Hello everyone,
I need to enable application control profile on all my policies, how can i do this in one step?
Solved! Go to Solution.
There's no way to enable it in one step. To make it easy you can just drag/drop the application from one policy to all the others.
Without touching all of the policies you want to affect individually, my only suggestion would be to back up the config, add the profile to the policies that need it and then restore the config. The issue here is that you'd end up with down time.
How many policies are you wanting to edit? And which firmware are you using?
I would have to have a massive amount of policies to warrant an outage for something like this that can be changed from the main policy GUI. It may take a few minutes but better than an outage.
There's no way to enable it in one step. To make it easy you can just drag/drop the application from one policy to all the others.
Without touching all of the policies you want to affect individually, my only suggestion would be to back up the config, add the profile to the policies that need it and then restore the config. The issue here is that you'd end up with down time.
How many policies are you wanting to edit? And which firmware are you using?
I would have to have a massive amount of policies to warrant an outage for something like this that can be changed from the main policy GUI. It may take a few minutes but better than an outage.
I have many policies, it may be up to 7500 policy
Firmware : 5.2.
but i will enable application control on all policies in my company on all fortigate firewalls, some of this firewalls include firmware version 5.4, others include 5.2 and number of policies on all firewalls may be up to 15000 policy
so i need a fast action to do this without any down time and more fast
Hey Mustafa,
That certainly is a lot of policies. How many Fortigates do you have to deploy and is it the same security profile that needs to be created and deployed? Is there an existing application security profile that is already being used and just needs to be modified?
So this is where it may be good to look at FortiManager to manage your fleet of Fortigates as my understanding is that you should be able to deploy something like this through central management.
Another thought here would be to have this scripted to both create or modify the security profile and then to add it to the appropriate policies. This is not my forte but it is something that others can comment on.
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1841 | |
1128 | |
769 | |
447 | |
257 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.