Created on
08-27-2025
10:13 PM
Edited on
09-23-2025
01:22 AM
By
Jean-Philippe_P
Description | This article explains how to configure the Per-IP traffic shaper. |
Scope | FortiGate v7.4 and v7.6. |
Solution |
To create a per-ip shaper via GUI on FortiOS 7.6.x version, the option to create a per-ip shaper is on the top-right, as per the screenshot below. The user can switch between Shared/Per-IP to configure as per requirements.
The per-IP traffic shaper is used to limit the bandwidth of each user/IP address.
Configure in CLI:
config firewall shaper per-ip-shaper
config firewall shaping-policy
Useful commands: Note: Make sure there is no device performing SNAT in between; in such cases, all traffic will be coming with a single NAT IP towards FortiGate. In such cases, the Per-IP shaper can not be used.
diagnose firewall iprope list diagnose sys session filter src <addr>
Related document: |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.