FortiGate
FortiGate Next Generation Firewall utilizes purpose-built security processors and threat intelligence security services from FortiGuard labs to deliver top-rated protection and high performance, including encrypted traffic.
Andy_G
Staff
Staff
Article Id 195149

Description
This article provides a brief description of the operation of the FortiGuard Web Filtering feature, "Rate URL by IP Address and domain".

In some instances ratings errors may be seen when this feature is turned on.  For example a normally harmless website like Google can be blocked.  In these cases the Fortinet TAC will often recommend disabling this feature.
Solution

Description

Disabling the option "Rate URL by IP address and domain" is often a resolution to a known good web site being blocked.

This is how the unit behaves with this option selected.

It will receive information on both the URL and the IP as follows:
URL Category: A
URL Classification: B
IP Category: C
IP Classification: D
With the option "strict blocking" enabled, if any ONE of these 4 pieces of information is blocked, then the website will be blocked and the block page will show the rating/classification that blocked it (but not if that came from the URL or IP).

With "strict blocking" disabled, if any ONE of those 4 pieces of information is allowed, then the website will be let through.




Contributors