Fortigate ban or quarantine an IP

 

Dashboard > FortiView Source

Right-click on the source to ban and select Ban IP






To view the banned IP on the GUI, navigate to Dashboard > Users & Devices > Quarantine:







CLI

Show banned IPs

FG70 # diag user quarantine list
src-ip-addr       created                  expires                  cause            
192.168.111.10    Wed Mar 15 14:36:50 2023 Wed Mar 15 15:06:50 2023 Administrative   


Ban an IP

FG70 # diag user quarantine add src4 192.168.111.9 300 admin









Comments

Popular posts from this blog

Firepower FMC and FTD troubleshooting

ASA IKEv1 VPN troubleshooting Steps and Tips

Firepower 2100/1100 FTD/ASA initial setup, reimage, upgrade.