Firewall
Policy
FortiGate-3000 Administration Guide
01-28006-0010-20041105
205
3
Select the position for the policy.
4
Select OK.
To disable a policy
Disable a policy to temporarily prevent the firewall from selecting the policy. Disabling
a policy does not stop active communications sessions that have been allowed by the
policy.
1
Go to
Firewall > Policy
.
2
Clear the Enable check box beside the policy you want to disable.
To enable a policy
1
Go to
Firewall > Policy
.
2
Select Enable.
Policy CLI configuration
The
natip
keyword for the
firewall policy
command is used in encrypted
(VPN) policies. A natip address cannot be added using the web-based manager. You
can configure complete firewall policies using from the CLI. See the
FortiGate CLI
Reference Guide
for descriptions of all
firewall policy
keywords.
Command syntax pattern
config firewall policy
edit <id_integer>
set <keyword> <variable>
end
Note:
This command has more keywords than are listed in this Guide. See the
FortiGate CLI
Reference Guide
for a complete list of commands and keywords.
Содержание FortiGate 3000
Страница 18: ...Contents 18 01 28006 0010 20041105 Fortinet Inc ...
Страница 52: ...52 01 28006 0010 20041105 Fortinet Inc Changing the FortiGate firmware System status ...
Страница 78: ...78 01 28006 0010 20041105 Fortinet Inc FortiGate IPv6 support System network ...
Страница 86: ...86 01 28006 0010 20041105 Fortinet Inc Dynamic IP System DHCP ...
Страница 116: ...116 01 28006 0010 20041105 Fortinet Inc FortiManager System config ...
Страница 122: ...122 01 28006 0010 20041105 Fortinet Inc Access profiles System administration ...
Страница 252: ...252 01 28006 0010 20041105 Fortinet Inc CLI configuration Users and authentication ...
Страница 390: ...390 01 28006 0010 20041105 Fortinet Inc Glossary ...
Страница 398: ...398 01 28006 0010 20041105 Fortinet Inc Index ...