Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
piaakit1210
New Contributor III

Policy-in-policy question

Hi All, 

 

           I have a question, if i create below local in policy, will it restrict our user to connect VPN from remote network or any internet impact ? this policy is only prevent internet traffic from being able to get to your management services, correct ? Thanks 

 

> config firewall local-in-policy
> edit 100
> set intf “wan1”
> set srcaddr “all”
> set dstaddr “all”
> set service “ALL”
> set schedule “always”
> set action deny
> next
> end

 

Piaakit  

10 REPLIES 10
Toshi_Esumi

Why is "set match-vip enable" not available on local-in policies while available on regular policies? Is it too difficult to implement or already has a plan in the near future? I would assume the DEV side has been realizing if it's needed in policies, it's also needed in local-in policies.

Toshi

Announcements

Select Forum Responses to become Knowledge Articles!

Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.

Labels
Top Kudoed Authors