FortiGate
FortiGate Next Generation Firewall utilizes purpose-built security processors and threat intelligence security services from FortiGuard labs to deliver top-rated protection and high performance, including encrypted traffic.
Jonathan_Body_FTNT
Article Id 190299

Description

FortiGate WAN Optimization and Explicit Proxy FAQs (Frequently Asked Questions)
 
1.  How does the client browser interact with the FortiGate when the explicit proxy is enabled?
The client PC browser points to the FortiGate IP address (or configured proxy FQDN) with the explicit proxy.
2.  On what port does the FortiGate answer HTTP/HTTPS requests for the explicit proxy?
The FortiGate answers these requests by default on port 8080 and forwards them to the proxy FQDN or the proxy configured.
3.  Is a dedicated firewall policy required for the explicit proxy?
No firewall policy for the explicit proxy is required even for DNS.
4.  How does AV and web filtering work when explicit proxy is enabled?
To apply protection profiles to the explicit web proxy, 2 VDOM's with inter-VDOM routing must be created.   This is explained in the FortiGate WAN Optimization, Web Cache and Web Proxy FortiOS™ Handbook 4.0 MR1.
5.  What is the recommended version of FortiOS when using the explicit proxy?

For WAN optimization and explicit proxy configuration it is recommended to use FortiOS version 4.2.  This software version contains improved WAN optimization and explicit proxy implementation. 


Scope
FortiOS Version 4.0 and above.