Fortinet black logo

WhiteList

Copy Link
Copy Doc ID 92974f8e-fceb-11e9-8977-00505692583a:364420

WhiteList

FortiCWP enables users to create whitelists to prevent application system internal IPs from triggering suspicious movement policies, thus eliminating false positive alerts.

There are two steps involved in creating whitelists for internal IPs. The targeted IPs needed to be created in IP collection first in order to create white lists for the internal IPs.

Create IP Collection

  1. Go to Administrator > Collection.
  2. In IP pane, click add button.
  3. Enter a name for the IP in Name field.
  4. Click on Please enter ip field, and enter the internal IP, then click add button.
  5. Click save button to complete saving the IP.

Create White list

  1. Go to Administrator > Whitelist.
  2. Click Add new record in whitelist.
  3. Click Please select IP Collections in IP Collection field to select the IP Collection created earlier.
  4. Click Please select Polices field in Policy field to select a policy, e.g. suspicious movement policy will mark the IP collection as IPs that will not be triggered by the policy.
  5. Give the whitelist a name in Name field.
  6. Click Submit button to complete adding the whitelist.

WhiteList

FortiCWP enables users to create whitelists to prevent application system internal IPs from triggering suspicious movement policies, thus eliminating false positive alerts.

There are two steps involved in creating whitelists for internal IPs. The targeted IPs needed to be created in IP collection first in order to create white lists for the internal IPs.

Create IP Collection

  1. Go to Administrator > Collection.
  2. In IP pane, click add button.
  3. Enter a name for the IP in Name field.
  4. Click on Please enter ip field, and enter the internal IP, then click add button.
  5. Click save button to complete saving the IP.

Create White list

  1. Go to Administrator > Whitelist.
  2. Click Add new record in whitelist.
  3. Click Please select IP Collections in IP Collection field to select the IP Collection created earlier.
  4. Click Please select Polices field in Policy field to select a policy, e.g. suspicious movement policy will mark the IP collection as IPs that will not be triggered by the policy.
  5. Give the whitelist a name in Name field.
  6. Click Submit button to complete adding the whitelist.