FortiGate
FortiGate Next Generation Firewall utilizes purpose-built security processors and threat intelligence security services from FortiGuard labs to deliver top-rated protection and high performance, including encrypted traffic.
skrymi
Staff
Staff
Article Id 329441
Description

This article describes how to create a shortcut to add policy from FortiView Source and FortiView Destination.

This is a new feature included in v7.6.0 which will provide the ability to create a Policy using an IP address or MAC address from the FortiView Source and Destination or Log Viewer

Scope FortiGate v7.6.0.
Solution

This feature simplifies the process of policy creation, making it more adaptable and feasible. 

Below are the steps to configure it  :

 

Under FortiView Sources,  'Right-Click on Sources -> Create Policy, create a Firewall Policy by IP address or Create NAC Policy.

It depends on what information is included in the FortiView entry.

 

The source address and destination address will be prefilled from the FortiView :

 

Pcture1.png

 

When selecting  'Create Firewall Policy by IP',  a new page will open for a 'New Policy' creation and some of the information will be auto-filled based on the data available in the logs and the rest of the information should be filled in by the user:

 

PIC22.png

 

If the policy is successfully created, a pop-up window 'Firewall Policy Created' should appear on the right side corner.

 

PICT.3.PNG

 

When selecting the 'Create NAC Policy' option, the MAC address of the device should be used instead.

 

PICT.4.PNG

 

It would be same procedure for FortiView Destination :

 

PIC5.png

 

Some preview information is included like incoming and outgoing interfaces, source, and destination. If the source or the destination objects are not there, a temporary object will be created.

 

PIC6.png

 

Once the Policy is created, a pop-up 'Firewall Policy is created' will be received on the corner as well.