I want to set all the category's in one group to Block, that isn't
difficult as long as all the firewalls are using the exact same web
policy name and all the other category settings are identical across all
the firewalls. BUT, even where the policie...
Policies or profiles, well both actually. I do have a standard that most
of our commercial clients get, then there is another standard our Gov
clients and that is broken down to basically 3 standards dept-A, dept-B,
and other. But even then there are...
On the Fortigate:Remote gateway address: 45.52.8.249 = this is public
address of the internet interface on the ASA.Local subnet:
10.128.131.96/27 = this is the subnet that the tunnel sees as local, if
you are doing any SNAT that happens BEFORE it get...
If an address object has an interface specified you won't be able to use
it anywhere that the interface is different, or you have other objects
in the group with a different interface, or no interface, defined. It's
easier to just not define an inter...