Fortinet black logo

CLI Reference

config vpn ssl web user-group-bookmark

config vpn ssl web user-group-bookmark

Note

This command is available for model(s): FortiGate 1000D, FortiGate 1000F, FortiGate 1001F, FortiGate 100F, FortiGate 101F, FortiGate 1100E, FortiGate 1101E, FortiGate 1800F, FortiGate 1801F, FortiGate 2000E, FortiGate 200E, FortiGate 200F, FortiGate 201E, FortiGate 201F, FortiGate 2200E, FortiGate 2201E, FortiGate 2500E, FortiGate 2600F, FortiGate 2601F, FortiGate 3000D, FortiGate 3000F, FortiGate 3001F, FortiGate 300E, FortiGate 301E, FortiGate 3100D, FortiGate 3200D, FortiGate 3200F, FortiGate 3201F, FortiGate 3300E, FortiGate 3301E, FortiGate 3400E, FortiGate 3401E, FortiGate 3500F, FortiGate 3501F, FortiGate 3600E, FortiGate 3601E, FortiGate 3700D, FortiGate 3700F, FortiGate 3701F, FortiGate 3960E, FortiGate 3980E, FortiGate 400E Bypass, FortiGate 400E, FortiGate 400F, FortiGate 401E, FortiGate 401F, FortiGate 4200F, FortiGate 4201F, FortiGate 4400F, FortiGate 4401F, FortiGate 5001E1, FortiGate 5001E, FortiGate 500E, FortiGate 501E, FortiGate 600E, FortiGate 600F, FortiGate 601E, FortiGate 601F, FortiGate 70F, FortiGate 71F, FortiGate 800D, FortiGate 80F Bypass, FortiGate 80F DSL, FortiGate 80F-POE, FortiGate 80F, FortiGate 81F-POE, FortiGate 81F, FortiGate 900D, FortiGate 900G, FortiGate 901G, FortiGate VM64, FortiGateRugged 70F 3G4G, FortiGateRugged 70F, FortiWiFi 80F 2R 3G4G DSL, FortiWiFi 80F 2R, FortiWiFi 81F 2R 3G4G DSL, FortiWiFi 81F 2R 3G4G-POE, FortiWiFi 81F 2R-POE, FortiWiFi 81F 2R.

It is not available for: FortiGate 40F 3G4G, FortiGate 40F, FortiGate 60F, FortiGate 61F, FortiGateRugged 60F 3G4G, FortiGateRugged 60F, FortiWiFi 40F 3G4G, FortiWiFi 40F, FortiWiFi 60F, FortiWiFi 61F.

Configure SSL-VPN user group bookmark.

config vpn ssl web user-group-bookmark
    Description: Configure SSL-VPN user group bookmark.
    edit <name>
        config bookmarks
            Description: Bookmark table.
            edit <name>
                set additional-params {var-string}
                set apptype [ftp|rdp|...]
                set color-depth [32|16|...]
                set description {var-string}
                set domain {var-string}
                set folder {var-string}
                config form-data
                    Description: Form data.
                    edit <name>
                        set value {var-string}
                    next
                end
                set height {integer}
                set host {var-string}
                set keyboard-layout [ar-101|ar-102|...]
                set load-balancing-info {var-string}
                set logon-password {password}
                set logon-user {var-string}
                set port {integer}
                set preconnection-blob {var-string}
                set preconnection-id {integer}
                set restricted-admin [enable|disable]
                set security [any|rdp|...]
                set send-preconnection-id [enable|disable]
                set sso [disable|static|...]
                set sso-credential [sslvpn-login|alternative]
                set sso-credential-sent-once [enable|disable]
                set sso-password {password}
                set sso-username {var-string}
                set url {var-string}
                set vnc-keyboard-layout [default|da|...]
                set width {integer}
            next
        end
    next
end

config vpn ssl web user-group-bookmark

Parameter

Description

Type

Size

Default

name

Group name.

string

Maximum length: 64

config bookmarks

Parameter

Description

Type

Size

Default

additional-params

Additional parameters.

var-string

Maximum length: 128

apptype

Application type.

option

-

web

Option

Description

ftp

FTP.

rdp

RDP.

sftp

SFTP.

smb

SMB/CIFS.

ssh

SSH.

telnet

Telnet.

vnc

VNC.

web

HTTP/HTTPS.

color-depth

Color depth per pixel.

option

-

16

Option

Description

32

32bits per pixel.

16

16bits per pixel.

8

8bits per pixel.

description

Description.

var-string

Maximum length: 128

domain

Login domain.

var-string

Maximum length: 128

folder

Network shared file folder parameter.

var-string

Maximum length: 128

height

Screen height.

integer

Minimum value: 0 Maximum value: 65535

0

host

Host name/IP parameter.

var-string

Maximum length: 128

keyboard-layout

Keyboard layout.

option

-

en-us

Option

Description

ar-101

Arabic (101).

ar-102

Arabic (102).

ar-102-azerty

Arabic (102) AZERTY.

can-mul

Canadian Multilingual Standard.

cz

Czech.

cz-qwerty

Czech (QWERTY).

cz-pr

Czech Programmers.

da

Danish.

nl

Dutch.

de

German.

de-ch

German, Switzerland.

de-ibm

German (IBM).

en-uk

English, United Kingdom.

en-uk-ext

English, United Kingdom Extended.

en-us

English, United States.

en-us-dvorak

English, United States-Dvorak.

es

Spanish.

es-var

Spanish Variation.

fi

Finnish.

fi-sami

Finnish with Sami.

fr

French.

fr-apple

French, Apple.

fr-ca

French, Canada.

fr-ch

French, Switzerland.

fr-be

French, Belgium.

hr

Croatian.

hu

Hungarian.

hu-101

Hungarian 101-Key.

it

Italian.

it-142

Italian (142).

ja

Japanese.

ja-106

Japanese 106/109 key.

ko

Korean.

la-am

Latin American.

lt

Lithuanian.

lt-ibm

Lithuanian IBM.

lt-std

Lithuanian Standard.

lav-std

Latvian (Standard).

lav-leg

Latvian (Legacy).

mk

Macedonian (FYROM).

mk-std

Macedonia (FYROM) - Standard.

no

Norwegian.

no-sami

Norwegian with Sami.

pol-214

Polish (214).

pol-pr

Polish (Programmers).

pt

Portuguese.

pt-br

Portuguese (Brazilian ABNT).

pt-br-abnt2

Portuguese (Brazilian ABNT2).

ru

Russian.

ru-mne

Russian - Mnemonic.

ru-t

Russian (Typewriter).

sl

Slovenian.

sv

Swedish.

sv-sami

Swedish with Sami.

tuk

Turkmen.

tur-f

Turkish F.

tur-q

Turkish Q.

zh-sym-sg-us

Chinese (Simplified, Singapore) - US keyboard.

zh-sym-us

Chinese (Simplified) - US Keyboard.

zh-tr-hk

Chinese (Traditional, Hong Kong S.A.R.).

zh-tr-mo

Chinese (Traditional Macao S.A.R.) - US Keyboard.

zh-tr-us

Chinese (Traditional) - US keyboard.

load-balancing-info

The load balancing information or cookie which should be provided to the connection broker.

var-string

Maximum length: 511

logon-password

Logon password.

password

Not Specified

logon-user

Logon user.

var-string

Maximum length: 35

name

Bookmark name.

string

Maximum length: 35

port

Remote port.

integer

Minimum value: 0 Maximum value: 65535

0

preconnection-blob

An arbitrary string which identifies the RDP source.

var-string

Maximum length: 511

preconnection-id

The numeric ID of the RDP source.

integer

Minimum value: 0 Maximum value: 4294967295

0

restricted-admin

Enable/disable restricted admin mode for RDP.

option

-

disable

Option

Description

enable

Enable restricted admin mode for RDP.

disable

Disable restricted admin mode for RDP.

security

Security mode for RDP connection.

option

-

any

Option

Description

any

Allow the server to choose the type of security.

rdp

Standard RDP encryption.

nla

Network Level Authentication.

tls

TLS encryption.

send-preconnection-id

Enable/disable sending of preconnection ID.

option

-

disable

Option

Description

enable

Enable sending of preconnection ID.

disable

Disable sending of preconnection ID.

sso

Single sign-on.

option

-

disable

Option

Description

disable

Disable SSO.

static

Static SSO.

auto

Auto SSO.

sso-credential

Single sign-on credentials.

option

-

sslvpn-login

Option

Description

sslvpn-login

SSL-VPN login.

alternative

Alternative.

sso-credential-sent-once

Single sign-on credentials are only sent once to remote server.

option

-

disable

Option

Description

enable

Single sign-on credentials are only sent once to remote server.

disable

Single sign-on credentials are sent to remote server for every HTTP request.

sso-password

SSO password.

password

Not Specified

sso-username

SSO user name.

var-string

Maximum length: 35

url

URL parameter.

var-string

Maximum length: 128

vnc-keyboard-layout

Keyboard layout.

option

-

default

Option

Description

default

Default.

da

Danish.

nl

Dutch.

en-uk

English, United Kingdom.

en-uk-ext

English, United Kingdom Extended.

fi

Finnish.

fr

French.

fr-be

French, Belgium.

fr-ca-mul

French, Canadian Multilingual Std.

de

German.

de-ch

German, Switzerland.

it

Italian.

it-142

Italian (142).

pt

Portuguese.

pt-br-abnt2

Portuguese (Brazilian ABNT2).

no

Norwegian.

gd

Scottish Gaelic.

es

Spanish.

sv

Swedish.

us-intl

United States-International.

width

Screen width.

integer

Minimum value: 0 Maximum value: 65535

0

config form-data

Parameter

Description

Type

Size

Default

name

Name.

string

Maximum length: 35

value

Value.

var-string

Maximum length: 63

config vpn ssl web user-group-bookmark

config vpn ssl web user-group-bookmark

Note

This command is available for model(s): FortiGate 1000D, FortiGate 1000F, FortiGate 1001F, FortiGate 100F, FortiGate 101F, FortiGate 1100E, FortiGate 1101E, FortiGate 1800F, FortiGate 1801F, FortiGate 2000E, FortiGate 200E, FortiGate 200F, FortiGate 201E, FortiGate 201F, FortiGate 2200E, FortiGate 2201E, FortiGate 2500E, FortiGate 2600F, FortiGate 2601F, FortiGate 3000D, FortiGate 3000F, FortiGate 3001F, FortiGate 300E, FortiGate 301E, FortiGate 3100D, FortiGate 3200D, FortiGate 3200F, FortiGate 3201F, FortiGate 3300E, FortiGate 3301E, FortiGate 3400E, FortiGate 3401E, FortiGate 3500F, FortiGate 3501F, FortiGate 3600E, FortiGate 3601E, FortiGate 3700D, FortiGate 3700F, FortiGate 3701F, FortiGate 3960E, FortiGate 3980E, FortiGate 400E Bypass, FortiGate 400E, FortiGate 400F, FortiGate 401E, FortiGate 401F, FortiGate 4200F, FortiGate 4201F, FortiGate 4400F, FortiGate 4401F, FortiGate 5001E1, FortiGate 5001E, FortiGate 500E, FortiGate 501E, FortiGate 600E, FortiGate 600F, FortiGate 601E, FortiGate 601F, FortiGate 70F, FortiGate 71F, FortiGate 800D, FortiGate 80F Bypass, FortiGate 80F DSL, FortiGate 80F-POE, FortiGate 80F, FortiGate 81F-POE, FortiGate 81F, FortiGate 900D, FortiGate 900G, FortiGate 901G, FortiGate VM64, FortiGateRugged 70F 3G4G, FortiGateRugged 70F, FortiWiFi 80F 2R 3G4G DSL, FortiWiFi 80F 2R, FortiWiFi 81F 2R 3G4G DSL, FortiWiFi 81F 2R 3G4G-POE, FortiWiFi 81F 2R-POE, FortiWiFi 81F 2R.

It is not available for: FortiGate 40F 3G4G, FortiGate 40F, FortiGate 60F, FortiGate 61F, FortiGateRugged 60F 3G4G, FortiGateRugged 60F, FortiWiFi 40F 3G4G, FortiWiFi 40F, FortiWiFi 60F, FortiWiFi 61F.

Configure SSL-VPN user group bookmark.

config vpn ssl web user-group-bookmark
    Description: Configure SSL-VPN user group bookmark.
    edit <name>
        config bookmarks
            Description: Bookmark table.
            edit <name>
                set additional-params {var-string}
                set apptype [ftp|rdp|...]
                set color-depth [32|16|...]
                set description {var-string}
                set domain {var-string}
                set folder {var-string}
                config form-data
                    Description: Form data.
                    edit <name>
                        set value {var-string}
                    next
                end
                set height {integer}
                set host {var-string}
                set keyboard-layout [ar-101|ar-102|...]
                set load-balancing-info {var-string}
                set logon-password {password}
                set logon-user {var-string}
                set port {integer}
                set preconnection-blob {var-string}
                set preconnection-id {integer}
                set restricted-admin [enable|disable]
                set security [any|rdp|...]
                set send-preconnection-id [enable|disable]
                set sso [disable|static|...]
                set sso-credential [sslvpn-login|alternative]
                set sso-credential-sent-once [enable|disable]
                set sso-password {password}
                set sso-username {var-string}
                set url {var-string}
                set vnc-keyboard-layout [default|da|...]
                set width {integer}
            next
        end
    next
end

config vpn ssl web user-group-bookmark

Parameter

Description

Type

Size

Default

name

Group name.

string

Maximum length: 64

config bookmarks

Parameter

Description

Type

Size

Default

additional-params

Additional parameters.

var-string

Maximum length: 128

apptype

Application type.

option

-

web

Option

Description

ftp

FTP.

rdp

RDP.

sftp

SFTP.

smb

SMB/CIFS.

ssh

SSH.

telnet

Telnet.

vnc

VNC.

web

HTTP/HTTPS.

color-depth

Color depth per pixel.

option

-

16

Option

Description

32

32bits per pixel.

16

16bits per pixel.

8

8bits per pixel.

description

Description.

var-string

Maximum length: 128

domain

Login domain.

var-string

Maximum length: 128

folder

Network shared file folder parameter.

var-string

Maximum length: 128

height

Screen height.

integer

Minimum value: 0 Maximum value: 65535

0

host

Host name/IP parameter.

var-string

Maximum length: 128

keyboard-layout

Keyboard layout.

option

-

en-us

Option

Description

ar-101

Arabic (101).

ar-102

Arabic (102).

ar-102-azerty

Arabic (102) AZERTY.

can-mul

Canadian Multilingual Standard.

cz

Czech.

cz-qwerty

Czech (QWERTY).

cz-pr

Czech Programmers.

da

Danish.

nl

Dutch.

de

German.

de-ch

German, Switzerland.

de-ibm

German (IBM).

en-uk

English, United Kingdom.

en-uk-ext

English, United Kingdom Extended.

en-us

English, United States.

en-us-dvorak

English, United States-Dvorak.

es

Spanish.

es-var

Spanish Variation.

fi

Finnish.

fi-sami

Finnish with Sami.

fr

French.

fr-apple

French, Apple.

fr-ca

French, Canada.

fr-ch

French, Switzerland.

fr-be

French, Belgium.

hr

Croatian.

hu

Hungarian.

hu-101

Hungarian 101-Key.

it

Italian.

it-142

Italian (142).

ja

Japanese.

ja-106

Japanese 106/109 key.

ko

Korean.

la-am

Latin American.

lt

Lithuanian.

lt-ibm

Lithuanian IBM.

lt-std

Lithuanian Standard.

lav-std

Latvian (Standard).

lav-leg

Latvian (Legacy).

mk

Macedonian (FYROM).

mk-std

Macedonia (FYROM) - Standard.

no

Norwegian.

no-sami

Norwegian with Sami.

pol-214

Polish (214).

pol-pr

Polish (Programmers).

pt

Portuguese.

pt-br

Portuguese (Brazilian ABNT).

pt-br-abnt2

Portuguese (Brazilian ABNT2).

ru

Russian.

ru-mne

Russian - Mnemonic.

ru-t

Russian (Typewriter).

sl

Slovenian.

sv

Swedish.

sv-sami

Swedish with Sami.

tuk

Turkmen.

tur-f

Turkish F.

tur-q

Turkish Q.

zh-sym-sg-us

Chinese (Simplified, Singapore) - US keyboard.

zh-sym-us

Chinese (Simplified) - US Keyboard.

zh-tr-hk

Chinese (Traditional, Hong Kong S.A.R.).

zh-tr-mo

Chinese (Traditional Macao S.A.R.) - US Keyboard.

zh-tr-us

Chinese (Traditional) - US keyboard.

load-balancing-info

The load balancing information or cookie which should be provided to the connection broker.

var-string

Maximum length: 511

logon-password

Logon password.

password

Not Specified

logon-user

Logon user.

var-string

Maximum length: 35

name

Bookmark name.

string

Maximum length: 35

port

Remote port.

integer

Minimum value: 0 Maximum value: 65535

0

preconnection-blob

An arbitrary string which identifies the RDP source.

var-string

Maximum length: 511

preconnection-id

The numeric ID of the RDP source.

integer

Minimum value: 0 Maximum value: 4294967295

0

restricted-admin

Enable/disable restricted admin mode for RDP.

option

-

disable

Option

Description

enable

Enable restricted admin mode for RDP.

disable

Disable restricted admin mode for RDP.

security

Security mode for RDP connection.

option

-

any

Option

Description

any

Allow the server to choose the type of security.

rdp

Standard RDP encryption.

nla

Network Level Authentication.

tls

TLS encryption.

send-preconnection-id

Enable/disable sending of preconnection ID.

option

-

disable

Option

Description

enable

Enable sending of preconnection ID.

disable

Disable sending of preconnection ID.

sso

Single sign-on.

option

-

disable

Option

Description

disable

Disable SSO.

static

Static SSO.

auto

Auto SSO.

sso-credential

Single sign-on credentials.

option

-

sslvpn-login

Option

Description

sslvpn-login

SSL-VPN login.

alternative

Alternative.

sso-credential-sent-once

Single sign-on credentials are only sent once to remote server.

option

-

disable

Option

Description

enable

Single sign-on credentials are only sent once to remote server.

disable

Single sign-on credentials are sent to remote server for every HTTP request.

sso-password

SSO password.

password

Not Specified

sso-username

SSO user name.

var-string

Maximum length: 35

url

URL parameter.

var-string

Maximum length: 128

vnc-keyboard-layout

Keyboard layout.

option

-

default

Option

Description

default

Default.

da

Danish.

nl

Dutch.

en-uk

English, United Kingdom.

en-uk-ext

English, United Kingdom Extended.

fi

Finnish.

fr

French.

fr-be

French, Belgium.

fr-ca-mul

French, Canadian Multilingual Std.

de

German.

de-ch

German, Switzerland.

it

Italian.

it-142

Italian (142).

pt

Portuguese.

pt-br-abnt2

Portuguese (Brazilian ABNT2).

no

Norwegian.

gd

Scottish Gaelic.

es

Spanish.

sv

Swedish.

us-intl

United States-International.

width

Screen width.

integer

Minimum value: 0 Maximum value: 65535

0

config form-data

Parameter

Description

Type

Size

Default

name

Name.

string

Maximum length: 35

value

Value.

var-string

Maximum length: 63