Technical Tip: How to configure Per-IP traffic shaper on FortiGate
| Description | This article explains how to configure the Per-IP traffic shaper. |
| Scope | FortiGate v7.4 and v7.6. |
| Solution | To create a per-ip shaper via GUI on FortiOS 7.6.x version, the option to create a per-ip shaper is on the top-right, as per the screenshot below. The user can switch between Shared/Per-IP to configure as per requirements.
The per-IP traffic shaper is used to limit the bandwidth of each user/IP address.
Configure in CLI:
config firewall shaper per-ip-shaper
config firewall shaping-policy
Useful commands: Note: Make sure there is no device performing SNAT in between; in such cases, all traffic will be coming with a single NAT IP towards FortiGate. In such cases, the Per-IP shaper can not be used.
diagnose firewall iprope list diagnose sys session filter src <addr>
Related document: |



