beautypg.com

Anomaly, Protocol decoder, Web filter – Fortinet FortiOS 3.0 User Manual

Page 26: Content block, Url filter, Fortiguard-web filter, Anomaly protocol decoder, Content block url filter fortiguard-web filter

background image

Upgrade Guide for FortiOS v3.0

26

01-30000-0317-20060424

Web Filter

New features and changes

Anomaly

The Anomaly menu detects and identifies network traffic that attempts to take
advantage of known exploits.

When you are creating a new anomaly, you can now specify the severity, and
instead of selecting Logging, you now select Packet Log. The field called
Parameters is no longer available.

Protocol Decoder

The Protocol Decoder menu, new for FortiOS 3.0 displays protocol anomalies for
logging purposes. You can enable or disable logging for a protocol anomaly, and
configure the IPS action in response to detecting an anomaly. If you require to
revert back to default settings, you can select the Reset icon.

You can use the CLI to configure session control based on source and destination
address. The protocol anomaly list is updated when the firmware image is
upgraded.

Web Filter

The Web Filter menu consists of the following menus. It is now located under
Intrusion Protection.

Content Block

URL Filter

FortiGuard-Web Filter

Content Block

The Content Block menu has a new tab called Web Content Exempt.

URL Filter

The URL Filter menu allows or blocks access to specific URLs. You can also add
patterns or expressions to allow or block URLs. The URL Filter menu has Web
URL Block tab and Web Pattern Block tab.

In FortiOS v2.80MR11, URL Filter used to be URL Block. Web Filter is now
merged with URL Filter.

FortiGuard-Web Filter

The FortiGuard-Web Filter menu, formerly under Web Filter > Category Block >
Configuration
, is now its own menu in the Web Filter menu.

The FortiGuard-Web is a managed web filtering solution provided by Fortinet,
sorting hundreds of millions of web pages into a wide range of categories for users
to allow, block, or monitor.

Note: The lists you configured in FortiOS 2.80 may carry forward to FortiOS 3.0 if you
upgrade using the web-based manager. Make sure to document these lists for reference to
verify after the upgrade is successful. See the Release Notes for FortiOS 3.0MR1 for more
information.