FortiGate
FortiGate Next Generation Firewall utilizes purpose-built security processors and threat intelligence security services from FortiGuard labs to deliver top-rated protection and high performance, including encrypted traffic.
salmas
Staff
Staff
Article Id 328602
Description This article describes how to add a local in policy for external threat feed from GUI.
Scope FortiGate v7.6.x
Solution

From the v7.6.0, it is now possible to add local-in policies from GUI as well. Before this, local-in policies can only be configured via CLI.

 

To configure external threat feeds, check the article below: Technical Tip: External threat list (threat feed) blocked via the firewall IPv4 policy

 

In this example, it is configured an external IP threat feed named 'IP_Feed'.

 

salmas_0-1722179346880.png

 

Ensure to enable 'Local-In Policy' under System -> Feature Visibility to configure local-in policies from GUI.

 

salmas_1-1722179402622.png

 

 Go to Policy & Objects -> Local-In Policy and select Create new.

 

Create_New.png
Note:

After v7.6.1+, local-in policies can not be configured with individual SD-WAN member interfaces but must be configured with the SD-WAN zone.

 

Refer to this article for more information: Troubleshooting Tip: Local-in, Central-SNAT, DoS policies etc are missing after upgrade to FortiOS v...

Related document:

Local-in policy