Fortinet Document Library

Version:

Version:

Version:

Version:

Version:

Version:

Version:

Version:

Version:


Table of Contents

CLI Reference

config firewall addrgrp

Configure IPv4 address groups.

config firewall addrgrp

Description: Configure IPv4 address groups.

edit <name>

set type [default|folder]

set uuid {uuid}

set member <name1>, <name2>, ...

set comment {var-string}

set exclude [enable|disable]

set exclude-member <name1>, <name2>, ...

set color {integer}

config tagging

Description: Config object tagging.

edit <name>

set category {string}

set tags <name1>, <name2>, ...

next

end

set allow-routing [enable|disable]

set fabric-object [enable|disable]

next

end

config firewall addrgrp

Parameter

Description

Type

Size

Default

type

Address group type.

option

-

default

 

Option

Description

default

Default address group type (address may belong to multiple groups).

folder

Address folder group (members may not belong to any other group).

uuid

Universally Unique Identifier (UUID; automatically assigned but can be manually reset).

uuid

Not Specified

00000000-0000-0000-0000-000000000000

member <name>

Address objects contained within the group.

Address name.

string

Maximum length: 79

comment

Comment.

var-string

Maximum length: 255

exclude

Enable/disable address exclusion.

option

-

disable

 

Option

Description

enable

Enable address exclusion.

disable

Disable address exclusion.

exclude-member <name>

Address exclusion member.

Address name.

string

Maximum length: 79

color

Color of icon on the GUI.

integer

Minimum value: 0 Maximum value: 32

0

allow-routing

Enable/disable use of this group in the static route configuration.

option

-

disable

 

Option

Description

enable

Enable use of this group in the static route configuration.

disable

Disable use of this group in the static route configuration.

fabric-object

Security Fabric global object setting.

option

-

disable

 

Option

Description

enable

Object is set as a security fabric-wide global object.

disable

Object is local to this security fabric member.

config tagging

Parameter

Description

Type

Size

Default

category

Tag category.

string

Maximum length: 63

tags <name>

Tags.

Tag name.

string

Maximum length: 79

config firewall addrgrp

Configure IPv4 address groups.

config firewall addrgrp

Description: Configure IPv4 address groups.

edit <name>

set type [default|folder]

set uuid {uuid}

set member <name1>, <name2>, ...

set comment {var-string}

set exclude [enable|disable]

set exclude-member <name1>, <name2>, ...

set color {integer}

config tagging

Description: Config object tagging.

edit <name>

set category {string}

set tags <name1>, <name2>, ...

next

end

set allow-routing [enable|disable]

set fabric-object [enable|disable]

next

end

config firewall addrgrp

Parameter

Description

Type

Size

Default

type

Address group type.

option

-

default

 

Option

Description

default

Default address group type (address may belong to multiple groups).

folder

Address folder group (members may not belong to any other group).

uuid

Universally Unique Identifier (UUID; automatically assigned but can be manually reset).

uuid

Not Specified

00000000-0000-0000-0000-000000000000

member <name>

Address objects contained within the group.

Address name.

string

Maximum length: 79

comment

Comment.

var-string

Maximum length: 255

exclude

Enable/disable address exclusion.

option

-

disable

 

Option

Description

enable

Enable address exclusion.

disable

Disable address exclusion.

exclude-member <name>

Address exclusion member.

Address name.

string

Maximum length: 79

color

Color of icon on the GUI.

integer

Minimum value: 0 Maximum value: 32

0

allow-routing

Enable/disable use of this group in the static route configuration.

option

-

disable

 

Option

Description

enable

Enable use of this group in the static route configuration.

disable

Disable use of this group in the static route configuration.

fabric-object

Security Fabric global object setting.

option

-

disable

 

Option

Description

enable

Object is set as a security fabric-wide global object.

disable

Object is local to this security fabric member.

config tagging

Parameter

Description

Type

Size

Default

category

Tag category.

string

Maximum length: 63

tags <name>

Tags.

Tag name.

string

Maximum length: 79