Skip to Content

How to allow chat.openai.com from FortiGate using explicit proxy and web filter profile

This article describes how to allow chat.openai.com when FortiGate is configured as an explicit proxy and has a web filter profile

Scope

FortiGate v6.4.x +.

Solution

chat.openai.com is redirected to chatgpt.com.

chat.openai.com is redirected to chatgpt.com.

On checking the web filter category, chat.openai.com and chatgpt.com belong to the artificial intelligence technology category:

On checking the web filter category, chat.openai.com and chatgpt.com belong to the artificial intelligence technology category.

However, just by allowing the artificial intelligence technology category, a blank page appears instead of a ChatGPT chat screen.

After inspecting the page, URLs are getting redirected to cdn.oastatic.com

After inspecting the page, URLs are getting redirected to cdn.oastatic.com

As it is an explicit proxy and proxy-based inspection, it is necessary to manually allow all embedded URLs or allow the content server category:

As it is an explicit proxy and proxy-based inspection, it is necessary to manually allow all embedded URLs or allow the content server category.

ChatGPT works:

ChatGPT works