Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
zwilson50
New Contributor

Web Application Firewall Help

We are running a FG 600D v5.4.3 and have a question regarding the Web Application Firewall.  We have certain online software modules that students use that's signatures are being categorized under Known Exploit.  To get these online programs to work properly, we are having to turn off Known Exploit signature block.

 

Is there way that we can create custom overrides for web application signatures similar to web filter overrides?  If not, how do you deal with needed websites who have a portion of their website blocked due to a miscategorized web application signature?

 

Thank you for any help you can provide.

 

Zach

1 REPLY 1
neonbit
Valued Contributor

Hi Zach, I believe this is possible. You can configure FortiWeb Content routing so that a specific URL will have a different security policy.

 

For example if your base website is www.company.com and your online software is found under www.company.com/software than you could create the following rules:

 

1. www.company.com/software use Security profile with Known exploits disabled

2. www.company.com use Security profile with Known exploits enabled

Labels
Top Kudoed Authors