Fortinet black logo

User Guide

Configuring an IP pool

Configuring an IP pool

To configure an IP pool:
  1. Go to Security > Firewall Objects.
  2. Select IP Pools in the firewall object type dropdown.
  3. Click Create > IP Pool or select an existing IP pool from the list and click Edit.
  4. In the form, enter the following information:

    Settings

    Guidelines

    Name

    Required. Enter a name for the IP pool.

    Comments

    Enter comments.

    Configure Default Value

    Enable or disable configuration of the default values.

    Type

    Select one of the following:

    • Overload (default)

    • CGN Resource Allocation

    • Fixed Port Range

    • One-to-One

    • Port Block Allocation

    Note: This option is only available when Configure Default Value is enabled.

    Mode

    Select the allocation mode from the following options:

    • Port Block Allocation

    • Overload (Port Block Allocation)

    • Single Port Allocation

    • Overload (Single Port Allocation)

    • Fixed Allocation

    Note: This option is only available when Type is CGN Resource Allocation.

    External IP Range

    Required. Enter the external IP address range.

    Note: This option is only available when Configure Default Value is enabled.

    Internal IP Range

    Required. Enter the internal IP address range.

    Note: This option is only available when Mode is Fixed Allocation.

    NAT64

    Enable or disable NAT64.

    • If disabled, enable or disable address resolution protocol (ARP) replies in Enable ARP Reply.

    • If enabled, enable or disable NAT64 routing in Add NAT64 Route.

    Note: This option is only available when Type is Overload.

    Start Port

    Enter the start port. Default is 5117.

    Note: This option is only available when Type is CGN Resource Allocation.

    End Port

    Enter the end port. Default is 65530.

    Note: This option is only available when Type is CGN Resource Allocation.

    Ports Per User

    Enable or disable a ports per user, then enter the number of ports to allocate.

    Note: This option is only available when Type is Fixed Port Range.

    Block Size

    Enter the allocation block size. Default is 128.

    Note: This option is only available when Type is CGN Resource Allocation or Port Block Allocation.

    Blocks Per User

    Enter the number of blocks allocated per user. Default is 8.

    Note: This option is only available when Type is Port Block Allocation.

    Enable ARP Reply

    Enable or disable address resolution protocol (ARP) replies.

    Note: This option is only available when Configure Default Value is enabled and NAT64 is disabled.

  5. Click Save.

Configuring an IP pool

To configure an IP pool:
  1. Go to Security > Firewall Objects.
  2. Select IP Pools in the firewall object type dropdown.
  3. Click Create > IP Pool or select an existing IP pool from the list and click Edit.
  4. In the form, enter the following information:

    Settings

    Guidelines

    Name

    Required. Enter a name for the IP pool.

    Comments

    Enter comments.

    Configure Default Value

    Enable or disable configuration of the default values.

    Type

    Select one of the following:

    • Overload (default)

    • CGN Resource Allocation

    • Fixed Port Range

    • One-to-One

    • Port Block Allocation

    Note: This option is only available when Configure Default Value is enabled.

    Mode

    Select the allocation mode from the following options:

    • Port Block Allocation

    • Overload (Port Block Allocation)

    • Single Port Allocation

    • Overload (Single Port Allocation)

    • Fixed Allocation

    Note: This option is only available when Type is CGN Resource Allocation.

    External IP Range

    Required. Enter the external IP address range.

    Note: This option is only available when Configure Default Value is enabled.

    Internal IP Range

    Required. Enter the internal IP address range.

    Note: This option is only available when Mode is Fixed Allocation.

    NAT64

    Enable or disable NAT64.

    • If disabled, enable or disable address resolution protocol (ARP) replies in Enable ARP Reply.

    • If enabled, enable or disable NAT64 routing in Add NAT64 Route.

    Note: This option is only available when Type is Overload.

    Start Port

    Enter the start port. Default is 5117.

    Note: This option is only available when Type is CGN Resource Allocation.

    End Port

    Enter the end port. Default is 65530.

    Note: This option is only available when Type is CGN Resource Allocation.

    Ports Per User

    Enable or disable a ports per user, then enter the number of ports to allocate.

    Note: This option is only available when Type is Fixed Port Range.

    Block Size

    Enter the allocation block size. Default is 128.

    Note: This option is only available when Type is CGN Resource Allocation or Port Block Allocation.

    Blocks Per User

    Enter the number of blocks allocated per user. Default is 8.

    Note: This option is only available when Type is Port Block Allocation.

    Enable ARP Reply

    Enable or disable address resolution protocol (ARP) replies.

    Note: This option is only available when Configure Default Value is enabled and NAT64 is disabled.

  5. Click Save.