FortiGate
FortiGate Next Generation Firewall utilizes purpose-built security processors and threat intelligence security services from FortiGuard labs to deliver top-rated protection and high performance, including encrypted traffic.
jintrah_FTNT
Staff
Staff
Article Id 194697

Description

 
This article provides a solution to enable the creation of firewall policies with an 'any' interface. This may be useful when the requirement is to choose multiple interfaces or 'any' interface as a source and/or destination interface when a firewall policy is created.   


Solution

 
To enable the 'Multiple Interface Policies', go to System -> Feature Visibility and enable 'Multiple Interface Policies'.

 

mip.PNG

 

After enabling 'Multiple Interface Policies', it will be possible to create firewall policies with 'any' or multiple interfaces as the Source/Destination Interface. 

 

MIP1.PNG

 

Note: Before FortiOS 7.4, using multiple incoming/outgoing interfaces in the firewall policy will cause the 'Interface Pair View' to be greyed out as shown below. The 'Interface Pair View' will not be greyed out on FortiOS 7.4 and above.

 

policy view.PNG

 

Related articles: