Fortinet black logo

CLI Reference

config firewall address

config firewall address

Configure IPv4 addresses.

config firewall address
    Description: Configure IPv4 addresses.
    edit <name>
        set subnet {ipv4-classnet-any}
        set type [ipmask|iprange|...]
        set start-ip {ipv4-address-any}
        set end-ip {ipv4-address-any}
        set fqdn {string}
        set country {string}
        set wildcard-fqdn {string}
        set pattern-start {integer}
        set pattern-end {integer}
        set cache-ttl {integer}
        set wildcard {ipv4-classnet-any}
        set sdn [aci|aws|...]
        set tenant {string}
        set organization {string}
        set epg-name {string}
        set subnet-name {string}
        set sdn-tag {string}
        set policy-group {string}
        set comment {var-string}
        set visibility [enable|disable]
        set associated-interface {string}
        set color {integer}
        set filter {var-string}
        config list
            Description: IP address list.
            edit <ip>
            next
        end
        config tags
            Description: Names of object-tags applied to address.
            edit <name>
            next
        end
        set allow-routing [enable|disable]
    next
end

config firewall address

Parameter

Description

Type

Size

name

Address name.

string

Maximum length: 63

subnet

IP address and subnet mask of address.

ipv4-classnet-any

Not Specified

type

Type of address.

option

-

Option

Description

ipmask

Standard IPv4 address with subnet mask.

iprange

Range of IPv4 addresses between two specified addresses (inclusive).

fqdn

Fully Qualified Domain Name address.

fqdn-group

Fully Qualified Domain Name Group address.

geography

IP addresses from a specified country.

wildcard

Standard IPv4 using a wildcard subnet mask.

wildcard-fqdn

Fully Qualified Domain Name with wildcard characters.

start-ip

First IP address (inclusive) in the range for the address.

ipv4-address-any

Not Specified

end-ip

Final IP address (inclusive) in the range for the address.

ipv4-address-any

Not Specified

fqdn

Fully Qualified Domain Name address.

string

Maximum length: 255

country

IP addresses associated to a specific country.

string

Maximum length: 2

wildcard-fqdn

Fully Qualified Domain Name with wildcard characters.

string

Maximum length: 255

pattern-start

Starting number of pattern for fqdn-group.

integer

Minimum value: 0 Maximum value: 65535

pattern-end

Ending number of pattern for fqdn-group.

integer

Minimum value: 0 Maximum value: 65535

cache-ttl

Defines the minimal TTL of individual IP addresses in FQDN cache measured in seconds.

integer

Minimum value: 0 Maximum value: 86400

wildcard

IP address and wildcard netmask.

ipv4-classnet-any

Not Specified

sdn

SDN.

option

-

Option

Description

aci

Application Centric Infrastructure.

aws

Amazon Web Services.

azure

Microsoft Azure.

nsx

VMware NSX.

nuage

Nuage Virtualized Services Platform.

tenant

Tenant.

string

Maximum length: 35

organization

Organization domain name (Syntax: organization/domain).

string

Maximum length: 35

epg-name

Endpoint group name.

string

Maximum length: 15

subnet-name

Subnet name.

string

Maximum length: 15

sdn-tag

SDN Tag.

string

Maximum length: 15

policy-group

Policy group name.

string

Maximum length: 15

comment

Comment.

var-string

Maximum length: 255

visibility

Enable/disable address visibility in the GUI.

option

-

Option

Description

enable

Show in address4 selection.

disable

Hide from address4 selection.

associated-interface

Network interface associated with address.

string

Maximum length: 35

color

Color of icon on the GUI.

integer

Minimum value: 0 Maximum value: 32

filter

Match criteria filter.

var-string

Maximum length: 255

allow-routing

Enable/disable use of this address in the static route configuration.

option

-

Option

Description

enable

Enable use of this address in the static route configuration.

disable

Disable use of this address in the static route configuration.

config list

Parameter

Description

Type

Size

ip

IP.

string

Maximum length: 35

config tags

Parameter

Description

Type

Size

name

Tag name.

string

Maximum length: 64

config firewall address

Configure IPv4 addresses.

config firewall address
    Description: Configure IPv4 addresses.
    edit <name>
        set subnet {ipv4-classnet-any}
        set type [ipmask|iprange|...]
        set start-ip {ipv4-address-any}
        set end-ip {ipv4-address-any}
        set fqdn {string}
        set country {string}
        set wildcard-fqdn {string}
        set pattern-start {integer}
        set pattern-end {integer}
        set cache-ttl {integer}
        set wildcard {ipv4-classnet-any}
        set sdn [aci|aws|...]
        set tenant {string}
        set organization {string}
        set epg-name {string}
        set subnet-name {string}
        set sdn-tag {string}
        set policy-group {string}
        set comment {var-string}
        set visibility [enable|disable]
        set associated-interface {string}
        set color {integer}
        set filter {var-string}
        config list
            Description: IP address list.
            edit <ip>
            next
        end
        config tags
            Description: Names of object-tags applied to address.
            edit <name>
            next
        end
        set allow-routing [enable|disable]
    next
end

config firewall address

Parameter

Description

Type

Size

name

Address name.

string

Maximum length: 63

subnet

IP address and subnet mask of address.

ipv4-classnet-any

Not Specified

type

Type of address.

option

-

Option

Description

ipmask

Standard IPv4 address with subnet mask.

iprange

Range of IPv4 addresses between two specified addresses (inclusive).

fqdn

Fully Qualified Domain Name address.

fqdn-group

Fully Qualified Domain Name Group address.

geography

IP addresses from a specified country.

wildcard

Standard IPv4 using a wildcard subnet mask.

wildcard-fqdn

Fully Qualified Domain Name with wildcard characters.

start-ip

First IP address (inclusive) in the range for the address.

ipv4-address-any

Not Specified

end-ip

Final IP address (inclusive) in the range for the address.

ipv4-address-any

Not Specified

fqdn

Fully Qualified Domain Name address.

string

Maximum length: 255

country

IP addresses associated to a specific country.

string

Maximum length: 2

wildcard-fqdn

Fully Qualified Domain Name with wildcard characters.

string

Maximum length: 255

pattern-start

Starting number of pattern for fqdn-group.

integer

Minimum value: 0 Maximum value: 65535

pattern-end

Ending number of pattern for fqdn-group.

integer

Minimum value: 0 Maximum value: 65535

cache-ttl

Defines the minimal TTL of individual IP addresses in FQDN cache measured in seconds.

integer

Minimum value: 0 Maximum value: 86400

wildcard

IP address and wildcard netmask.

ipv4-classnet-any

Not Specified

sdn

SDN.

option

-

Option

Description

aci

Application Centric Infrastructure.

aws

Amazon Web Services.

azure

Microsoft Azure.

nsx

VMware NSX.

nuage

Nuage Virtualized Services Platform.

tenant

Tenant.

string

Maximum length: 35

organization

Organization domain name (Syntax: organization/domain).

string

Maximum length: 35

epg-name

Endpoint group name.

string

Maximum length: 15

subnet-name

Subnet name.

string

Maximum length: 15

sdn-tag

SDN Tag.

string

Maximum length: 15

policy-group

Policy group name.

string

Maximum length: 15

comment

Comment.

var-string

Maximum length: 255

visibility

Enable/disable address visibility in the GUI.

option

-

Option

Description

enable

Show in address4 selection.

disable

Hide from address4 selection.

associated-interface

Network interface associated with address.

string

Maximum length: 35

color

Color of icon on the GUI.

integer

Minimum value: 0 Maximum value: 32

filter

Match criteria filter.

var-string

Maximum length: 255

allow-routing

Enable/disable use of this address in the static route configuration.

option

-

Option

Description

enable

Enable use of this address in the static route configuration.

disable

Disable use of this address in the static route configuration.

config list

Parameter

Description

Type

Size

ip

IP.

string

Maximum length: 35

config tags

Parameter

Description

Type

Size

name

Tag name.

string

Maximum length: 64