FortiGate
FortiGate Next Generation Firewall utilizes purpose-built security processors and threat intelligence security services from FortiGuard labs to deliver top-rated protection and high performance, including encrypted traffic.
Not applicable
Article Id 197439

Article

Description List of web filtering steps and their order of processing in the FortiOS firmware
Components

FortiOS firmware version 4.00 MR3

Details
Web filters are applied in this specific order:

1   URL Filter
2   FortiGuard Web Filter (also called Category Block)
3   Content Filter (Web Content Filter)
4   Script Filter (filters for Java applets, ActiveX controls and cookies, CLI config only)
5   Antivirus scanning

The URL filter list is processed in order from top to bottom. An exempt match stops all further checking including AV scanning. An allow match exits the URL filter list and checks the other web filters.
Local ratings are checked prior to other FortiGuard Web Filtering categories. The FortiGate unit applies the rules in this order and failure to comply with a rule will automatically block a site despite what the setting for later filters might be.
 
For an additional information, please consult the FortiOS Handbook at the official FortiOS documentation website http://docs.fortinet.com/fgt.html .
  See Technical Note: Web filtering order of execution for FOS v5.2, v5.4, v5.6
 

 

Related Articles

Technical Tip: Web filtering order of execution

Contributors