212
01-28011-0254-20051115
Fortinet Inc.
Policy
Firewall
To change the position of a policy in the list
1
Go to
Firewall > Policy
.
2
Select the Move To icon beside the policy you want to move.
3
Select the position for the policy.
4
Select OK.
To disable a policy
Disable a policy to temporarily prevent the firewall from selecting the policy. Disabling
a policy does not stop active communications sessions that have been allowed by the
policy.
1
Go to
Firewall > Policy
.
2
Clear the Enable check box beside the policy you want to disable.
To enable a policy
1
Go to
Firewall > Policy
.
2
Select Enable.
Policy CLI configuration
The
natip
keyword for the
firewall policy
command is used in encrypted
(VPN) policies. A natip address cannot be added using the web-based manager. You
can configure complete firewall policies using from the CLI. See the
FortiGate CLI
Reference Guide
for descriptions of all
firewall policy
keywords.
Command syntax pattern
config firewall policy
edit <id_integer>
set <keyword> <variable>
end
Note:
This command has more keywords than are listed in this Guide. See the
FortiGate CLI
Reference Guide
for a complete list of commands and keywords.
Summary of Contents for FortiGate 1000A
Page 80: ...80 01 28011 0254 20051115 Fortinet Inc FortiGate IPv6 support System Network ...
Page 88: ...88 01 28011 0254 20051115 Fortinet Inc Dynamic IP System DHCP ...
Page 122: ...122 01 28011 0254 20051115 Fortinet Inc FortiManager System Config ...
Page 248: ...248 01 28011 0254 20051115 Fortinet Inc Protection profile Firewall ...
Page 260: ...260 01 28011 0254 20051115 Fortinet Inc CLI configuration User ...
Page 380: ...380 01 28011 0254 20051115 Fortinet Inc CLI configuration Log Report ...
Page 392: ...392 01 28011 0254 20051115 Fortinet Inc Glossary ...