Fortinet black logo

CLI Reference

config system external-resource

config system external-resource

Configure external resource.

config system external-resource
    Description: Configure external resource.
    edit <name>
        set category {integer}
        set comments {var-string}
        set interface {string}
        set interface-select-method [auto|sdwan|...]
        set password {password}
        set refresh-rate {integer}
        set resource {string}
        set server-identity-check [none|basic|...]
        set source-ip {ipv4-address}
        set status [enable|disable]
        set type [category|address|...]
        set update-method [feed|push]
        set user-agent {var-string}
        set username {string}
        set uuid {uuid}
    next
end

config system external-resource

Parameter

Description

Type

Size

Default

category

User resource category.

integer

Minimum value: 192 Maximum value: 221

0

comments

Comment.

var-string

Maximum length: 255

interface

Specify outgoing interface to reach server.

string

Maximum length: 15

interface-select-method

Specify how to select outgoing interface to reach server.

option

-

auto

Option

Description

auto

Set outgoing interface automatically.

sdwan

Set outgoing interface by SD-WAN or policy routing rules.

specify

Set outgoing interface manually.

name

External resource name.

string

Maximum length: 35

password

HTTP basic authentication password.

password

Not Specified

refresh-rate

Time interval to refresh external resource.

integer

Minimum value: 1 Maximum value: 43200

5

resource

URI of external resource.

string

Maximum length: 511

server-identity-check

Certificate verification option.

option

-

none

Option

Description

none

No certificate verification.

basic

Check server certifcate only.

full

Check server certificate and verify the domain matches in the server certificate.

source-ip

Source IPv4 address used to communicate with server.

ipv4-address

Not Specified

0.0.0.0

status

Enable/disable user resource.

option

-

enable

Option

Description

enable

Enable user resource.

disable

Disable user resource.

type

User resource type.

option

-

category

Option

Description

category

FortiGuard category.

address

Firewall IP address.

domain

Domain Name.

malware

Malware hash.

update-method

External resource update method.

option

-

feed

Option

Description

feed

FortiGate unit will pull update from the external resource.

push

External Resource update is pushed to the FortiGate unit through the FortiGate unit's RESTAPI/CLI.

user-agent

HTTP User-Agent header.

var-string

Maximum length: 255

username

HTTP basic authentication user name.

string

Maximum length: 64

uuid

Universally Unique Identifier (UUID; automatically assigned but can be manually reset).

uuid

Not Specified

00000000-0000-0000-0000-000000000000

config system external-resource

Configure external resource.

config system external-resource
    Description: Configure external resource.
    edit <name>
        set category {integer}
        set comments {var-string}
        set interface {string}
        set interface-select-method [auto|sdwan|...]
        set password {password}
        set refresh-rate {integer}
        set resource {string}
        set server-identity-check [none|basic|...]
        set source-ip {ipv4-address}
        set status [enable|disable]
        set type [category|address|...]
        set update-method [feed|push]
        set user-agent {var-string}
        set username {string}
        set uuid {uuid}
    next
end

config system external-resource

Parameter

Description

Type

Size

Default

category

User resource category.

integer

Minimum value: 192 Maximum value: 221

0

comments

Comment.

var-string

Maximum length: 255

interface

Specify outgoing interface to reach server.

string

Maximum length: 15

interface-select-method

Specify how to select outgoing interface to reach server.

option

-

auto

Option

Description

auto

Set outgoing interface automatically.

sdwan

Set outgoing interface by SD-WAN or policy routing rules.

specify

Set outgoing interface manually.

name

External resource name.

string

Maximum length: 35

password

HTTP basic authentication password.

password

Not Specified

refresh-rate

Time interval to refresh external resource.

integer

Minimum value: 1 Maximum value: 43200

5

resource

URI of external resource.

string

Maximum length: 511

server-identity-check

Certificate verification option.

option

-

none

Option

Description

none

No certificate verification.

basic

Check server certifcate only.

full

Check server certificate and verify the domain matches in the server certificate.

source-ip

Source IPv4 address used to communicate with server.

ipv4-address

Not Specified

0.0.0.0

status

Enable/disable user resource.

option

-

enable

Option

Description

enable

Enable user resource.

disable

Disable user resource.

type

User resource type.

option

-

category

Option

Description

category

FortiGuard category.

address

Firewall IP address.

domain

Domain Name.

malware

Malware hash.

update-method

External resource update method.

option

-

feed

Option

Description

feed

FortiGate unit will pull update from the external resource.

push

External Resource update is pushed to the FortiGate unit through the FortiGate unit's RESTAPI/CLI.

user-agent

HTTP User-Agent header.

var-string

Maximum length: 255

username

HTTP basic authentication user name.

string

Maximum length: 64

uuid

Universally Unique Identifier (UUID; automatically assigned but can be manually reset).

uuid

Not Specified

00000000-0000-0000-0000-000000000000