Fortinet white logo
Fortinet white logo

CLI Reference

config vpn ssl web portal

config vpn ssl web portal

Note

This command is available for model(s): FortiGate 1000D, FortiGate 1000F, FortiGate 1001F, FortiGate 100F, FortiGate 101F Gen2, FortiGate 1100E, FortiGate 1101E, FortiGate 120G, FortiGate 121G, FortiGate 1800F, FortiGate 1801F, FortiGate 2000E, FortiGate 200E, FortiGate 200F, FortiGate 200G, FortiGate 201E, FortiGate 201F, FortiGate 201G, FortiGate 2200E, FortiGate 2201E, FortiGate 2500E, FortiGate 2600F, FortiGate 2601F, FortiGate 3000D, FortiGate 3000F, FortiGate 3001F, FortiGate 300E, FortiGate 301E, FortiGate 3100D, FortiGate 3200D, FortiGate 3200F, FortiGate 3201F Gen2, FortiGate 3300E, FortiGate 3301E, FortiGate 3400E, FortiGate 3401E, FortiGate 3500F Gen2, FortiGate 3501F Gen2, FortiGate 3600E, FortiGate 3601E, FortiGate 3700D, FortiGate 3700F, FortiGate 3701F, FortiGate 3960E, FortiGate 3980E, FortiGate 400E Bypass, FortiGate 400E, FortiGate 400F, FortiGate 401E, FortiGate 401F, FortiGate 4200F, FortiGate 4201F Gen2, FortiGate 4400F, FortiGate 4401F Gen2, FortiGate 4800F, FortiGate 4801F, FortiGate 5001E1, FortiGate 5001E, FortiGate 500E, FortiGate 501E, FortiGate 600E, FortiGate 600F, FortiGate 601E, FortiGate 601F, FortiGate 70F, FortiGate 71F, FortiGate 800D, FortiGate 80F Bypass, FortiGate 80F DSL, FortiGate 80F Gen2, FortiGate 80F-POE, FortiGate 81F Gen2, FortiGate 81F-POE, FortiGate 900D, FortiGate 900G, FortiGate 901G, FortiGate-VM64 Aliyun, FortiGate-VM64 AWS, FortiGate-VM64 Azure, FortiGate-VM64 GCP, FortiGate-VM64 OPC, FortiGate-VM64, FortiGateRugged 70F 3G4G, FortiGateRugged 70F, FortiWiFi 80F 2R 3G4G DSL, FortiWiFi 80F 2R, FortiWiFi 81F 2R 3G4G DSL, FortiWiFi 81F 2R 3G4G-POE, FortiWiFi 81F 2R-POE, FortiWiFi 81F 2R.

It is not available for: FortiGate 40F 3G4G, FortiGate 40F, FortiGate 50G 5G, FortiGate 50G DSL, FortiGate 50G SFP-POE, FortiGate 50G SFP, FortiGate 50G, FortiGate 51G 5G, FortiGate 51G SFP-POE, FortiGate 51G, FortiGate 60F, FortiGate 61F, FortiGate 70G-POE, FortiGate 70G, FortiGate 71G-POE, FortiGate 71G, FortiGate 90G Gen2, FortiGate 90G, FortiGate 91G Gen2, FortiGate 91G, FortiGateRugged 50G 5G, FortiGateRugged 60F 3G4G, FortiGateRugged 60F Gen2, FortiGateRugged 70G 5G Dual, FortiGateRugged 70G, FortiWiFi 40F 3G4G, FortiWiFi 40F, FortiWiFi 50G 5G, FortiWiFi 50G DSL, FortiWiFi 50G SFP, FortiWiFi 50G, FortiWiFi 51G, FortiWiFi 60F, FortiWiFi 61F, FortiWiFi 70G, FortiWiFi 71G.

Portal.

config vpn ssl web portal
    Description: Portal.
    edit <name>
        set allow-user-access {option1}, {option2}, ...
        config bookmark-group
            Description: Portal bookmark group.
            edit <name>
                config bookmarks
                    Description: Bookmark table.
                    edit <name>
                        set additional-params {var-string}
                        set apptype [ftp|rdp|...]
                        set color-depth [32|16|...]
                        set description {var-string}
                        set domain {var-string}
                        set folder {var-string}
                        config form-data
                            Description: Form data.
                            edit <name>
                                set value {var-string}
                            next
                        end
                        set height {integer}
                        set host {var-string}
                        set keyboard-layout [ar-101|ar-102|...]
                        set load-balancing-info {var-string}
                        set logon-password {password}
                        set logon-user {var-string}
                        set port {integer}
                        set preconnection-blob {var-string}
                        set preconnection-id {integer}
                        set restricted-admin [enable|disable]
                        set security [any|rdp|...]
                        set send-preconnection-id [enable|disable]
                        set sso [disable|static|...]
                        set sso-credential [sslvpn-login|alternative]
                        set sso-credential-sent-once [enable|disable]
                        set sso-password {password}
                        set sso-username {var-string}
                        set url {var-string}
                        set vnc-keyboard-layout [default|da|...]
                        set width {integer}
                    next
                end
            next
        end
        set clipboard [enable|disable]
        set custom-lang {string}
        set default-protocol [web|ftp|...]
        set default-window-height {integer}
        set default-window-width {integer}
        set display-bookmark [enable|disable]
        set display-connection-tools [enable|disable]
        set display-history [enable|disable]
        set display-status [enable|disable]
        set dns-suffix {var-string}
        set focus-bookmark [enable|disable]
        set heading {string}
        set hide-sso-credential [enable|disable]
        config landing-page
            Description: Landing page options.
            config form-data
                Description: Form data.
                edit <name>
                    set value {var-string}
                next
            end
            set sso [disable|static|...]
            set sso-credential [sslvpn-login|alternative]
            set sso-password {password}
            set sso-username {var-string}
            set url {var-string}
        end
        set landing-page-mode [enable|disable]
        set limit-user-logins [enable|disable]
        set prefer-ipv6-dns [enable|disable]
        set redir-url {var-string}
        set rewrite-ip-uri-ui [enable|disable]
        set smb-max-version [smbv1|smbv2|...]
        set smb-min-version [smbv1|smbv2|...]
        set smb-ntlmv1-auth [enable|disable]
        set smbv1 [enable|disable]
        set theme [jade|neutrino|...]
        set use-sdwan [enable|disable]
        set user-bookmark [enable|disable]
        set user-group-bookmark [enable|disable]
        set web-mode [enable|disable]
    next
end

config vpn ssl web portal

Parameter

Description

Type

Size

Default

allow-user-access

Allow user access to Agentless VPN applications.

option

-

web ftp smb sftp telnet ssh vnc rdp ping

Option

Description

web

HTTP/HTTPS access.

ftp

FTP access.

smb

SMB/CIFS access.

sftp

SFTP access.

telnet

TELNET access.

ssh

SSH access.

vnc

VNC access.

rdp

RDP access.

ping

PING access.

clipboard

Enable to support RDP/VPC clipboard functionality.

option

-

enable

Option

Description

enable

Enable support of RDP/VNC clipboard.

disable

Disable support of RDP/VNC clipboard.

custom-lang

Change the web portal display language. Overrides config system global set language. You can use config system custom-language and execute system custom-language to add custom language files.

string

Maximum length: 35

default-protocol

Application type that is set by default.

option

-

web

Option

Description

web

HTTP/HTTPS.

ftp

FTP.

telnet

Telnet.

smb

SMB/CIFS.

vnc

VNC.

rdp

RDP.

ssh

SSH.

sftp

SFTP.

default-window-height

Screen height (range from 0 - 65535, default = 768).

integer

Minimum value: 0 Maximum value: 65535

768

default-window-width

Screen width (range from 0 - 65535, default = 1024).

integer

Minimum value: 0 Maximum value: 65535

1024

display-bookmark

Enable to display the web portal bookmark widget.

option

-

enable

Option

Description

enable

Enable setting.

disable

Disable setting.

display-connection-tools

Enable to display the web portal connection tools widget.

option

-

enable

Option

Description

enable

Enable setting.

disable

Disable setting.

display-history

Enable to display the web portal user login history widget.

option

-

enable

Option

Description

enable

Enable setting.

disable

Disable setting.

display-status

Enable to display the web portal status widget.

option

-

enable

Option

Description

enable

Enable setting.

disable

Disable setting.

dns-suffix

DNS suffix.

var-string

Maximum length: 253

focus-bookmark

Enable to prioritize the placement of the bookmark section over the quick-connection section in the Agentless VPN application.

option

-

disable

Option

Description

enable

Enable setting.

disable

Disable setting.

heading

Web portal heading message.

string

Maximum length: 31

Agentless VPN Portal

hide-sso-credential

Enable to prevent SSO credential being sent to client.

option

-

enable

Option

Description

enable

Enable setting.

disable

Disable setting.

landing-page-mode

Enable/disable Agentless VPN landing page mode.

option

-

disable

Option

Description

enable

Enable setting.

disable

Disable setting.

limit-user-logins

Enable to limit each user to one Agentless VPN session at a time.

option

-

disable

Option

Description

enable

Enable setting.

disable

Disable setting.

name

Portal name.

string

Maximum length: 35

prefer-ipv6-dns

Prefer to query IPv6 DNS server first if enabled.

option

-

disable

Option

Description

enable

Enable setting.

disable

Disable setting.

redir-url

Client login redirect URL.

var-string

Maximum length: 255

rewrite-ip-uri-ui

Rewrite contents for URI contains IP and /ui/ (default = disable).

option

-

disable

Option

Description

enable

Enable contents rewrite for URI contains "IP-address/ui/".

disable

Disable contents rewrite for URI contains "IP-address/ui/".

smb-max-version

SMB maximum client protocol version.

option

-

smbv3

Option

Description

smbv1

SMB version 1.

smbv2

SMB version 2.

smbv3

SMB version 3.

smb-min-version

SMB minimum client protocol version.

option

-

smbv2

Option

Description

smbv1

SMB version 1.

smbv2

SMB version 2.

smbv3

SMB version 3.

smb-ntlmv1-auth

Enable support of NTLMv1 for Samba authentication.

option

-

disable

Option

Description

enable

Enable setting.

disable

Disable setting.

smbv1

SMB version 1.

option

-

disable

Option

Description

enable

enable

disable

disable

theme

Web portal color scheme.

option

-

security-fabric

Option

Description

jade

Jade theme.

neutrino

Neutrino theme.

mariner

Mariner theme.

graphite

Graphite theme.

melongene

Melongene theme.

jet-stream

Jet Stream theme.

security-fabric

Security Fabric theme.

dark-matter

Dark Matter theme.

onyx

Onyx theme.

eclipse

Eclipse theme.

use-sdwan

Use SD-WAN rules to get output interface.

option

-

disable

Option

Description

enable

Enable setting.

disable

Disable setting.

user-bookmark

Enable to allow web portal users to create their own bookmarks.

option

-

enable

Option

Description

enable

Enable setting.

disable

Disable setting.

user-group-bookmark

Enable to allow web portal users to create bookmarks for all users in the same user group.

option

-

enable

Option

Description

enable

Enable setting.

disable

Disable setting.

web-mode

Enable/disable Agentless VPN web mode.

option

-

disable

Option

Description

enable

Enable setting.

disable

Disable setting.

config bookmark-group

Parameter

Description

Type

Size

Default

name

Bookmark group name.

string

Maximum length: 35

config bookmarks

Parameter

Description

Type

Size

Default

additional-params

Additional parameters.

var-string

Maximum length: 128

apptype

Application type.

option

-

web

Option

Description

ftp

FTP.

rdp

RDP.

sftp

SFTP.

smb

SMB/CIFS.

ssh

SSH.

telnet

Telnet.

vnc

VNC.

web

HTTP/HTTPS.

color-depth

Color depth per pixel.

option

-

16

Option

Description

32

32bits per pixel.

16

16bits per pixel.

8

8bits per pixel.

description

Description.

var-string

Maximum length: 128

domain

Login domain.

var-string

Maximum length: 128

folder

Network shared file folder parameter.

var-string

Maximum length: 128

height

Screen height (range from 0 - 65535, default = 0).

integer

Minimum value: 0 Maximum value: 65535

0

host

Host name/IP parameter.

var-string

Maximum length: 128

keyboard-layout

Keyboard layout.

option

-

en-us

Option

Description

ar-101

Arabic (101).

ar-102

Arabic (102).

ar-102-azerty

Arabic (102) AZERTY.

can-mul

Canadian Multilingual Standard.

cz

Czech.

cz-qwerty

Czech (QWERTY).

cz-pr

Czech Programmers.

da

Danish.

nl

Dutch.

de

German.

de-ch

German, Switzerland.

de-ibm

German (IBM).

en-uk

English, United Kingdom.

en-uk-ext

English, United Kingdom Extended.

en-us

English, United States.

en-us-dvorak

English, United States-Dvorak.

es

Spanish.

es-var

Spanish Variation.

fi

Finnish.

fi-sami

Finnish with Sami.

fr

French.

fr-apple

French, Apple.

fr-ca

French, Canada.

fr-ch

French, Switzerland.

fr-be

French, Belgium.

hr

Croatian.

hu

Hungarian.

hu-101

Hungarian 101-Key.

it

Italian.

it-142

Italian (142).

ja

Japanese.

ja-106

Japanese 106/109 key.

ko

Korean.

la-am

Latin American.

lt

Lithuanian.

lt-ibm

Lithuanian IBM.

lt-std

Lithuanian Standard.

lav-std

Latvian (Standard).

lav-leg

Latvian (Legacy).

mk

Macedonian (FYROM).

mk-std

Macedonia (FYROM) - Standard.

no

Norwegian.

no-sami

Norwegian with Sami.

pol-214

Polish (214).

pol-pr

Polish (Programmers).

pt

Portuguese.

pt-br

Portuguese (Brazilian ABNT).

pt-br-abnt2

Portuguese (Brazilian ABNT2).

ru

Russian.

ru-mne

Russian - Mnemonic.

ru-t

Russian (Typewriter).

sl

Slovenian.

sv

Swedish.

sv-sami

Swedish with Sami.

tuk

Turkmen.

tur-f

Turkish F.

tur-q

Turkish Q.

zh-sym-sg-us

Chinese (Simplified, Singapore) - US keyboard.

zh-sym-us

Chinese (Simplified) - US Keyboard.

zh-tr-hk

Chinese (Traditional, Hong Kong S.A.R.).

zh-tr-mo

Chinese (Traditional Macao S.A.R.) - US Keyboard.

zh-tr-us

Chinese (Traditional) - US keyboard.

load-balancing-info

The load balancing information or cookie which should be provided to the connection broker.

var-string

Maximum length: 511

logon-password

Logon password.

password

Not Specified

logon-user

Logon user.

var-string

Maximum length: 35

name

Bookmark name.

string

Maximum length: 35

port

Remote port.

integer

Minimum value: 0 Maximum value: 65535

0

preconnection-blob

An arbitrary string which identifies the RDP source.

var-string

Maximum length: 511

preconnection-id

The numeric ID of the RDP source (0-4294967295).

integer

Minimum value: 0 Maximum value: 4294967295

0

restricted-admin

Enable/disable restricted admin mode for RDP.

option

-

disable

Option

Description

enable

Enable restricted admin mode for RDP.

disable

Disable restricted admin mode for RDP.

security

Security mode for RDP connection (default = any).

option

-

any

Option

Description

any

Allow the server to choose the type of security.

rdp

Standard RDP encryption.

nla

Network Level Authentication.

tls

TLS encryption.

send-preconnection-id

Enable/disable sending of preconnection ID.

option

-

disable

Option

Description

enable

Enable sending of preconnection ID.

disable

Disable sending of preconnection ID.

sso

Single sign-on.

option

-

disable

Option

Description

disable

Disable SSO.

static

Static SSO.

auto

Auto SSO.

sso-credential

Single sign-on credentials.

option

-

sslvpn-login

Option

Description

sslvpn-login

Agentless VPN login.

alternative

Alternative.

sso-credential-sent-once

Single sign-on credentials are only sent once to remote server.

option

-

disable

Option

Description

enable

Single sign-on credentials are only sent once to remote server.

disable

Single sign-on credentials are sent to remote server for every HTTP request.

sso-password

SSO password.

password

Not Specified

sso-username

SSO user name.

var-string

Maximum length: 35

url

URL parameter.

var-string

Maximum length: 128

vnc-keyboard-layout

Keyboard layout.

option

-

default

Option

Description

default

Default.

da

Danish.

nl

Dutch.

en-uk

English, United Kingdom.

en-uk-ext

English, United Kingdom Extended.

fi

Finnish.

fr

French.

fr-be

French, Belgium.

fr-ca-mul

French, Canadian Multilingual Std.

de

German.

de-ch

German, Switzerland.

it

Italian.

it-142

Italian (142).

pt

Portuguese.

pt-br-abnt2

Portuguese (Brazilian ABNT2).

no

Norwegian.

gd

Scottish Gaelic.

es

Spanish.

sv

Swedish.

us-intl

United States-International.

width

Screen width (range from 0 - 65535, default = 0).

integer

Minimum value: 0 Maximum value: 65535

0

config form-data

Parameter

Description

Type

Size

Default

name

Name.

string

Maximum length: 35

value

Value.

var-string

Maximum length: 63

config landing-page

Parameter

Description

Type

Size

Default

sso

Single sign-on.

option

-

disable

Option

Description

disable

Disable SSO.

static

Static SSO.

auto

Auto SSO.

sso-credential

Single sign-on credentials.

option

-

sslvpn-login

Option

Description

sslvpn-login

Agentless VPN login.

alternative

Alternative.

sso-password

SSO password.

password

Not Specified

sso-username

SSO user name.

var-string

Maximum length: 35

url

Landing page URL.

var-string

Maximum length: 511

config form-data

Parameter

Description

Type

Size

Default

name

Name.

string

Maximum length: 35

value

Value.

var-string

Maximum length: 63

config vpn ssl web portal

config vpn ssl web portal

Note

This command is available for model(s): FortiGate 1000D, FortiGate 1000F, FortiGate 1001F, FortiGate 100F, FortiGate 101F Gen2, FortiGate 1100E, FortiGate 1101E, FortiGate 120G, FortiGate 121G, FortiGate 1800F, FortiGate 1801F, FortiGate 2000E, FortiGate 200E, FortiGate 200F, FortiGate 200G, FortiGate 201E, FortiGate 201F, FortiGate 201G, FortiGate 2200E, FortiGate 2201E, FortiGate 2500E, FortiGate 2600F, FortiGate 2601F, FortiGate 3000D, FortiGate 3000F, FortiGate 3001F, FortiGate 300E, FortiGate 301E, FortiGate 3100D, FortiGate 3200D, FortiGate 3200F, FortiGate 3201F Gen2, FortiGate 3300E, FortiGate 3301E, FortiGate 3400E, FortiGate 3401E, FortiGate 3500F Gen2, FortiGate 3501F Gen2, FortiGate 3600E, FortiGate 3601E, FortiGate 3700D, FortiGate 3700F, FortiGate 3701F, FortiGate 3960E, FortiGate 3980E, FortiGate 400E Bypass, FortiGate 400E, FortiGate 400F, FortiGate 401E, FortiGate 401F, FortiGate 4200F, FortiGate 4201F Gen2, FortiGate 4400F, FortiGate 4401F Gen2, FortiGate 4800F, FortiGate 4801F, FortiGate 5001E1, FortiGate 5001E, FortiGate 500E, FortiGate 501E, FortiGate 600E, FortiGate 600F, FortiGate 601E, FortiGate 601F, FortiGate 70F, FortiGate 71F, FortiGate 800D, FortiGate 80F Bypass, FortiGate 80F DSL, FortiGate 80F Gen2, FortiGate 80F-POE, FortiGate 81F Gen2, FortiGate 81F-POE, FortiGate 900D, FortiGate 900G, FortiGate 901G, FortiGate-VM64 Aliyun, FortiGate-VM64 AWS, FortiGate-VM64 Azure, FortiGate-VM64 GCP, FortiGate-VM64 OPC, FortiGate-VM64, FortiGateRugged 70F 3G4G, FortiGateRugged 70F, FortiWiFi 80F 2R 3G4G DSL, FortiWiFi 80F 2R, FortiWiFi 81F 2R 3G4G DSL, FortiWiFi 81F 2R 3G4G-POE, FortiWiFi 81F 2R-POE, FortiWiFi 81F 2R.

It is not available for: FortiGate 40F 3G4G, FortiGate 40F, FortiGate 50G 5G, FortiGate 50G DSL, FortiGate 50G SFP-POE, FortiGate 50G SFP, FortiGate 50G, FortiGate 51G 5G, FortiGate 51G SFP-POE, FortiGate 51G, FortiGate 60F, FortiGate 61F, FortiGate 70G-POE, FortiGate 70G, FortiGate 71G-POE, FortiGate 71G, FortiGate 90G Gen2, FortiGate 90G, FortiGate 91G Gen2, FortiGate 91G, FortiGateRugged 50G 5G, FortiGateRugged 60F 3G4G, FortiGateRugged 60F Gen2, FortiGateRugged 70G 5G Dual, FortiGateRugged 70G, FortiWiFi 40F 3G4G, FortiWiFi 40F, FortiWiFi 50G 5G, FortiWiFi 50G DSL, FortiWiFi 50G SFP, FortiWiFi 50G, FortiWiFi 51G, FortiWiFi 60F, FortiWiFi 61F, FortiWiFi 70G, FortiWiFi 71G.

Portal.

config vpn ssl web portal
    Description: Portal.
    edit <name>
        set allow-user-access {option1}, {option2}, ...
        config bookmark-group
            Description: Portal bookmark group.
            edit <name>
                config bookmarks
                    Description: Bookmark table.
                    edit <name>
                        set additional-params {var-string}
                        set apptype [ftp|rdp|...]
                        set color-depth [32|16|...]
                        set description {var-string}
                        set domain {var-string}
                        set folder {var-string}
                        config form-data
                            Description: Form data.
                            edit <name>
                                set value {var-string}
                            next
                        end
                        set height {integer}
                        set host {var-string}
                        set keyboard-layout [ar-101|ar-102|...]
                        set load-balancing-info {var-string}
                        set logon-password {password}
                        set logon-user {var-string}
                        set port {integer}
                        set preconnection-blob {var-string}
                        set preconnection-id {integer}
                        set restricted-admin [enable|disable]
                        set security [any|rdp|...]
                        set send-preconnection-id [enable|disable]
                        set sso [disable|static|...]
                        set sso-credential [sslvpn-login|alternative]
                        set sso-credential-sent-once [enable|disable]
                        set sso-password {password}
                        set sso-username {var-string}
                        set url {var-string}
                        set vnc-keyboard-layout [default|da|...]
                        set width {integer}
                    next
                end
            next
        end
        set clipboard [enable|disable]
        set custom-lang {string}
        set default-protocol [web|ftp|...]
        set default-window-height {integer}
        set default-window-width {integer}
        set display-bookmark [enable|disable]
        set display-connection-tools [enable|disable]
        set display-history [enable|disable]
        set display-status [enable|disable]
        set dns-suffix {var-string}
        set focus-bookmark [enable|disable]
        set heading {string}
        set hide-sso-credential [enable|disable]
        config landing-page
            Description: Landing page options.
            config form-data
                Description: Form data.
                edit <name>
                    set value {var-string}
                next
            end
            set sso [disable|static|...]
            set sso-credential [sslvpn-login|alternative]
            set sso-password {password}
            set sso-username {var-string}
            set url {var-string}
        end
        set landing-page-mode [enable|disable]
        set limit-user-logins [enable|disable]
        set prefer-ipv6-dns [enable|disable]
        set redir-url {var-string}
        set rewrite-ip-uri-ui [enable|disable]
        set smb-max-version [smbv1|smbv2|...]
        set smb-min-version [smbv1|smbv2|...]
        set smb-ntlmv1-auth [enable|disable]
        set smbv1 [enable|disable]
        set theme [jade|neutrino|...]
        set use-sdwan [enable|disable]
        set user-bookmark [enable|disable]
        set user-group-bookmark [enable|disable]
        set web-mode [enable|disable]
    next
end

config vpn ssl web portal

Parameter

Description

Type

Size

Default

allow-user-access

Allow user access to Agentless VPN applications.

option

-

web ftp smb sftp telnet ssh vnc rdp ping

Option

Description

web

HTTP/HTTPS access.

ftp

FTP access.

smb

SMB/CIFS access.

sftp

SFTP access.

telnet

TELNET access.

ssh

SSH access.

vnc

VNC access.

rdp

RDP access.

ping

PING access.

clipboard

Enable to support RDP/VPC clipboard functionality.

option

-

enable

Option

Description

enable

Enable support of RDP/VNC clipboard.

disable

Disable support of RDP/VNC clipboard.

custom-lang

Change the web portal display language. Overrides config system global set language. You can use config system custom-language and execute system custom-language to add custom language files.

string

Maximum length: 35

default-protocol

Application type that is set by default.

option

-

web

Option

Description

web

HTTP/HTTPS.

ftp

FTP.

telnet

Telnet.

smb

SMB/CIFS.

vnc

VNC.

rdp

RDP.

ssh

SSH.

sftp

SFTP.

default-window-height

Screen height (range from 0 - 65535, default = 768).

integer

Minimum value: 0 Maximum value: 65535

768

default-window-width

Screen width (range from 0 - 65535, default = 1024).

integer

Minimum value: 0 Maximum value: 65535

1024

display-bookmark

Enable to display the web portal bookmark widget.

option

-

enable

Option

Description

enable

Enable setting.

disable

Disable setting.

display-connection-tools

Enable to display the web portal connection tools widget.

option

-

enable

Option

Description

enable

Enable setting.

disable

Disable setting.

display-history

Enable to display the web portal user login history widget.

option

-

enable

Option

Description

enable

Enable setting.

disable

Disable setting.

display-status

Enable to display the web portal status widget.

option

-

enable

Option

Description

enable

Enable setting.

disable

Disable setting.

dns-suffix

DNS suffix.

var-string

Maximum length: 253

focus-bookmark

Enable to prioritize the placement of the bookmark section over the quick-connection section in the Agentless VPN application.

option

-

disable

Option

Description

enable

Enable setting.

disable

Disable setting.

heading

Web portal heading message.

string

Maximum length: 31

Agentless VPN Portal

hide-sso-credential

Enable to prevent SSO credential being sent to client.

option

-

enable

Option

Description

enable

Enable setting.

disable

Disable setting.

landing-page-mode

Enable/disable Agentless VPN landing page mode.

option

-

disable

Option

Description

enable

Enable setting.

disable

Disable setting.

limit-user-logins

Enable to limit each user to one Agentless VPN session at a time.

option

-

disable

Option

Description

enable

Enable setting.

disable

Disable setting.

name

Portal name.

string

Maximum length: 35

prefer-ipv6-dns

Prefer to query IPv6 DNS server first if enabled.

option

-

disable

Option

Description

enable

Enable setting.

disable

Disable setting.

redir-url

Client login redirect URL.

var-string

Maximum length: 255

rewrite-ip-uri-ui

Rewrite contents for URI contains IP and /ui/ (default = disable).

option

-

disable

Option

Description

enable

Enable contents rewrite for URI contains "IP-address/ui/".

disable

Disable contents rewrite for URI contains "IP-address/ui/".

smb-max-version

SMB maximum client protocol version.

option

-

smbv3

Option

Description

smbv1

SMB version 1.

smbv2

SMB version 2.

smbv3

SMB version 3.

smb-min-version

SMB minimum client protocol version.

option

-

smbv2

Option

Description

smbv1

SMB version 1.

smbv2

SMB version 2.

smbv3

SMB version 3.

smb-ntlmv1-auth

Enable support of NTLMv1 for Samba authentication.

option

-

disable

Option

Description

enable

Enable setting.

disable

Disable setting.

smbv1

SMB version 1.

option

-

disable

Option

Description

enable

enable

disable

disable

theme

Web portal color scheme.

option

-

security-fabric

Option

Description

jade

Jade theme.

neutrino

Neutrino theme.

mariner

Mariner theme.

graphite

Graphite theme.

melongene

Melongene theme.

jet-stream

Jet Stream theme.

security-fabric

Security Fabric theme.

dark-matter

Dark Matter theme.

onyx

Onyx theme.

eclipse

Eclipse theme.

use-sdwan

Use SD-WAN rules to get output interface.

option

-

disable

Option

Description

enable

Enable setting.

disable

Disable setting.

user-bookmark

Enable to allow web portal users to create their own bookmarks.

option

-

enable

Option

Description

enable

Enable setting.

disable

Disable setting.

user-group-bookmark

Enable to allow web portal users to create bookmarks for all users in the same user group.

option

-

enable

Option

Description

enable

Enable setting.

disable

Disable setting.

web-mode

Enable/disable Agentless VPN web mode.

option

-

disable

Option

Description

enable

Enable setting.

disable

Disable setting.

config bookmark-group

Parameter

Description

Type

Size

Default

name

Bookmark group name.

string

Maximum length: 35

config bookmarks

Parameter

Description

Type

Size

Default

additional-params

Additional parameters.

var-string

Maximum length: 128

apptype

Application type.

option

-

web

Option

Description

ftp

FTP.

rdp

RDP.

sftp

SFTP.

smb

SMB/CIFS.

ssh

SSH.

telnet

Telnet.

vnc

VNC.

web

HTTP/HTTPS.

color-depth

Color depth per pixel.

option

-

16

Option

Description

32

32bits per pixel.

16

16bits per pixel.

8

8bits per pixel.

description

Description.

var-string

Maximum length: 128

domain

Login domain.

var-string

Maximum length: 128

folder

Network shared file folder parameter.

var-string

Maximum length: 128

height

Screen height (range from 0 - 65535, default = 0).

integer

Minimum value: 0 Maximum value: 65535

0

host

Host name/IP parameter.

var-string

Maximum length: 128

keyboard-layout

Keyboard layout.

option

-

en-us

Option

Description

ar-101

Arabic (101).

ar-102

Arabic (102).

ar-102-azerty

Arabic (102) AZERTY.

can-mul

Canadian Multilingual Standard.

cz

Czech.

cz-qwerty

Czech (QWERTY).

cz-pr

Czech Programmers.

da

Danish.

nl

Dutch.

de

German.

de-ch

German, Switzerland.

de-ibm

German (IBM).

en-uk

English, United Kingdom.

en-uk-ext

English, United Kingdom Extended.

en-us

English, United States.

en-us-dvorak

English, United States-Dvorak.

es

Spanish.

es-var

Spanish Variation.

fi

Finnish.

fi-sami

Finnish with Sami.

fr

French.

fr-apple

French, Apple.

fr-ca

French, Canada.

fr-ch

French, Switzerland.

fr-be

French, Belgium.

hr

Croatian.

hu

Hungarian.

hu-101

Hungarian 101-Key.

it

Italian.

it-142

Italian (142).

ja

Japanese.

ja-106

Japanese 106/109 key.

ko

Korean.

la-am

Latin American.

lt

Lithuanian.

lt-ibm

Lithuanian IBM.

lt-std

Lithuanian Standard.

lav-std

Latvian (Standard).

lav-leg

Latvian (Legacy).

mk

Macedonian (FYROM).

mk-std

Macedonia (FYROM) - Standard.

no

Norwegian.

no-sami

Norwegian with Sami.

pol-214

Polish (214).

pol-pr

Polish (Programmers).

pt

Portuguese.

pt-br

Portuguese (Brazilian ABNT).

pt-br-abnt2

Portuguese (Brazilian ABNT2).

ru

Russian.

ru-mne

Russian - Mnemonic.

ru-t

Russian (Typewriter).

sl

Slovenian.

sv

Swedish.

sv-sami

Swedish with Sami.

tuk

Turkmen.

tur-f

Turkish F.

tur-q

Turkish Q.

zh-sym-sg-us

Chinese (Simplified, Singapore) - US keyboard.

zh-sym-us

Chinese (Simplified) - US Keyboard.

zh-tr-hk

Chinese (Traditional, Hong Kong S.A.R.).

zh-tr-mo

Chinese (Traditional Macao S.A.R.) - US Keyboard.

zh-tr-us

Chinese (Traditional) - US keyboard.

load-balancing-info

The load balancing information or cookie which should be provided to the connection broker.

var-string

Maximum length: 511

logon-password

Logon password.

password

Not Specified

logon-user

Logon user.

var-string

Maximum length: 35

name

Bookmark name.

string

Maximum length: 35

port

Remote port.

integer

Minimum value: 0 Maximum value: 65535

0

preconnection-blob

An arbitrary string which identifies the RDP source.

var-string

Maximum length: 511

preconnection-id

The numeric ID of the RDP source (0-4294967295).

integer

Minimum value: 0 Maximum value: 4294967295

0

restricted-admin

Enable/disable restricted admin mode for RDP.

option

-

disable

Option

Description

enable

Enable restricted admin mode for RDP.

disable

Disable restricted admin mode for RDP.

security

Security mode for RDP connection (default = any).

option

-

any

Option

Description

any

Allow the server to choose the type of security.

rdp

Standard RDP encryption.

nla

Network Level Authentication.

tls

TLS encryption.

send-preconnection-id

Enable/disable sending of preconnection ID.

option

-

disable

Option

Description

enable

Enable sending of preconnection ID.

disable

Disable sending of preconnection ID.

sso

Single sign-on.

option

-

disable

Option

Description

disable

Disable SSO.

static

Static SSO.

auto

Auto SSO.

sso-credential

Single sign-on credentials.

option

-

sslvpn-login

Option

Description

sslvpn-login

Agentless VPN login.

alternative

Alternative.

sso-credential-sent-once

Single sign-on credentials are only sent once to remote server.

option

-

disable

Option

Description

enable

Single sign-on credentials are only sent once to remote server.

disable

Single sign-on credentials are sent to remote server for every HTTP request.

sso-password

SSO password.

password

Not Specified

sso-username

SSO user name.

var-string

Maximum length: 35

url

URL parameter.

var-string

Maximum length: 128

vnc-keyboard-layout

Keyboard layout.

option

-

default

Option

Description

default

Default.

da

Danish.

nl

Dutch.

en-uk

English, United Kingdom.

en-uk-ext

English, United Kingdom Extended.

fi

Finnish.

fr

French.

fr-be

French, Belgium.

fr-ca-mul

French, Canadian Multilingual Std.

de

German.

de-ch

German, Switzerland.

it

Italian.

it-142

Italian (142).

pt

Portuguese.

pt-br-abnt2

Portuguese (Brazilian ABNT2).

no

Norwegian.

gd

Scottish Gaelic.

es

Spanish.

sv

Swedish.

us-intl

United States-International.

width

Screen width (range from 0 - 65535, default = 0).

integer

Minimum value: 0 Maximum value: 65535

0

config form-data

Parameter

Description

Type

Size

Default

name

Name.

string

Maximum length: 35

value

Value.

var-string

Maximum length: 63

config landing-page

Parameter

Description

Type

Size

Default

sso

Single sign-on.

option

-

disable

Option

Description

disable

Disable SSO.

static

Static SSO.

auto

Auto SSO.

sso-credential

Single sign-on credentials.

option

-

sslvpn-login

Option

Description

sslvpn-login

Agentless VPN login.

alternative

Alternative.

sso-password

SSO password.

password

Not Specified

sso-username

SSO user name.

var-string

Maximum length: 35

url

Landing page URL.

var-string

Maximum length: 511

config form-data

Parameter

Description

Type

Size

Default

name

Name.

string

Maximum length: 35

value

Value.

var-string

Maximum length: 63