FGT_5-6 # sh user group
config user group
edit "DEV-Group"
set group-type fsso-service
set member "OFFICELAB/DEV"
next
end
FGT_5-6 # sh firewall policy
config firewall policy
edit 1
set name "Internet-Access"
set srcintf "port2"
set dstintf "port1"
set srcaddr "all"
set dstaddr "all"
set action accept
set schedule "always"
set service "ALL"
set utm-status enable
set logtraffic all
set fsso enable
set groups "DEV-Group"
set webfilter-profile "default"
set profile-protocol-options "default"
set ssl-ssh-profile "certificate-inspection"
set nat enable
next