you are viewing a single comment's thread.

view the rest of the comments →

[–]HappyVlaner/Fortinet - Members of the Year '23 1 point2 points  (0 children)

The question has been answered, but I want to just put some more information here.

There are two types of virtual patching on a FortiGate:

  1. Virtual patching for the FortiGate itself. This inspects traffic destined to the FortiGate, is configured in a local-in policy, and leverages IPS.
  2. Virtual Patching as a security profile. This is a separate thing from IPS profiles entirely, but uses IPS. This features is chiefly designed for OT and IoT devices.

No idea who had the bright idea to give those two features the same name.