- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Edit multiple policies at once with CLI
Hi
Was wondering if FGT has some method such as cisco's "interface range 1-5" where i can select a range of policy ids and apply similar AV, WF or cert inspection profiles to them at once with a single cmd.
Also sucks that you have add all members again when you want to add one new member to an address group.
Thanks.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
You can easily bulk-edit policies using the config file - get it, edit it, restore it, reboot. Of course it should be manually tedious, otherwise the effort is not worth it.
It's the only way to change an interface's name BTW.
Second, in the v5.2 FortiOS you have the option to "append" values to a list, in the CLI. Check the "What's New" for v5.2.3 for instance.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
It would be a nice feature: "edit [RegEx]" to apply/edit/append to a range of objects
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
FortiManager and values abstraction into object model is what I think is exactly for that.
El Cheap-o way is config backup -> any reasonable text editor, even cheap like Atom / Notepad++ -> Ctrl-H for Find and replace (Notepad++ -> Search mode = Regex).
Tomas Stribrny - NASDAQ:FTNT - Fortinet Inc. - TAC Staff Engineer
AAA, MFA, VoIP and other Fortinet stuff
