Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
HeretoLearn23
New Contributor II

Apply a CLI configuration using a network access policy

Version: 7.4.0.0427

OS: CentOS

I have created a CLI Configuration and would like to apply it to a network access policy, but I am not seeing any option in the Network Access view to actually apply the cli config to a specific policy. 

 

I was able to apply the CLI within Model Configuration on a specific logical network from that view, but is there not a way to just apply it to a Network Access Policy? 

 

I have reviewed the below documentation but not actually reading where/how to apply it to a policy. 

https://docs.fortinet.com/document/fortinac-f/7.4.0/administration-guide/926300/network-access

 

https://docs.fortinet.com/document/fortinac-f/7.4.0/administration-guide/856626/apply-a-cli-configur...

 

Any help on this will be greatly appreciated. 

Thanks

3 REPLIES 3
ebilcari
Staff
Staff

Applying CLI configuration directly from the NAP Configurations is considered a legacy method and it's disabled by default. Applying the CLI from Model configurations is the suggested method.

Is there a specific scenario that you still need to use this legacy method?

- Emirjon
If you have found a solution, please like and accept it to make it easily accessible for others.
ebilcari

If needed it can still be enabled from CLI as shown in this article:

globaloptiontool -name policy.access.allowDirectConfig -set true

- Emirjon
If you have found a solution, please like and accept it to make it easily accessible for others.
HeretoLearn23
New Contributor II

I have applied it via model configuration. Thank you for the input.  

Announcements

Select Forum Responses to become Knowledge Articles!

Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.

Labels
Top Kudoed Authors