I want to restrict by allowing some hosts to be can access my fortigate using public IP and block the rest.
Searching in the community this can be done by creating local-in firewall policy but in my fortigate there is no local-in policy. How i can enable this?
in my fortigate there is no local-in policy. Should be enabled first? if yes how we can enable that option?
If you're running 7.4.x or older, you need to use CLI. The feature is always there and available unless you're using an ancient version. 7.6 started GUI support .
https://docs.fortinet.com/document/fortigate/7.6.0/new-features/308650/gui-support-for-local-in-poli...
Toshi
Local-in policies in GUI, as already mentioned, are available starting 7.6, and as only very adventurous and "feeling lucky" people run 7.6. today in production, all other versions have it in CLI only:
https://docs.fortinet.com/document/fortigate/7.0.7/administration-guide/363127/local-in-policies
Some examples, of configurations:
and https://yurisk.info/2020/06/07/fortigate-local-in-policy/
User | Count |
---|---|
2593 | |
1381 | |
800 | |
659 | |
455 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.