Fortinet black logo

Administration Guide

Configure a Safe List

Copy Link
Copy Doc ID 5e5f427d-b811-11eb-92d0-00505692583a:41785
Download PDF

Configure a Safe List

Use the Deception > Safe List page to add an IP address that is considered legitimate so that it does not generate an Event or Incident when accessing decoys. For example, the IP address of a monitoring system that is polling the network.

To add a new Safe List IP address:
  1. Go to Deception > Safe List.
  2. Click Add New Safe List IP and configure its settings:

    IP/Mask

    Specify the IP address or subnet from where the connection originate.

    Source Ports

    Specify the source ports from where the connection originates.

    Destination Ports

    Specify the destination ports on the network where the connection terminates.

    Description

    Specify a description. For example, you can name it as Safe_Network.

    Services

    Select the name of the services used to connect to the network.

    Status

    Select Enabled or Disabled.

    Action

    Click Update or Cancel.

Configure a Safe List

Use the Deception > Safe List page to add an IP address that is considered legitimate so that it does not generate an Event or Incident when accessing decoys. For example, the IP address of a monitoring system that is polling the network.

To add a new Safe List IP address:
  1. Go to Deception > Safe List.
  2. Click Add New Safe List IP and configure its settings:

    IP/Mask

    Specify the IP address or subnet from where the connection originate.

    Source Ports

    Specify the source ports from where the connection originates.

    Destination Ports

    Specify the destination ports on the network where the connection terminates.

    Description

    Specify a description. For example, you can name it as Safe_Network.

    Services

    Select the name of the services used to connect to the network.

    Status

    Select Enabled or Disabled.

    Action

    Click Update or Cancel.