Hi,
We have recently upgraded to a Fortinet 500D Firewall. Anyone have any idea how you can move security policies within their particular sections? Basically want to group Ipsec policies, deny policies ect together in their particular sections. In our previous Fortinet you had the option to move polices within the hierarchy but this option doesn't seem to exist anymore and is not one of the unticked options on the tools.
Thanks in Advance.
Nominating a forum post submits a request to create a new Knowledge Article based on the forum post topic. Please ensure your nomination includes a solution within the reply.
Kilgore wrote:In Policy & Objects > Policy > IPv4 you can still move the order around. You just have to click-Drag and Drop the Policy at the Seq.# FieldIn our previous Fortinet you had the option to move polices within the hierarchy but this option doesn't seem to exist anymore and is not one of the unticked options on the tools.
If you do not have a Seq.# column, right click the bar at the top and select Reset All Columns OR make sure Seq.# is checked and select Apply
Please keep in mind that this is not supposed to be a "grouping" tool but determins in which order the security policies are applied to traffic
Agreed, it should not be grouping but policy matching based on your traffic flow. Also you can move policy-id very easily from the cmd line;
e.g
show firewall policy
( to get the ordering )
config firewall policy
move xxx before yyy
or
move xxx after yyy
end
PCNSE
NSE
StrongSwan
That did the trick . Many thanks people
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1688 | |
1087 | |
752 | |
446 | |
227 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.