FortiGate
FortiGate Next Generation Firewall utilizes purpose-built security processors and threat intelligence security services from FortiGuard labs to deliver top-rated protection and high performance, including encrypted traffic.
pgautam
Staff
Staff
Article Id 263569
Description This article describes how to allow certain users in a blocked URL Filter Category.
Scope FortiGate, FortiOS, Webfilter.
Solution

For example, it is wanted to allow 'News and Media' access for one user group while it is blocked for other users.

 

Step 1: Create a user group to allow the 'News and Media' access.

 

user group.PNG

 

Step 2: Create a Web Filter Profile and in the block category select Authenticate.

 Authenticate.PNG

 

Step 3: Add the defined user group in Step 1 and select 'OK'.

 

added user.PNG

 

Step 4: In the block category, it will show the authenticate icon.

 

news_media.PNG

 

Step 5: Configure the created web filter profile in the forward policy.

 policy_configure.PNG

 

Result:

  1. Open the test PC and try to access any news website.
  2. When opening the news sites it will show the block page. 

    error_page_along_with the option to authenitcate.PNG
  3. Select Proceed to see the user authentication page and add the user name and the password.

    authentication_page.PNG
  4. Once the user is authenticated it will be possible to access the news website.

 

access_granted.PNG

 

Note: In order that this feature properly, create a web filter in proxy-set with proxy-based firewall policy along with certificate inspection.

Related document:
FortiGuard filter