Firewall
IP pool
FortiGate-500A Administration Guide
01-28006-0100-20041105
223
IP pool
An IP pool (also called a dynamic IP pool) is a range of IP addresses added to a
firewall interface. You can enable Dynamic IP Pool in a firewall policy to translate the
source address of outgoing packets to an address randomly selected from the IP pool.
An IP pool list appears when the policy destination interface is the same as the IP pool
interface.
You can add an IP pool if you want to add NAT mode policies that translate source
addresses to addresses randomly selected from the IP pool rather than being limited
to the IP address of the destination interface.
If you add an IP pool to port1, you can select Dynamic IP pool for policies with the
port1 interface as the destination. For example, you can add IP pools to port2
->
port1
and port3
->
port1 policies.
You can add multiple IP pools to any interface and select the IP pool to use when
configuring a firewall policy.
You can enter an IP address range using the following formats.
• x.x.x.x-x.x.x.x, for example 192.168.110.100-192.168.110.120
• x.x.x.[x-x], for example 192.168.110.[100-120]
This section describes:
•
IP pool list
•
IP pool options
•
Configuring IP pools
•
IP Pools for firewall policies that use fixed ports
•
IP pools and dynamic NAT
IP pool list
Figure 102:Sample IP pool list
The IP pool list has the following icons and features.
Create New
Select Create New to add an IP pool.
Start IP
The start IP defines the start of an address range.
End IP
The end IP defines the end of an address range.
The Delete and Edit/View icons.
Summary of Contents for FortiGate FortiGate-500A
Page 24: ...24 01 28006 0100 20041105 Fortinet Inc Customer service and technical support Introduction...
Page 46: ...46 01 28006 0100 20041105 Fortinet Inc Changing the FortiGate firmware System status...
Page 72: ...72 01 28006 0100 20041105 Fortinet Inc FortiGate IPv6 support System network...
Page 80: ...80 01 28006 0100 20041105 Fortinet Inc Dynamic IP System DHCP...
Page 110: ...110 01 28006 0100 20041105 Fortinet Inc FortiManager System config...
Page 116: ...116 01 28006 0100 20041105 Fortinet Inc Access profiles System administration...
Page 134: ...134 01 28006 0100 20041105 Fortinet Inc Shutdown System maintenance...
Page 248: ...248 01 28006 0100 20041105 Fortinet Inc CLI configuration Users and authentication...
Page 324: ...324 01 28006 0100 20041105 Fortinet Inc CLI configuration Antivirus...
Page 386: ...386 01 28006 0100 20041105 Fortinet Inc Glossary...
Page 394: ...394 01 28006 0100 20041105 Fortinet Inc Index...