FortiGate
FortiGate Next Generation Firewall utilizes purpose-built security processors and threat intelligence security services from FortiGuard labs to deliver top-rated protection and high performance, including encrypted traffic.
Kush_Patel
Staff
Staff
Article Id 240201
Description

This article describes how to change the interface in any address object.

Scope Fortigate 7.0 and above.
Solution

On Firmware 7.2:

 

Once an address object is created and referred to/used in the configuration, the interface option will be grayed out.

 

Kush_Patel_0-1671458405087.png

 

Remove all the references of the 'address object' to change the 'interface' associated with it.

 

Kush_Patel_1-1671458427328.png

 

On Firmware 7.0:

 

The interface option is not grayed out but still it is not possible to change it if the address object is being used.

 

Kush_Patel_2-1671458448265.png

 

If an address object is being used in policy that has port1 as the source interface.

 

Kush_Patel_3-1671458463479.png

 

If trying to change it to port1, it will give the following error:

 

Kush_Patel_4-1671458478732.png

 

If trying to change it to any other interface it will give the following error:

 

Kush_Patel_5-1671458511138.png

 

Note: If the address object is associated with any specific port/interface (except for any) and it is being used then it is still possible to change the interface to only ANY interface.