Fortinet black logo

Administration Guide

SWG Policies

Copy Link
Copy Doc ID 4ed231bf-e303-11ee-8c42-fa163e15d75b:784095
Download PDF

SWG Policies

You must associate any traffic going through FortiSASE with a policy. Secure web gateway (SWG) policies control where the traffic goes, how FortiSASE processes it, and whether or not FortiSASE allows it to pass through.

When a user's client software, such as a web browser, proxies traffic through FortiSASE, FortiSASE analyzes the connection and performs a SWG policy match. FortiSASE performs the match from top down and compares the session with the configured policy parameters. When there is a match and the action is Accept, FortiSASE applies the enabled security components to the traffic. If the action is Deny, FortiSASE blocks the traffic from proceeding.

You must first enable SWG configuration for the feature to be available in the GUI. See SWG Configuration.

SWG Policies

You must associate any traffic going through FortiSASE with a policy. Secure web gateway (SWG) policies control where the traffic goes, how FortiSASE processes it, and whether or not FortiSASE allows it to pass through.

When a user's client software, such as a web browser, proxies traffic through FortiSASE, FortiSASE analyzes the connection and performs a SWG policy match. FortiSASE performs the match from top down and compares the session with the configured policy parameters. When there is a match and the action is Accept, FortiSASE applies the enabled security components to the traffic. If the action is Deny, FortiSASE blocks the traffic from proceeding.

You must first enable SWG configuration for the feature to be available in the GUI. See SWG Configuration.