Fortinet Document Library

Version:


Table of Contents

CLI Reference

6.2.1
Copy Link

Configure IP to MAC binding settings.

  config firewall ipmacbinding setting
      Description: Configure IP to MAC binding settings.
      set bindthroughfw [enable|disable]
      set bindtofw [enable|disable]
      set undefinedhost [allow|block]
  end

config firewall ipmacbinding setting

Parameter Name Description Type Size
bindthroughfw Enable/disable use of IP/MAC binding to filter packets that would normally go through the firewall.
enable: Enable IP/MAC binding for packets that would normally go through the firewall.
disable: Disable IP/MAC binding for packets that would normally go through the firewall.
option -
bindtofw Enable/disable use of IP/MAC binding to filter packets that would normally go to the firewall.
enable: Enable IP/MAC binding for packets that would normally go to the firewall.
disable: Disable IP/MAC binding for packets that would normally go to the firewall.
option -
undefinedhost Select action to take on packets with IP/MAC addresses not in the binding list (default = block).
allow: Allow packets from MAC addresses not in the IP/MAC list.
block: Block packets from MAC addresses not in the IP/MAC list.
option -

Configure IP to MAC binding settings.

  config firewall ipmacbinding setting
      Description: Configure IP to MAC binding settings.
      set bindthroughfw [enable|disable]
      set bindtofw [enable|disable]
      set undefinedhost [allow|block]
  end

config firewall ipmacbinding setting

Parameter Name Description Type Size
bindthroughfw Enable/disable use of IP/MAC binding to filter packets that would normally go through the firewall.
enable: Enable IP/MAC binding for packets that would normally go through the firewall.
disable: Disable IP/MAC binding for packets that would normally go through the firewall.
option -
bindtofw Enable/disable use of IP/MAC binding to filter packets that would normally go to the firewall.
enable: Enable IP/MAC binding for packets that would normally go to the firewall.
disable: Disable IP/MAC binding for packets that would normally go to the firewall.
option -
undefinedhost Select action to take on packets with IP/MAC addresses not in the binding list (default = block).
allow: Allow packets from MAC addresses not in the IP/MAC list.
block: Block packets from MAC addresses not in the IP/MAC list.
option -