- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
"Any" option not available FG100E
hello there
I'm completely new to Fortigate, and have some very limited experience.
I configured a bunch of FG60E with very basic stuff, because they were meant to act like basic routers.
I used to configure an ANY ANY All sources All destinations Allways allow policy on those FG60E running 5.6.3
The thing is that I had to aply the same "router" config to a FG100E (again running 5.6.3), and there is no "any" interface option under IPV4 Policy.
Is that normal? or am I missing something.
thank you very much in advance
regards
Solved! Go to Solution.
- Labels:
-
5.6
Nominate a Forum Post for Knowledge Article Creation
Nominating a forum post submits a request to create a new Knowledge Article based on the forum post topic. Please ensure your nomination includes a solution within the reply.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Have you tried turning on "Multiple Interface Policies" visibility under System->Feature Visibility? It's only for GUI visibility so you should still be able to configure "any" interfaces in policies with CLI.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Have you tried turning on "Multiple Interface Policies" visibility under System->Feature Visibility? It's only for GUI visibility so you should still be able to configure "any" interfaces in policies with CLI.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
You should be glad that at the moment you can't see this option.
As a good advice: try to avoid the 'any' interface. Basically, you lose control over which interface traffic is flowing, a nightmare if you need to debug. One or two explicit policies won't kill anyone.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
@Toshi Esumi you nailed it mate
I obviously did not tried that :) this any-any option is what I need at this stage.
I'm in the middle of a mass deployment for a customer, and Fortimanager is planned on later stages to configure all stuff and appropiated policies.
Thank you very much for your help!!
Best Regards
DA