Skip to main content
vpoluri
Staff
Staff
September 5, 2017

Technical Tip: How to configure multiple interfaces on a firewall policy (GUI)

  • September 5, 2017
  • 0 replies
  • 22775 views

Description

 

By default on the firewall policy GUI, multiple interfaces can not be set. This article describes how to enable this feature.
 
Scope
 
FortiGate.


Solution

 
  1. Enable the Multiple Interface Policies under System -> Feature on GUI. 
  2. Once this option has been enabled in the GUI, enable it in the CLI.
 
config system settings
    set gui-multiple-interface-policy enable
end
 

Once enabled, refresh the firewall page. Then, go to the firewall policy and add multiple interfaces as required.

 

Untitled2_1.gif

 

Note:

On versions before 7.4, using multiple incoming/outgoing interfaces in the firewall policy will cause the 'Interface Pair View' to be greyed out as shown below. Starting from FortiOS 7.4, 'Interface Pair View' will not be greyed out.

 

policy view.PNG

 

Related articles: