Firewall
Policy
FortiGate-3000 Administration Guide
01-28006-0010-20041105
205
3
Select the position for the policy.
4
Select OK.
To disable a policy
Disable a policy to temporarily prevent the firewall from selecting the policy. Disabling
a policy does not stop active communications sessions that have been allowed by the
policy.
1
Go to
Firewall > Policy
.
2
Clear the Enable check box beside the policy you want to disable.
To enable a policy
1
Go to
Firewall > Policy
.
2
Select Enable.
Policy CLI configuration
The
natip
keyword for the
firewall policy
command is used in encrypted
(VPN) policies. A natip address cannot be added using the web-based manager. You
can configure complete firewall policies using from the CLI. See the
FortiGate CLI
Reference Guide
for descriptions of all
firewall policy
keywords.
Command syntax pattern
config firewall policy
edit <id_integer>
set <keyword> <variable>
end
Note:
This command has more keywords than are listed in this Guide. See the
FortiGate CLI
Reference Guide
for a complete list of commands and keywords.
Summary of Contents for FortiGate 3000
Page 18: ...Contents 18 01 28006 0010 20041105 Fortinet Inc ...
Page 52: ...52 01 28006 0010 20041105 Fortinet Inc Changing the FortiGate firmware System status ...
Page 78: ...78 01 28006 0010 20041105 Fortinet Inc FortiGate IPv6 support System network ...
Page 86: ...86 01 28006 0010 20041105 Fortinet Inc Dynamic IP System DHCP ...
Page 116: ...116 01 28006 0010 20041105 Fortinet Inc FortiManager System config ...
Page 122: ...122 01 28006 0010 20041105 Fortinet Inc Access profiles System administration ...
Page 252: ...252 01 28006 0010 20041105 Fortinet Inc CLI configuration Users and authentication ...
Page 390: ...390 01 28006 0010 20041105 Fortinet Inc Glossary ...
Page 398: ...398 01 28006 0010 20041105 Fortinet Inc Index ...