Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
scarroll
New Contributor

www.google.com bypassing web filtering

Hello.  

We are trying to implement web filtering for a particular server where we only want the server to be able to access a single URL.  We have Web Filtering working, except for the fact that in Chrome when you go to www.google.com it goes to the site.  This is bypassing both the wildcard blocking rule and the specific blocking rule for www.google.com.  Not only does it go to the page, but it also allows you to search.  clicking on search results fails, but you can still see results as well as the image tab.  Oddly, going to images.google.com or drive.google.com or www.google.fr all are blocked as expected.  

Is there something I am missing here?  

4 REPLIES 4
Toshi_Esumi
SuperUser
SuperUser

Try this to block QUIC if the behavior persists:

http://kb.fortinet.com/kb....do?externalId=FD36529

scarroll

Tried disabling QUIC and blocking it on the Fortigate and it still lets it through... and it's ONLY www.google.com... and ONLY in Chrome... no other site works... 

rwpatterson
Valued Contributor III

Policies are hit from the top of the list down. Make sure you put that block policy above the one that allows QUIC.

Bob - self proclaimed posting junkie!
See my Fortigate related scripts at: http://fortigate.camerabob.com

Bob - self proclaimed posting junkie!See my Fortigate related scripts at: http://fortigate.camerabob.com
Toshi_Esumi

Run flow debug "diag debug flow" to see the chrome's google access is actually hitting the policy, which is supposed to block but be allowing. Then open a ticket with TAC.

Labels
Top Kudoed Authors