FortiGate
FortiGate Next Generation Firewall utilizes purpose-built security processors and threat intelligence security services from FortiGuard labs to deliver top-rated protection and high performance, including encrypted traffic.
HarshChavda
Staff
Staff
Article Id 332394
Description This article provides a step-by-step guide on how to create a Firewall Policy using a VIP directly from the GUI.
Scope FortiGate.
Solution

This guide shows an easy way to create a firewall policy using an existing VIP in the FortiGate GUI. This approach is fast and ensures that policy settings match the VIP configuration perfectly. 

 

Under Policy & Objects -> select Virtual IPs. 

To create a Firewall Policy using a specific VIP, select the VIP to use and Right-click on that VIP. From the drop-down menu that appears, select Create firewall policy using this object as shown in Image below:

 

VIP KB copy.PNG

 

Selecting this will open a new firewall policy page. There, start configuring the Firewall Policy, with the VIP already set as the destination address and NAT already enabled as shown in the following image:

 

VIP KB2.PNG

 

It is then possible to configure the firewall policy accordingly. Following these steps will ensure the efficient creation of a Firewall Policy directly from a VIP within the FortiGate GUI. This method not only speeds up the process, but also reduces the chance of misconfiguration.