Chapter 15 Unified Threat Management for FortiOS 5.0 : Web filter : Working with the Interface : URL Filter : URL filter configuration settings
  
URL filter configuration settings
The following are URL filter configuration settings in Security Profiles > Web Filter > URL Filter.
 
URL blocking does not block access to other services that users can access with a web browser. For example, URL blocking does not block access to ftp://ftp.example.com. Instead, use firewall policies to deny FTP connections.
 
URL Filter page
Lists each URL filter that you created. On this page, you can edit, delete or create a new URL filter.
Create New
Creates a new URL filter list. When you select Create New, you are automatically redirected to the New List page. This page provides a name field and comment field. You must enter a name to go to the URL Filter Settings page.
Edit
Modifies settings within a URL filter list. When you select Edit, you are automatically redirected to the URL Filter Settings page.
Delete
Removes the URL filter list from the list on the URL Filter page. The Delete icon is only available if the URL filter list is not selected in any profiles.
To remove multiple URL filter list from within the list, on the URL Filter page, in each of the rows of the file filter lists you want removed, select the check box and then select Delete.
To remove all URL filter list from the list, on the URL Filter page, select the check box in the check box column and then select Delete.
Name
The available URL filter lists.
# Entries
The number of URL patterns in each URL filter list.
MMS Profiles
(FortiOS Carrier only)
The name of the MMS profile
Comments
Optional description of each URL filter list.
Ref.
Displays the number of times the object is referenced to other objects. For example, av_1 profile is applied to a firewall policy; on the Profile page ( Security Profiles > AntiVirus > Profiles), 1 appears in Ref..
To view the location of the referenced object, select the number in Ref., and the Object Usage window appears displaying the various locations of the referenced object.
To view more information about how the object is being used, use one of the following icons that is avialable within the Object Usage window:
View the list page for these objects – automatically redirects you to the list page where the object is referenced at.
Edit this object – modifies settings within that particular setting that the object is referenced with. For example, av_1 profile is referenced with a firewall policy and so, when this icon is selected, the user is redirected to the Edit Policy page.
View the details for this object – table, similar to the log viewer table, contains information about what settings are configured within that particular setting that the object is referenced with. For example, av_1 profile is referenced with a firewall policy, and that firewall policy’s settings appear within the table.
URL Filter Settings page
Provides settings for configuring URLs that make up the URL filter, and also lists the URLs that you created. You are automatically redirected to this page from the New List Page. If you are editing a URL filter, you are automatically redirected to this page.
Name
If you are editing an existing URL filter setting and want to change the name, enter a new name in this field. You must select OK to save the change.
Comments
If you are editing an existing URL filter setting and want to change or add a description, enter the new text in this field. You must select OK to save these changes.
Create New
Adds a URL address and filter settings to the list. When you select Create New, you are automatically redirected to the New URL Filter list.
Edit
Modifies the settings within a URL filter.
Delete
Removes an entry from the list.
To remove multiple URL filters from within the list, on the URL Filter Settings page, in each of the rows of the filters you want removed, select the check box and then select Delete.
To remove all URL filters from the list, on the URL Filter Settings page, select the check box in the check box column and then select Delete.
Enable
Enables a filter in the list.
Disable
Disables a filter in the list.
Move To
Moves the URL to any position in the list. When you select Move To, the Move URL Filter window appears.
To move a URL, select the new position Before or After, which will place the current URL entry before or after the entry you enter in the (URL) field. For example, 1example.com is being moved after 3example.com, so 3example.com is entered in the (URL) field.
Remove All Entries
Removes all filter entries within the list on the URL Filter Settings page.
Enable
Indicates whether the URL is enable or disabled. A green check mark indicates that the URL is enabled; a gray check mark indicates that the URL is disabled.
URL
The URL address.
Action
The type of action the unit will take when there is a match.
Type
The type of URL. For example, the type of URL is Regex.
New URL Filter page
Provides settings for configuring a URL to add to the filter list.
URL
Enter the URL.
Type
Select a type from the drop-down list: Simple, Regex (regular expression), or Wildcard.
Action
Select an action the unit will take.
Allow – any attempt to access a URL that matches a URL pattern with an allow action is permitted.
Exempt – similar to Pass in that it allows trusted traffic to bypass the antivirus proxy operations, but it functions slightly differently; ensure you are aware of the network topology involving URLs that you applied the Exemption action. Additional information about the Exempt action is found in the Security Profiles chapter of the FortiOS Handbook.
Block – attempts to access any URLs matching the URL pattern are denied; user is presented with a replacement message.
Pass – traffic to, and replay traffic from sites that match a URL pattern with a pass action will bypass all antivirus proxy operations, including FortiGuard Web Filter, web content filter, web script filters, and antivirus scanning. Make sure you trust the content of any site you pass, otherwise there may be a security risk.
Enable
Select to enable the URL. By default, the URL is enabled.
 
 
Type a top-level domain suffix (for example, “com” without the leading period) to block access to all URLs with this suffix.