Skip to main content
Muhammad_Umer
New Member
September 3, 2018
Question

Inspection Mode

  • September 3, 2018
  • 6 replies
  • 9058 views

Dear Guys...Need Help

My firewall is in Proxy mode inspection, i just want to edit some of my IPv4 Policies from proxy mode to flow mode. This can be possible through CLI only. Can you people guide me the exact syntax of commands to perform this task.

6 replies

Ashik_Sheik
New Member
September 3, 2018

To control your FortiGate's security profile inspection mode in FortiOS 5.6, you can select Flow-based or Proxy inspection modes from System > Settings. Having control over flow and proxy mode is helpful if you want to ensure that only flow inspection mode is used.

In most cases proxy mode is preferred because more security profile features are available along with more configuration options for these individual features. Some implementations, however, may require all security profile scanning to only use flow mode. In this case, you can set your FortiGate to flow mode knowing that proxy mode inspection will not be used.

CLI syntax

The following CLI command can be used to configure inspection and policy modes:

config system settings

set inspection-mode {proxy | flow}

set policy-mode {standard | ngfw}

end

 

Regds,

 

Ashik

Muhammad_Umer
New Member
September 3, 2018

I had also studied this whole article.

You did not get my point.

I said that i just want to change a single ipv4 policy...not whole of the inspection mode from proxy to flow base.

Example:- I have policies from 1-20, and i just want to change inspection mode of policy 10 from proxy to flow mode...how can i do so?

 

Thank you.

Thought Leadership Security Summit. Outpace New Threats with AI - enhanced defense. Tuesday, Septmeber 15, 8:30 AM - 2:30 PM PT. The Golf Club at Newcastle, WA.
Fortinet Flag the Hack. Wednesday, August 26, 9:00 AM - 5:00 PM ET, COSM, Atlanta, GA.
Virtual event | September 2026. SASE summit. The age of autonomous trust. Register here!