Phishing Simulation

Fortinet (FortiGate / FortiMail) Whitelisting

Fortinet (FortiGate / FortiMail) Whitelisting

Whitelist your PhishGrid sending domains and IPs (see Sending Domains & IPs).

FortiMail

  1. Policy → Access Control → Receiving — create a rule matching your PhishGrid sender domains/IPs with Action = Bypass (bypass antispam/antivirus/content).
  2. Profile → AntiSpam (or Maintenance → Safelist) — add PhishGrid domains/IPs to the system or per-domain safelist.
  3. If click protection is enabled, add an exception for your PhishGrid domains.

FortiGate (with antispam/UTM inspection)

  1. Security Profiles → Email Filter — add PhishGrid domains/IPs to the allow/exempt list.
  2. Ensure the relevant firewall policy does not deep-inspect/rewrite links from PhishGrid domains.

Console menus and labels vary by product version and edition — use these as a guide and confirm against your gateway's admin documentation. Always whitelist the current values from Sending Domains & IPs, and send a 5–10 user test campaign before launching organisation-wide.