Fortinet white logo
Fortinet white logo

NGFW Deployment

7.0.0

Creating DNS Filter profiles

Creating DNS Filter profiles

Clone the default DNS Filter profile to create a new profile, and then configure the settings.

To configure DNS Filter profiles:
  1. Go to Security Profiles > DNS Filter.
  2. Select the default profile, and click Clone.
  3. Type a name for the clone, such as CORP_DNS, and click OK. The new profile is created.
  4. Double-click the new profile to open it for editing, and set the following options:

    Name

    CORP_DNS

    Redirect botnet C&C requests to Block Portal

    Enable

    FortiGuard Category Based Filter

    Enable

    Pre-configured filters

    • In the Adult/Mature Content category, adjust each filter to have an action of Redirect to Block Portal.
    • In the Bandwidth Consuming category, adjust the first four (4) filters to have an action of Redirect to Block Portal.
    • In the Bandwidth Consuming category, adjust the remaining filters to have an action of Monitor.
    • In the General Interest – Business category, adjust each filter to have an action of Monitor.
    • In the General Interest – Personal category, adjust each filter to have an action of Monitor.
    • In the Potentially Liable category, adjust each filter to have an action of Redirect to Block Portal.
  5. Click OK to save the changes.

Creating DNS Filter profiles

Creating DNS Filter profiles

Clone the default DNS Filter profile to create a new profile, and then configure the settings.

To configure DNS Filter profiles:
  1. Go to Security Profiles > DNS Filter.
  2. Select the default profile, and click Clone.
  3. Type a name for the clone, such as CORP_DNS, and click OK. The new profile is created.
  4. Double-click the new profile to open it for editing, and set the following options:

    Name

    CORP_DNS

    Redirect botnet C&C requests to Block Portal

    Enable

    FortiGuard Category Based Filter

    Enable

    Pre-configured filters

    • In the Adult/Mature Content category, adjust each filter to have an action of Redirect to Block Portal.
    • In the Bandwidth Consuming category, adjust the first four (4) filters to have an action of Redirect to Block Portal.
    • In the Bandwidth Consuming category, adjust the remaining filters to have an action of Monitor.
    • In the General Interest – Business category, adjust each filter to have an action of Monitor.
    • In the General Interest – Personal category, adjust each filter to have an action of Monitor.
    • In the Potentially Liable category, adjust each filter to have an action of Redirect to Block Portal.
  5. Click OK to save the changes.