Policy Options - Fortinet FortiGate FortiGate-500 Administration Manual

Fortinet fortigate fortigate-500: user guide
Hide thumbs Also See for FortiGate FortiGate-500:
Table of Contents

Advertisement

Policy

Policy options

196
Policy options are configurable when creating or editing a firewall policy.
Figure 81: Standard policy options
Policy has the following standard options:
Interface / Zone
Address Name
Schedule
Service
01-28006-0007-20041105
Source
Select the source interface name to which the policy will apply.
Destination
Select the destination interface name to which the policy will apply.
Interfaces and zones are listed and configured in System > Network.
See
"System network" on page
Source
Select a source address or address group to which the policy will
apply.
Destination
Select a destination address or address group to which the policy will
apply.
Before you can add this address to a policy, you must add it to the
destination interface, VLAN subinterface, or zone. For information
about adding an address, see
For NAT/Route mode policies where the address on the destination
network is hidden from the source network using NAT, the destination
can also be a virtual IP that maps the destination address of the
packet to a hidden destination address. See
Before you can use an address in a policy, you must add it to the
source interface. See
"Address" on page
Select a schedule that controls when the policy is available to be
matched with connections. See
Select a service or protocol to which the policy will apply.
You can select from a wide range of predefined services or add
custom services and service groups. See
47.
"Addresses" on page
x.
"Virtual IP" on page
202.
"Schedule" on page
214.
"Service" on page
Firewall
218.
206.
Fortinet Inc.

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents