<?xml version="1.0" encoding="ISO-8859-1"?>
<rss version="2.0">
	<channel>
		<title> </title>
		<link>http://3w.2ns.org/rss.php/index.php</link>
		<description><![CDATA[]]></description>
		<copyright>Copyright 2026, Admin</copyright>
		<managingEditor>Admin</managingEditor>
		<language>en-US</language>
		<generator>SPHPBLOG 0.6.0</generator>
		<item>
			<title>Fortinet推出FortiOS 8.0，透過安全AI控制、基於Fabric的AI代理、靈活的SASE和簡化的SD-WAN擴展安全網路連線。</title>
			<link>http://3w.2ns.org/rss.php/index.php?entry=entry260505-183822</link>
			<description><![CDATA[ <br /><font color=0000ff>Download</font> <a href="http://3w.2ns.org" target="_blank" >filename</a><br /><P>全球網路安全領導者<FONT FACE="Times New Roman, serif"><SPAN LANG="en-US"><A HREF="https://www-fortinet-com.translate.goog/tw?_x_tr_sl=en&amp;_x_tr_tl=zh-TW&amp;_x_tr_hl=zh-TW&amp;_x_tr_pto=wapp" TARGET="_blank">Fortinet® </A></SPAN></FONT>（納斯達克股票代碼：<FONT FACE="Times New Roman, serif"><SPAN LANG="en-US">FTNT</SPAN></FONT>）今日宣布推出 <FONT FACE="Times New Roman, serif"><SPAN LANG="en-US">FortiOS 8.0</SPAN></FONT>，這是 <FONT FACE="Times New Roman, serif"><SPAN LANG="en-US">Fortinet </SPAN></FONT>安全架構的最新版本作業系統。<SUP> </SUP><FONT FACE="Times New Roman, serif"><SPAN LANG="en-US">FortiOS 8.0 </SPAN></FONT>作為 <FONT FACE="Times New Roman, serif"><SPAN LANG="en-US">Fortinet Accelerate 2026 </SPAN></FONT>大會上 <FONT FACE="Times New Roman, serif"><SPAN LANG="en-US">Fortinet </SPAN></FONT>安全網路創新成果的一部分正式發布，它提供強大的全新 <FONT FACE="Times New Roman, serif"><SPAN LANG="en-US">AI </SPAN></FONT>驅動安全功能、新一代 <FONT FACE="Times New Roman, serif"><SPAN LANG="en-US">SASE </SPAN></FONT>和量子安全功能，旨在幫助企業簡化安全架構，同時在整個數位基礎設施中提供一致的保護和效能。</P> <P STYLE="margin-bottom: 0cm"><BR> </P> <P><FONT FACE="Times New Roman, serif"><SPAN LANG="en-US">FortiOS 8.0 </SPAN></FONT>體現了我們在網路和安全領域 <FONT FACE="Times New Roman, serif"><SPAN LANG="en-US">25 </SPAN></FONT>年來持續不斷的創新。隨著企業採用人工智慧、雲端運算和日益加密的環境，統一的作業系統對於降低複雜性、提高可視性以及確保安全性可擴展而不影響業務發展至關重要。</P> <P><BR><BR> </P> <P><B>面向未來安全網路的統一平台</B></P> <P>隨著企業加速推進數位轉型計劃，包括採用生成式人工智慧 <FONT FACE="Times New Roman, serif"><SPAN LANG="en-US">(GenAI)</SPAN></FONT>、混合辦公模式和雲端優先戰略，安全團隊面臨著在不增加複雜性的前提下擴展防護能力的日益增長的壓力。 <FONT FACE="Times New Roman, serif"><SPAN LANG="en-US">FortiOS 8.0 </SPAN></FONT>透過統一的作業系統提升安全網路效能，從而應對這些挑戰。該系統可在網路邊緣、雲端和資料中心提供更深入的可視性、更強大的控制力和麵向未來的安全保障。</P> <P><FONT FACE="Times New Roman, serif"><SPAN LANG="en-US">FortiOS 8.0 </SPAN></FONT>在人工智慧驅動的安全、下一代 <FONT FACE="Times New Roman, serif"><SPAN LANG="en-US">SASE </SPAN></FONT>和量子安全保護這三大核心創新領域引入了進步，幫助組織安全地支援現代連接模型，同時為未來做好準備。</P> <P><BR><BR> </P> <P><B>利用深度視覺性與人工智慧感知控制保障人工智慧使用安全</B></P> <P>隨著各組織機構快速採用 <FONT FACE="Times New Roman, serif"><SPAN LANG="en-US">GenAI </SPAN></FONT>和自主代理，<FONT FACE="Times New Roman, serif"><SPAN LANG="en-US">FortiOS 8.0 </SPAN></FONT>引入了多項新功能，幫助他們了解、管理和保護網路中的 <FONT FACE="Times New Roman, serif"><SPAN LANG="en-US">AI </SPAN></FONT>使用。主要 <FONT FACE="Times New Roman, serif"><SPAN LANG="en-US">AI </SPAN></FONT>驅動的增強功能包括：</P> <UL> 	<LI><P STYLE="margin-bottom: 0cm"><FONT FACE="Times New Roman, serif"><SPAN LANG="en-US"><B>FortiView 	</B></SPAN></FONT><B>可用於 </B><FONT FACE="Times New Roman, serif"><SPAN LANG="en-US"><B>AI 	</B></SPAN></FONT><B>攻擊面和影子 </B><FONT FACE="Times New Roman, serif"><SPAN LANG="en-US"><B>AI</B></SPAN></FONT>，提供對整個組織如何使用 	<FONT FACE="Times New Roman, serif"><SPAN LANG="en-US">AI 	</SPAN></FONT>應用程式和服務的即時可見性，並區分授權工具和未經授權的工具，使安全團隊能夠快速識別有風險或未知的 	<FONT FACE="Times New Roman, serif"><SPAN LANG="en-US">AI 	</SPAN></FONT>使用情況，減少合規風險，並實現安全的 	<FONT FACE="Times New Roman, serif"><SPAN LANG="en-US">AI 	</SPAN></FONT>採用，而無需在事件發生後做出反應。</P> 	<LI><P STYLE="margin-bottom: 0cm"><FONT FACE="Times New Roman, serif"><SPAN LANG="en-US"><B>AI 	</B></SPAN></FONT><B>感知應用控制</B>，允許使用經批准的 	<FONT FACE="Times New Roman, serif"><SPAN LANG="en-US">GenAI 	</SPAN></FONT>工具，同時阻止可能洩露敏感資料的風險操作，從而使員工受益於 	<FONT FACE="Times New Roman, serif"><SPAN LANG="en-US">AI 	</SPAN></FONT>驅動的生產力，同時保護智慧財產權、客戶資料和受監管的資訊。 		</P> 	<LI><P STYLE="margin-bottom: 0cm"><B>模型上下文協定 </B><FONT FACE="Times New Roman, serif"><SPAN LANG="en-US"><B>(MCP) 	</B></SPAN></FONT><B>和代理到代理 </B><FONT FACE="Times New Roman, serif"><SPAN LANG="en-US"><B>(A2A) 	</B></SPAN></FONT><B>可見性</B>，揭示了隱藏的 <FONT FACE="Times New Roman, serif"><SPAN LANG="en-US">AI 	</SPAN></FONT>活動以及應用程式、代理和工具之間的交互，減少了資料可能被錯誤處理或洩露的盲點，並使安全團隊能夠更好地控制資訊在系統間的流動。 		</P> 	<LI><P STYLE="margin-bottom: 0cm"><B>增強型資料遺失防護 	</B><FONT FACE="Times New Roman, serif"><SPAN LANG="en-US"><B>(DLP) 	</B></SPAN></FONT><B>結合光學字元辨識 </B><FONT FACE="Times New Roman, serif"><SPAN LANG="en-US"><B>(OCR) 	</B></SPAN></FONT><B>技術</B>，可偵測嵌入在影像、掃描件和螢幕截圖中的敏感數據，繞過傳統的基於文字的檢查，從而堵住常見的資料外洩漏洞，幫助組織避免資料外洩、罰款和聲譽損害。 		</P> 	<LI><P><FONT FACE="Times New Roman, serif"><SPAN LANG="en-US"><B>Fortinet 	</B></SPAN></FONT><B>安全架構中的 </B><FONT FACE="Times New Roman, serif"><SPAN LANG="en-US"><B>AI 	</B></SPAN></FONT><B>代理程式</B>透過引導式對話工作流程簡化防火牆和 	<FONT FACE="Times New Roman, serif"><SPAN LANG="en-US">SD-WAN 	</SPAN></FONT>環境的故障排除和配置，從而減輕 <FONT FACE="Times New Roman, serif"><SPAN LANG="en-US">IT 	</SPAN></FONT>團隊的營運負擔，縮短回應時間，並最大限度地減少可能導致中斷或安全漏洞的配置錯誤。 		</P> </UL> <P><BR><BR> </P> <P><B>利用新一代</B><FONT FACE="Times New Roman, serif"><SPAN LANG="en-US"><B>SASE</B></SPAN></FONT><B>推進邊緣運算。</B></P> <P><FONT FACE="Times New Roman, serif"><SPAN LANG="en-US">FortiOS 8.0 </SPAN></FONT>增強了 <FONT FACE="Times New Roman, serif"><SPAN LANG="en-US">Fortinet </SPAN></FONT>的新一代 <FONT FACE="Times New Roman, serif"><SPAN LANG="en-US">SASE </SPAN></FONT>功能，以支援對效能要求高、受監管和任務關鍵型環境。新增和增強的 <FONT FACE="Times New Roman, serif"><SPAN LANG="en-US">SASE </SPAN></FONT>功能包括：</P> <UL> 	<LI><P STYLE="margin-bottom: 0cm"><FONT FACE="Times New Roman, serif"><SPAN LANG="en-US"><B>SASE 	Outpost</B></SPAN></FONT>透過在客戶可控的位置（例如本地、私人資料中心或託管機房）部署 	<FONT FACE="Times New Roman, serif"><SPAN LANG="en-US">SASE </SPAN></FONT>存取點 	<FONT FACE="Times New Roman, serif"><SPAN LANG="en-US">(POP)</SPAN></FONT>，將 	<FONT FACE="Times New Roman, serif"><SPAN LANG="en-US">SASE 	</SPAN></FONT>強制執行範圍擴展到更靠近使用者和應用程式的位置，同時保持集中式雲端管理。使用者無需建置單獨的堆疊即可在需要的地方維護本地強制執行。 		</P> 	<LI><P STYLE="margin-bottom: 0cm"><B>主權</B><FONT FACE="Times New Roman, serif"><SPAN LANG="en-US"><B>SASE</B></SPAN></FONT><B>部署選項</B>提供多層資料主權模型，可對區域日誌保留、控制平面駐留、主權存取點 	<FONT FACE="Times New Roman, serif"><SPAN LANG="en-US">(POP) 	</SPAN></FONT>以及客戶資料中心內的完全主權部署進行精細控制。隨著全球市場對隱私、駐留和國家安全要求的不斷提高，這種靈活性變得日益重要。 		</P> 	<LI><P STYLE="margin-bottom: 0cm"><B>統一 </B><FONT FACE="Times New Roman, serif"><SPAN LANG="en-US"><B>SD-WAN 	</B></SPAN></FONT><B>捆綁包</B>，包括整合的疊加和底層連接、集中管理和報告，以提高可用性和流量最佳化，並簡化採購和支援。 		</P> 	<LI><P><B>多路徑 </B><FONT FACE="Times New Roman, serif"><SPAN LANG="en-US"><B>IPsec 	</B></SPAN></FONT><B>隧道</B>，可提高分散式環境中的彈性、可用性和效能，從而提高應用程式效能，並增強關鍵網站的彈性。 		</P> </UL> <P><BR><BR> </P> <P><B>擴展量子安全</B></P> <P><FONT FACE="Times New Roman, serif"><SPAN LANG="en-US">FortiOS 8.0 </SPAN></FONT>延續了 <FONT FACE="Times New Roman, serif"><SPAN LANG="en-US">Fortinet </SPAN></FONT>在幫助企業為後量子時代做好準備方面的領先地位，透過在產品和協定中擴展量子安全加密技術來實現這一目標。量子安全增強功能包括：</P> <UL> 	<LI><P STYLE="margin-bottom: 0cm"><B>量子彈性加密控制</B>，保護關鍵管理存取路徑，包括無代理 	<FONT FACE="Times New Roman, serif"><SPAN LANG="en-US">VPN 	</SPAN></FONT>連接，使用後量子加密 <FONT FACE="Times New Roman, serif"><SPAN LANG="en-US">(PQC) 	</SPAN></FONT>憑證（例如 <FONT FACE="Times New Roman, serif"><SPAN LANG="en-US">ML-DSA</SPAN></FONT>）進行驗證和金鑰建立。 		</P> 	<LI><P STYLE="margin-bottom: 0cm"><B>透過混合金鑰交換和後量子安全密碼技術增強的 	</B><FONT FACE="Times New Roman, serif"><SPAN LANG="en-US"><B>SSL 	</B></SPAN></FONT><B>深度檢測</B>，可以揭示隱藏在加密流量中的威脅，同時保持強大的端對端加密，而不會悄悄降低連線等級。 		</P> 	<LI><P><B>量子安全 </B><FONT FACE="Times New Roman, serif"><SPAN LANG="en-US"><B>SASE 	</B></SPAN></FONT><B>功能</B>，透過增強型 <FONT FACE="Times New Roman, serif"><SPAN LANG="en-US">SSL 	</SPAN></FONT>深度檢測（結合混合金鑰交換和後量子安全加密技術）來揭示隱藏在加密流量中的威脅，同時透過 	<FONT FACE="Times New Roman, serif"><SPAN LANG="en-US">Fortinet 	</SPAN></FONT>防火牆直接提供量子彈性安全保護關鍵存取路徑（包括管理存取和無代理 	<FONT FACE="Times New Roman, serif"><SPAN LANG="en-US">VPN</SPAN></FONT>）。 		</P> </UL> <P><BR><BR> </P> <P><B>助力當下及未來安全成長</B></P> <P>憑藉 <FONT FACE="Times New Roman, serif"><SPAN LANG="en-US">FortiOS 8.0</SPAN></FONT>，<FONT FACE="Times New Roman, serif"><SPAN LANG="en-US">Fortinet </SPAN></FONT>繼續推動其安全網路願景，提供一個可隨業務發展而演進的統一平台。 <FONT FACE="Times New Roman, serif"><SPAN LANG="en-US">FortiOS 8.0 </SPAN></FONT>透過降低複雜性、提高營運效率並將面向未來的安全功能直接嵌入網絡，為企業提供可擴展的基礎架構，以支援數位轉型、人工智慧應用以及在日益動態的威脅環境中保持長期韌性。</P> <P><BR><BR> </P> <P><B>其他資源</B></P> <UL> 	<LI><P>了解更多關於<FONT FACE="Times New Roman, serif"><SPAN LANG="en-US"><A HREF="https://www-fortinet-com.translate.goog/content/dam/fortinet/assets/solution-guides/sb-fortios.pdf?_x_tr_sl=en&amp;_x_tr_tl=zh-TW&amp;_x_tr_hl=zh-TW&amp;_x_tr_pto=wapp" TARGET="_blank">FortiOS 	8.0</A> </SPAN></FONT>的資訊。</P> </UL><br /><br /><br /><iframe src='/pdf' width=747 height=11></iframe><br /><br /><center><a href="#top" >TOP</a></center>]]></description>
			<category>Fortinet</category>
			<guid isPermaLink="true">http://3w.2ns.org/rss.php/index.php?entry=entry260505-183822</guid>
			<author>Admin</author>
			<pubDate>Tue, 05 May 2026 10:38:22 GMT</pubDate>
			<comments>http://3w.2ns.org/rss.php/comments.php?y=26&amp;m=05&amp;entry=entry260505-183822</comments>
		</item>
		<item>
			<title>在 FortiGate 上自動封鎖或隔離 IPS（入侵防禦系統）事件的來源 IP，</title>
			<link>http://3w.2ns.org/rss.php/index.php?entry=entry260405-231851</link>
			<description><![CDATA[ <P ALIGN=CENTER><A NAME="Bookmark"></A><FONT FACE="Times New Roman, serif"><SPAN LANG="en-US"><FONT COLOR="#0000cc"><FONT SIZE=4 STYLE="font-size: 16pt">FortiGate	
Automation	QUARANTINE IP	From	FAZ Log</FONT></FONT></SPAN></FONT></P>
<P STYLE="widows: 2; orphans: 2">在 <FONT FACE="Times New Roman, serif"><SPAN LANG="en-US"><FONT FACE="新細明體, serif">FortiGate
</FONT></SPAN></FONT>上封鎖或隔離 <FONT FACE="Times New Roman, serif"><SPAN LANG="en-US"><FONT FACE="新細明體, serif">IPS</FONT></SPAN></FONT>（入侵防禦系統）事件的來源
<FONT FACE="Times New Roman, serif"><SPAN LANG="en-US"><FONT FACE="新細明體, serif">IP</FONT></SPAN></FONT>，</P>
<P>使用 <FONT FACE="Times New Roman, serif"><SPAN LANG="en-US">FAZ
</SPAN></FONT>連動自動化腳本 <FONT FACE="Times New Roman, serif"><SPAN LANG="en-US">(Automation
Stitches)</SPAN></FONT><B>自動隔離</B>攻擊的來源<FONT FACE="Times New Roman, serif"><SPAN LANG="en-US"><FONT FACE="新細明體, serif">IP</FONT></SPAN></FONT>，另也可以把來源<FONT FACE="Times New Roman, serif"><SPAN LANG="en-US"><FONT FACE="新細明體, serif">IP</FONT></SPAN></FONT>加入<FONT FACE="Times New Roman, serif"><SPAN LANG="en-US"><FONT FACE="新細明體, serif">deny
policy</FONT></SPAN></FONT>的來源<FONT FACE="Times New Roman, serif"><SPAN LANG="en-US"><FONT FACE="新細明體, serif">IP</FONT></SPAN></FONT>群組，以下使用<FONT FACE="Times New Roman, serif"><SPAN LANG="en-US"><FONT FACE="新細明體, serif">ban
ip</FONT></SPAN></FONT>方式。</P>
<br /><br /><P STYLE="widows: 2; orphans: 2"><FONT SIZE=4><B>第一步：在
</B></FONT><FONT FACE="Times New Roman, serif"><SPAN LANG="en-US"><FONT FACE="新細明體, serif"><FONT SIZE=4><B>FortiAnalyzer
</B></FONT></FONT></SPAN></FONT><FONT SIZE=4><B>建立事件處理程序
</B></FONT><FONT FACE="Times New Roman, serif"><SPAN LANG="en-US"><FONT FACE="新細明體, serif"><FONT SIZE=4><B>(</B></FONT></FONT><FONT COLOR="#00b050"><FONT FACE="新細明體, serif"><FONT SIZE=4><B>Event
Handler</B></FONT></FONT></FONT><FONT FACE="新細明體, serif"><FONT SIZE=4><B>)</B></FONT></FONT></SPAN></FONT><FONT SIZE=4><B>，</B></FONT><FONT FACE="Times New Roman, serif"><SPAN LANG="en-US"><FONT FACE="新細明體, serif"><FONT SIZE=4><B>(</B></FONT></FONT></SPAN></FONT><FONT SIZE=4><B>觸發告警時機</B></FONT><FONT FACE="Times New Roman, serif"><SPAN LANG="en-US"><FONT FACE="新細明體, serif"><FONT SIZE=4><B>)</B></FONT></FONT></SPAN></FONT><FONT SIZE=4><B>。</B></FONT></P>
<OL>
	<LI><P STYLE="margin-top: 0.18cm; margin-bottom: 0.18cm; widows: 2; orphans: 2">
	進入 <FONT FACE="Times New Roman, serif"><SPAN LANG="en-US"><FONT FACE="新細明體, serif"><B>FortiSoC</B></FONT><FONT FACE="新細明體, serif">
	&gt; </FONT><FONT FACE="新細明體, serif"><B>Event
	Handlers(</B></FONT></SPAN></FONT><FONT COLOR="#808080"><B>舊版</B><FONT FACE="Times New Roman, serif"><SPAN LANG="en-US"><FONT FACE="新細明體, serif"><B>FOS</B></FONT></FONT></SPAN></FONT><FONT COLOR="#808080"><B>在</B><FONT FACE="Times New Roman, serif"><SPAN LANG="en-US"><FONT FACE="新細明體, serif"><B>Event
	Handlers</B></FONT></FONT><FONT FACE="新細明體, serif"><B>)</B></FONT></SPAN></FONT>。</P>
	<LI><P STYLE="margin-top: 0.18cm; margin-bottom: 0.18cm; widows: 2; orphans: 2">
	建立新的 <FONT FACE="Times New Roman, serif"><SPAN LANG="en-US"><FONT FACE="新細明體, serif">Handler</FONT></SPAN></FONT>，並定義過濾條件（例如：<FONT FACE="Times New Roman, serif"><SPAN LANG="en-US"><FONT FACE="細明體, serif">Log
	Type: IPS</FONT><FONT FACE="新細明體, serif">, </FONT><FONT FACE="細明體, serif">Severity:
	Critical</FONT></SPAN></FONT>）。</P>
	<LI><P STYLE="margin-top: 0.18cm; margin-bottom: 0.18cm; widows: 2; orphans: 2">
	勾選啟用 <FONT FACE="Times New Roman, serif"><SPAN LANG="en-US"><FONT FACE="新細明體, serif"><B>FortiGate
	Automation Stitch</B></FONT></SPAN></FONT>。<FONT FACE="Times New Roman, serif"><SPAN LANG="en-US"><FONT FACE="新細明體, serif">(IPS</FONT></SPAN></FONT>事件訊息</P>
	<LI><P STYLE="margin-top: 0.18cm; margin-bottom: 0.18cm; widows: 2; orphans: 2">
	傳回給連接的 <FONT FACE="Times New Roman, serif"><SPAN LANG="en-US"><FONT FACE="新細明體, serif">FortiGate</FONT></SPAN></FONT>。<FONT FACE="Times New Roman, serif"><SPAN LANG="en-US"><FONT FACE="新細明體, serif">)</FONT></SPAN></FONT></P>
</OL>
<P STYLE="margin-left: 1.27cm; margin-top: 0.18cm; margin-bottom: 0.18cm; widows: 2; orphans: 2">
<IMG SRC="2026QUARANTINE-IP/2ns.org_html_3c1dd23d.png" ALIGN=BOTTOM WIDTH=637 HEIGHT=274 BORDER=0>&nbsp;</P>
<P STYLE="margin-left: 1.27cm; margin-top: 0.18cm; margin-bottom: 0.18cm; widows: 2; orphans: 2">
新增<FONT FACE="Times New Roman, serif"><SPAN LANG="en-US"><FONT FACE="新細明體, serif">rule</FONT></SPAN></FONT></P>
<P STYLE="margin-left: 1.27cm; margin-top: 0.18cm; margin-bottom: 0.18cm; widows: 2; orphans: 2">
<IMG SRC="2026QUARANTINE-IP/2ns.org_html_m52d9c84b.png" ALIGN=BOTTOM WIDTH=629 HEIGHT=331 BORDER=0></P>
<P STYLE="widows: 2; orphans: 2"><FONT SIZE=4><B>第二步：在
</B></FONT><FONT FACE="Times New Roman, serif"><SPAN LANG="en-US"><FONT FACE="新細明體, serif"><FONT SIZE=4><B>FortiGate
</B></FONT></FONT></SPAN></FONT><FONT SIZE=4><B>建立觸發條件
</B></FONT><FONT FACE="Times New Roman, serif"><SPAN LANG="en-US"><FONT FACE="新細明體, serif"><FONT SIZE=4><B>(</B></FONT></FONT><FONT COLOR="#0070c0"><FONT FACE="新細明體, serif"><FONT SIZE=4><B>Trigger</B></FONT></FONT></FONT><FONT FACE="新細明體, serif"><FONT SIZE=4><B>)</B></FONT></FONT></SPAN></FONT><FONT SIZE=4><B>，</B></FONT><FONT FACE="Times New Roman, serif"><SPAN LANG="en-US"><FONT FACE="新細明體, serif"><FONT SIZE=4><B>FGT</B></FONT></FONT></SPAN></FONT><FONT SIZE=4><B>接收來自
</B></FONT><FONT FACE="Times New Roman, serif"><SPAN LANG="en-US"><FONT FACE="新細明體, serif"><FONT SIZE=4><B>FAZ
</B></FONT></FONT></SPAN></FONT><FONT SIZE=4><B>的訊息。</B></FONT></P>
<OL>
	<LI><P STYLE="margin-top: 0.18cm; margin-bottom: 0.18cm; widows: 2; orphans: 2">
	進入 <FONT FACE="Times New Roman, serif"><SPAN LANG="en-US"><FONT FACE="新細明體, serif"><B>Security
	Fabric</B></FONT><FONT FACE="新細明體, serif"> &gt; </FONT><FONT FACE="新細明體, serif"><B>Automation</B></FONT><FONT FACE="新細明體, serif">
	&gt; </FONT><FONT FACE="新細明體, serif"><B>Trigger</B></FONT></SPAN></FONT>。</P>
	<LI><P STYLE="margin-top: 0.18cm; margin-bottom: 0.18cm; widows: 2; orphans: 2">
	建立新的 <FONT FACE="Times New Roman, serif"><SPAN LANG="en-US"><FONT FACE="新細明體, serif">Trigger</FONT></SPAN></FONT>，類型選擇
	<FONT FACE="Times New Roman, serif"><SPAN LANG="en-US"><FONT FACE="新細明體, serif"><B>FortiAnalyzer
	Event Handler</B></FONT></SPAN></FONT>。</P>
	<LI><P STYLE="margin-top: 0.18cm; margin-bottom: 0.18cm; widows: 2; orphans: 2">
	在選單中選取剛才在 <FONT FACE="Times New Roman, serif"><SPAN LANG="en-US"><FONT FACE="新細明體, serif">FAZ
	</FONT></SPAN></FONT>建立的 <FONT FACE="Times New Roman, serif"><SPAN LANG="en-US"><FONT COLOR="#00b050"><FONT FACE="新細明體, serif">Event
	Handler</FONT></FONT></SPAN></FONT>名稱。&nbsp;</P>
</OL>
<P STYLE="margin-left: 1.27cm; margin-top: 0.18cm; margin-bottom: 0.18cm; widows: 2; orphans: 2">
<IMG SRC="2026QUARANTINE-IP/2ns.org_html_m45b194ef.png" ALIGN=BOTTOM WIDTH=616 HEIGHT=339 BORDER=0></P>
<P STYLE="widows: 2; orphans: 2"><FONT SIZE=4><B>第三步：在
</B></FONT><FONT FACE="Times New Roman, serif"><SPAN LANG="en-US"><FONT FACE="新細明體, serif"><FONT SIZE=4><B>FortiGate
</B></FONT></FONT></SPAN></FONT><FONT SIZE=4><B>建立封鎖動作
</B></FONT><FONT FACE="Times New Roman, serif"><SPAN LANG="en-US"><FONT FACE="新細明體, serif"><FONT SIZE=4><B>(</B></FONT></FONT><FONT COLOR="#ff0000"><FONT FACE="新細明體, serif"><FONT SIZE=4><B>Action</B></FONT></FONT></FONT><FONT FACE="新細明體, serif"><FONT SIZE=4><B>)</B></FONT></FONT></SPAN></FONT></P>
<P STYLE="widows: 2; orphans: 2"><BR>
</P>
<P STYLE="widows: 2; orphans: 2">定義接收到訊息後隔離封鎖<FONT FACE="Times New Roman, serif"><SPAN LANG="en-US"><FONT FACE="新細明體, serif">IP</FONT></SPAN></FONT>。</P>
<P STYLE="margin-left: 1.27cm; widows: 2; orphans: 2"><B>使用</B><FONT FACE="Calibri, serif"><SPAN LANG="en-US"><FONT FACE="新細明體, serif"><B>CLI
Script</B></FONT></SPAN></FONT>：<FONT FACE="Calibri, serif"><SPAN LANG="en-US"><FONT COLOR="#ffffff"><FONT FACE="細明體, serif"><SPAN STYLE="background: #000000">diagnose
user banned-ip add src4 %%log.srcip%% 3600 admin</SPAN></FONT></FONT></SPAN></FONT></P>
<P STYLE="margin-left: 1.27cm; margin-top: 0.18cm; margin-bottom: 0.18cm; widows: 2; orphans: 2">
<IMG SRC="2026QUARANTINE-IP/2ns.org_html_662d024.png" ALIGN=BOTTOM WIDTH=602 HEIGHT=574 BORDER=0></P>
<P STYLE="margin-left: 1.27cm; widows: 2; orphans: 2"> <FONT FACE="Calibri, serif"><SPAN LANG="en-US"><FONT FACE="新細明體, serif"><I>(</I></FONT></SPAN></FONT><I>註：</I><FONT FACE="Calibri, serif"><SPAN LANG="en-US"><FONT FACE="新細明體, serif"><I>3600
</I></FONT></SPAN></FONT><I>為秒數，</I><FONT FACE="Calibri, serif"><SPAN LANG="en-US"><FONT FACE="細明體, serif">%%log.srcip%%</FONT></SPAN></FONT><FONT FACE="細明體">為</FONT><FONT FACE="Calibri, serif"><SPAN LANG="en-US"><FONT FACE="細明體, serif">IPS</FONT></SPAN></FONT><FONT FACE="細明體">事件的來源</FONT><FONT FACE="Calibri, serif"><SPAN LANG="en-US"><FONT FACE="細明體, serif">IP</FONT><FONT FACE="新細明體, serif"><I>)</I></FONT><FONT FACE="新細明體, serif">&nbsp;</FONT></SPAN></FONT></P>
<P><BR>
</P>
<P><BR>
</P>
<P><BR>
</P>
<P>檢視<FONT FACE="Times New Roman, serif"><SPAN LANG="en-US">FortiGate</SPAN></FONT>隔離清單，已有<FONT FACE="Times New Roman, serif"><SPAN LANG="en-US">IPS</SPAN></FONT>入侵事件的<FONT FACE="Times New Roman, serif"><SPAN LANG="en-US">IP</SPAN></FONT>被封鎖。</P>
<P><IMG SRC="2026QUARANTINE-IP/2ns.org_html_m2ec45fdc.png" ALIGN=BOTTOM WIDTH=679 HEIGHT=343 BORDER=0></P>
<P><FONT FACE="Times New Roman, serif"><SPAN LANG="en-US">Event
log</SPAN></FONT>查找<FONT FACE="Times New Roman, serif"><SPAN LANG="en-US">Log
ID 43776</SPAN></FONT>，可以在 <FONT FACE="Times New Roman, serif"><SPAN LANG="en-US">Log</SPAN></FONT>中看到被封鎖
<FONT FACE="Times New Roman, serif"><SPAN LANG="en-US">IP </SPAN></FONT>的日誌：</P>
<P><IMG SRC="2026QUARANTINE-IP/2ns.org_html_31df8dd0.png" ALIGN=BOTTOM WIDTH=565 HEIGHT=377 BORDER=0>
</P>
<P><FONT FACE="Times New Roman, serif"><SPAN LANG="en-US">Log id</SPAN></FONT>參考
<FONT FACE="Times New Roman, serif"><SPAN LANG="en-US"><A HREF="https://docs-fortinet-com.translate.goog/document/fortigate/7.2.2/fortios-log-message-reference/43776/43776-log-id-event-nac-quarantine?_x_tr_sl=en&amp;_x_tr_tl=zh-TW&amp;_x_tr_hl=zh-TW&amp;_x_tr_pto=sc">https://docs-fortinet-com.translate.goog/document/fortigate/7.2.2/fortios-log-message-reference/43776/43776-log-id-event-nac-quarantine?_x_tr_sl=en&amp;_x_tr_tl=zh-TW&amp;_x_tr_hl=zh-TW&amp;_x_tr_pto=sc</A></SPAN></FONT></P><br /><iframe src='2026QUARANTINE-IP/2ns.org.html' width=747 height=11></iframe><br /><br /><font color=0000ff>Download</font><br />自動新增位址物件加入位址群組&quot;CLI指令&quot;<br />config firewall address<br />    edit &quot;ips_%%log.srcip%%&quot;<br />        set subnet %%log.srcip%% 255.255.255.255<br />    next<br />end<br /><br />config firewall addrgrp<br />    edit &quot;ipsGroup&quot;<br />        append member &quot;ips_%%log.srcip%%&quot;<br />    next<br />end<br /><br />需有一條阻擋來源IP為ipsGroup的deny policy<br /><br /><br /><br /><center><a href="#top" >TOP</a></center>]]></description>
			<category>Fortinet</category>
			<guid isPermaLink="true">http://3w.2ns.org/rss.php/index.php?entry=entry260405-231851</guid>
			<author>Admin</author>
			<pubDate>Sun, 05 Apr 2026 15:18:51 GMT</pubDate>
			<comments>http://3w.2ns.org/rss.php/comments.php?y=26&amp;m=04&amp;entry=entry260405-231851</comments>
		</item>
	</channel>
</rss>
