FortiGate
FortiGate Next Generation Firewall utilizes purpose-built security processors and threat intelligence security services from FortiGuard labs to deliver top-rated protection and high performance, including encrypted traffic.
ighita
Staff
Staff
Article Id 196915

Description


This article describes how to show blocked pages by application control.
When multiple security profiles are enabled on the same policy, application control does not show the blocking page.

 

Scope

 

FortiGate.

Solution


In order to show the blocking page when application control is used, follow the next steps:

 

  1. All security profiles used on the policy have to be in 'Flow Mode'.
  2. Use SSL Deep Inspection.
  3. On the application control profile enable 'Replacement Messages for HTTP-based Applications'.
  4. IPS detects block during SSL handshake.