Fortinet black logo

New Features

Administrative access to FortiManager controlled by IPv4/IPv6 local-in policy

Administrative access to FortiManager controlled by IPv4/IPv6 local-in policy

In FortiManager 7.2.0, administrative access to FortiManager can be controlled by a IPv4/IPv6 local-in policy. This feature can only be configured using the FortiManager CLI.

To create an IPv4 local-in policy to control administrator access to FortiManager:
  1. Access the FortiManager CLI.
  2. Enter the following command to create the IPv4 local-in policy:

    config system local-in-policy

    (local-in-policy)# edit <policy ID>

    new entry '<Policy ID>' added

  3. Configure additional settings for the local-in policy using the set command.
    For example:

set

action Action performed on traffic matching this policy.

dport Destination port number (0 for all).

dst Destination IP and mask.

intf Incoming interface name.

protocal Traffic protocal.

src Source IP and mask.

To create an IPv6 local-in policy to control administrator access to FortiManager:
  1. Access the FortiManager CLI.
  2. Enter the following command to create the IPv6 local-in policy:

    config system local-in-policy6

    (local-in-policy6)# edit <policy ID>

    new entry '<Policy ID>' added

  3. Configure additional settings for the local-in policy using the set command.
    For example:

set

action Action performed on traffic matching this policy.

dport Destination port number (0 for all).

dst Destination IP and mask.

intf Incoming interface name.

protocal Traffic protocal.

src Source IP and mask.

Administrative access to FortiManager controlled by IPv4/IPv6 local-in policy

In FortiManager 7.2.0, administrative access to FortiManager can be controlled by a IPv4/IPv6 local-in policy. This feature can only be configured using the FortiManager CLI.

To create an IPv4 local-in policy to control administrator access to FortiManager:
  1. Access the FortiManager CLI.
  2. Enter the following command to create the IPv4 local-in policy:

    config system local-in-policy

    (local-in-policy)# edit <policy ID>

    new entry '<Policy ID>' added

  3. Configure additional settings for the local-in policy using the set command.
    For example:

set

action Action performed on traffic matching this policy.

dport Destination port number (0 for all).

dst Destination IP and mask.

intf Incoming interface name.

protocal Traffic protocal.

src Source IP and mask.

To create an IPv6 local-in policy to control administrator access to FortiManager:
  1. Access the FortiManager CLI.
  2. Enter the following command to create the IPv6 local-in policy:

    config system local-in-policy6

    (local-in-policy6)# edit <policy ID>

    new entry '<Policy ID>' added

  3. Configure additional settings for the local-in policy using the set command.
    For example:

set

action Action performed on traffic matching this policy.

dport Destination port number (0 for all).

dst Destination IP and mask.

intf Incoming interface name.

protocal Traffic protocal.

src Source IP and mask.