Virtual IP Groups
Firewall Virtual IP
FortiGate Version 4.0 Administration Guide
380
01-400-89802-20090424
10
Enter the
Map to Port
number to be added to packets when they are forwarded.
11
Select
OK
.
Virtual IP Groups
You can organize multiple virtual IPs into a virtual IP group to simplify your firewall policy
list. For example, instead of having five identical policies for five different but related virtual
IPs located on the same network interface, you might combine the five virtual IPs into a
single virtual IP group, which is used by a single firewall policy.
Firewall policies using VIP Groups are matched by comparing both the member VIP IP
address(es) and port number(s).
Viewing the VIP group list
To view the virtual IP group list, go to
Firewall > Virtual IP > VIP Group
.
Figure 233: VIP Group list
Configuring VIP groups
To add a VIP group, go to
Firewall > Virtual IP > VIP Group
and select
Create New
. To edit
a VIP group, go to
Firewall > Virtual IP > VIP Group
and select the
Edit
icon for the VIP
group to edit. Enter the information as described below, and select
OK
.
Create New
Select to add a new VIP group. See
“Configuring VIP groups” on page 380
Group Name
The name of the virtual IP group.
Members
Lists the group members.
Interface
Displays the interface that the VIP group belongs to.
Delete icon
Remove the VIP group from the list. The Delete icon only appears if the VIP
group is not being used in a firewall policy.
Edit icon
Edit the VIP group information, including the group name and membership.
Delete
Edit
Summary of Contents for Gate 60D
Page 705: ...www fortinet com...
Page 706: ...www fortinet com...