In some jurisdictions, SSL interception and decryption is disfavored for some types of websites or disallowed entirely. You use the L2 Exception List configuration to define such destinations. You can leverage FortiGuard web filter categories, and you can configure a list of additional destinations.
Before you begin:
After you have created an L2 exception list configuration object, you can select it in a Layer 2 virtual server configuration.
Settings | Guidelines |
---|---|
Name |
Configuration name. Valid characters are Note: After you initially save the configuration, you cannot edit the name. |
Description |
A string to describe the purpose of the configuration, to help you and other administrators more easily identify its use. |
Web Filter Profile |
Select a Web Filter Profile configuration. |
Member | |
Type |
How you want to define the exception:
|
Host Pattern |
Specify a wildcard pattern, such as *.example.com . |
IP/Netmask |
Specify the IP address and CIDR-formatted subnet mask, separated by a forward slash, such as 192.0.2.0/24. Note:
|