FortiGate
FortiGate Next Generation Firewall utilizes purpose-built security processors and threat intelligence security services from FortiGuard labs to deliver top-rated protection and high performance, including encrypted traffic.
gmanea
Staff
Staff
Article Id 197376
Description
This article explains how to prevent iCloud Login on iOS devices (iPad, iPhone) from being blocked when the Webfilter is applied on the Firewall Policy.

Solution
For iCloud account login, the iOS device tries to reach the 'setup.icloud.com' URL. 
This has been categorized under the 'File Sharing and Storage' FortiGuard category.


If the 'File Sharing and Storage' has been blocked on a web filter profile, the iOS devices such as iPhones and iPads are unable to reach 'setup.icloud.com'.

To resolve the issue, make sure the 'File Sharing and Storage' FortiGuard category is allowed on the web filter profile which has been assigned to a firewall policy.

As alternative, add this URL to a custom category that is allowed in the web filter profile used on the policy.
Depending on the version, this can be achieved through:

Security Profiles -> Web Rating Overrides -> Custom categories – to create a custom category (to use an existing one, go directly to)
+ Create new -> use the URL setup.icloud.com and select <Override to Category: Custom Categories, Sub-Category: Your_custom_category_name> , the confirm with OK.
Check that the webfilter in use on the policy has 'Your_custom_category_name' with action 'Allow' or 'Monitor' (to check: Security Profiles -> Webfilter and select the web filter profile)

Contributors