Hi to all,
it should be so usefull if instead of source-ip option we can use source-intf. For big installation with many branch the source-ip is always different and is not scriptable, but it is assigned always to the same interface. For example:
config log fortianalyzer setting
set source-ip port1
end
config system dns
set source-ip wan1
end
config system ntp
set source-ip loopback
end
The source-ip option is very usefull when you have VPN and the fortigate do not choose the correct source-ip to start the connections.
NSE 7
Nominating a forum post submits a request to create a new Knowledge Article based on the forum post topic. Please ensure your nomination includes a solution within the reply.
I agree being able to specify an interface instead of an ip would be very useful and more flexible. One of the few things I miss from working with ZyXEL gear.
I would contact your SE or sales rep to pass this on as a feature request.
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1517 | |
1013 | |
749 | |
443 | |
209 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.