FortiGate appliances can maintain a list of source IPs that it prevents from interacting with the network and protected systems. You can configure FortiWeb to receive this list of IP addresses at intervals you specify. Then, you configure an inline protection profile to detect the IP addresses in the list and take an appropriate action.
This feature is available only if the operating mode is reverse proxy or true transparent proxy.
1. Go to System > Config > FortiGate Integration.
2. Complete the following settings:
Setting name | Description |
---|---|
Enable | Select to enable transmission of quarantined source IP address information from the specified FortiGate. |
FortiGate IP Address | Specify the FortiGate IP address that is used for administrative access. |
FortiGate Port | Specify the port that the FortiGate uses for administrative access via HTTPs. In most cases, this is port 443. |
Protocol | Specify whether the FortiGate and FortiWeb communicate securely using HTTPS. |
Administrator Name | Specify the name of the administrator account that FortiWeb uses to connect to the FortiGate. |
Administrator Password | Specify the password for the FortiGate administrator account that FortiWeb uses. |
Schedule Frequency | Specify how often FortiWeb checks the FortiGate for an updated list of banned source IP addresses, in hours. The valid range is 1 to 5. |
3. Click Apply to save your changes.
4. To configure FortiWeb to detect the quarantined IP addresses and take the appropriate action, configure the FortiGate Quarantined IPs settings in an inline protection profile. (See Configuring a protection profile for inline topologies.)