Get instant support with our search!
Allowlisting (Whitelisting) in Fortinet's FortiGate
Fortinet's FortiGate web filter can be configured to allow access to MetaCompliance's phishing simulations and landing pages.
Allowlisting via Static URL Filter
You can allow access by adding our phishing and landing domains to the Static URL Filter list in your FortiGate firewall. The web filter will permit access to web pages that match the specified URLs.
Note: Another allowlisting method offered by Fortinet is 'Web Rating Overrides', which is suitable for organisations using FortiGuard categories. (For more details, please take a look at Fortinet's 'Web rating override' article.)
Steps to Allowlist
- Log in to your Fortinet account.
- Navigate to Security Profiles > Web Filter.
- Create a new web filter, or select an existing one to edit.
- Expand Static URL Filter, then enable URL Filter and click Create.
- Enter the URLs, without the 'https' prefix, e.g. www.example.com.
- Add each phishing and training domain as listed in Step 1.
- Set Type to: Simple.
- Set the action for matching URLs to: Allow.
- Confirm that Status is enabled.
Final Steps
After completing the configuration, we recommend running a test phishing campaign for 1-2 users to confirm that allowlisting is working correctly. If required, we also suggest reaching out to your service provider for further assistance.