阻塞对 URL 的访问

网页内容过滤

 

 

如果您为您的 FortiGate 设备购买了 Cerberian 网页过滤功能,按照以下步骤为 FortiGate 设备配置 Cerberian 网页过滤器。

一般配置步骤

 

要使用 Cerberian 网页过滤器,您需要:

 

 

1

安装 Cerberian 网页过滤器许可密钥。请见

第 232 页 在 FortiGate 设备上安装

 

Cerberian 许可密钥

 

 

 

2

添加要使用 Cerberian 网页过滤器的用户。请见

第 232 页 在 FortiGate 设备

 

中添加一个 Cerberian 用户

 

 

 

3

配置 Cerberian 网页过滤器。请见

第 231

使用 Cerberian 网页过滤器

4

启用 Cerberian URL 过滤。请见

第 231 页

使用 Cerberian 网页过滤器

注意:要使用 Cerberian 网页过滤,FortiGate 设备必须能够访问互联网。

在 FortiGate 设备上安装 Cerberian 许可密钥

在您使用 Cerberian 网页过滤之前,您必须安装一个许可密钥。许可密钥决定了可 以通过这个 FortiGate 设备使用 Cerberian 网页过滤功能的最终用户数。

1 进入 网页过滤 >URL 阻塞

2 选择 Cerberian URL 过滤。

3 输入许可证号。

4 单击应用。

在 FortiGate 设备中添加一个 Cerberian 用户

Cerberian 网页过滤策略只能应用到用户组。您可以在 FortiGate 设备上添加用 户,然后将用户添加到 Cerberian 管理网页站点的用户组。

当最终用户试图访问某个 URL 的时候,FortiGate 设备将检查用户的 IP 地址是否 在 FortiGate 设备的 IP 地址列表中。如果用户 IP 地址在列表中,这个 URL 访问请求 将被发送到 Cerberian 服务器。否则,将发送给这个用户一条错误信息,明这个用 户没有访问 Cerberian 网页过滤器的许可。

1 进入 网页过滤 >URL 阻塞

2 选择 Cerberian URL 过滤。

3 单击新建。

4 输入用户的 IP 地址和网络掩码。您可以输入单一用户的 IP 地址。例如, 192.168.100.19/255.255.255.255。也可以输入一组用户的一个子网地址。例如, 192.168.100.0/255.255.255.0。

5 输入用户的别名。当您在 Cerberian 服务器的用户组中添加用户的时候可以使用这个 别名。如果您不输入别名,用户的 IP 将被作为别名并添加到 Cerberian 服务器的默认 组里。

6 单击确定。

232

美国飞塔有限公司

Page 244
Image 244
Fortinet 500 manual 一般配置步骤, FortiGate 设备上安装 Cerberian 许可密钥, FortiGate 设备中添加一个 Cerberian 用户, 232, 进入 网页过滤 Url 阻塞。

500 specifications

Fortinet 500 is a next-generation firewall (NGFW) that is part of Fortinet's acclaimed FortiGate family, designed to provide advanced security for medium to large enterprises. This appliance is known for its high performance, flexibility, and ability to protect networks from a variety of cyber threats through its robust features and technologies.

One of the main features of the Fortinet 500 is its integrated security capabilities. It combines multiple security functions into a single device, allowing organizations to manage everything from intrusion prevention and antivirus to web filtering and application control. This integration leads to simplified management and increased efficiency, as users can address multiple security needs without deploying multiple devices.

The Fortinet 500 runs on the FortiOS operating system, which is known for its simplicity and user-friendliness. FortiOS provides a centralized management interface that allows for the easy configuration and monitoring of security policies across the entire network. Additionally, the Fortinet management tools, such as FortiManager and FortiAnalyzer, enable detailed insights and reporting capabilities, helping organizations stay compliant with their security mandates.

Another characteristic that sets Fortinet 500 apart is its advanced threat intelligence, powered by the FortiGuard Labs. This global threat intelligence system continuously updates the firewall with the latest threat signatures and attack vectors, ensuring that organizations stay ahead of emerging threats. The firewall also employs machine learning and artificial intelligence to detect and mitigate sophisticated attacks in real-time.

Performance is crucial in any security appliance, and the Fortinet 500 does not disappoint. With hardware acceleration and purpose-built security processors, it delivers high throughput levels, enabling organizations to maintain productivity without sacrificing security. This level of performance is particularly beneficial in environments with heavy traffic and bandwidth demands.

In addition to these core features, the Fortinet 500 supports seamless integration with other security solutions within the Fortinet Security Fabric. This comprehensive approach allows for greater visibility and control over the entire security posture of an organization.

Overall, the Fortinet 500 is a powerful NGFW that offers a blend of advanced security features, ease of management, top-notch performance, and robust threat intelligence. Its ability to adapt to the ever-evolving landscape of cybersecurity makes it a valuable asset for businesses seeking to safeguard their digital assets and ensure seamless network operation.