Hyperscale policies
In FortiManager, you can create hyperscale policies by configuring the policy package's policy offload level to Full Offload. For more information on hyperscale firewalls, see the FortiGate Administration Guide.
You must enable the visibility of this feature in Policy & Objects before it can be configured. To toggle feature visibility, go to Policy & Objects > Tools > Feature Visibility, and add or remove a checkmark for the corresponding feature. |
To use hyperscale policies in a policy package:
- Go to Policy & Objects in supported a ADOM version on FortiManager.
- Create a new policy package, or right click an existing policy package from the tree menu, and select Edit.
- Under the Policy Offload Level option, select Full Offload, and click OK.
Hyperscale policy types enabled in Feature Visibility are now available in the policy package.
To configure a hyperscale policy:
- Ensure you are in the correct ADOM.
- Go to Policy & Objects > Policy Packages.
- In the tree menu for the policy package, click the selected hyperscale policy.
- Click Create New. The Create New Policy pane opens.
- Configure the hyperscale policy settings:
Name Enter a name for the policy. Incoming Interface Select the incoming interface. Outgoing Interface Select the outgoing interface. Source Address
Select the source address.
Destination Address
Select the destination address.
Service
Select services and service groups.
Action
Select an action for the policy to take: ACCEPT or DENY.
Comments
Optionally, enter comments about the policy.
Advanced Options
Expand to view advanced options for the policy.
When configuring a Hyperscale Policy, there are fields to define IPv4 and IPv6 source addresses and destination addresses.
- Click OK to create the policy. By default, policies will be added to the bottom of the list.