarification. Am I right if I say the following?DNS
Filter will redirect to a Block Portal any DNS request asking for
blacklisted botnet domain, independnetly of the DNS server
reputation.IPS will block DNS requests to a blacklisted ...
Hello, Thank you for your help. No EMS Manager at hand right
now.Security settings at th ensilo console shows the following policies,
and all of them are oset to "simulation":Execution
PreventionExfiltration PreventionRansomware PreventionDevice
Cont...
Thanks. I get "Unkonwn action 0"Fortigate1 $ diag firewall iprope lookup
10.187.1.100 12345 8.8.8.8 53 udp port2 Unknown action 0Maybe I need to
be administrator? I am on a readonly user