Fortinet white logo
Fortinet white logo

CLI Reference

config web-proxy isolator-server

config web-proxy isolator-server

Configure forward-server addresses.

config web-proxy isolator-server
    Description: Configure forward-server addresses.
    edit <name>
        set addr-type [ip|ipv6|...]
        set comment {string}
        set fabric-force-sync [enable|disable]
        set fabric-object [enable|disable]
        set fabric-object-source [member|local|...]
        set fqdn {string}
        set interface {string}
        set interface-select-method [sdwan|specify]
        set ip {ipv4-address-any}
        set ipv6 {ipv6-address}
        set masquerade [enable|disable]
        set port {integer}
        set uuid {uuid}
        set vrf-select {integer}
    next
end

config web-proxy isolator-server

Parameter

Description

Type

Size

Default

addr-type

Address type of the forwarding proxy server: IP or FQDN.

option

-

ip

Option

Description

ip

Use an IPv4 address for the forwarding proxy server.

ipv6

Use an IPv6 address for the forwarding proxy server.

fqdn

Use the FQDN for the forwarding proxy server.

comment

Comment.

string

Maximum length: 63

fabric-force-sync *

Enable/disable forced synchronization of configuration objects from the root FortiGate unit to the downstream devices. Configuration conflict check is skipped.

option

-

disable

Option

Description

enable

Enable forced synchronization of configuration objects from the root FortiGate unit to the downstream devices.

disable

Disable forced synchronization of configuration objects from the root FortiGate unit to the downstream devices.

fabric-object *

Security Fabric global object setting.

option

-

disable

Option

Description

enable

Object is set as a security fabric-wide global object.

disable

Object is local to this security fabric member.

fabric-object-source *

Source of truth for fabric object.

option

-

root

Option

Description

member

Source of truth for this object is a non-root member of fabric.

local

Source of truth for this object is this security fabric member.

root

Source of truth for this object is the root of the fabric.

fqdn

Forward server Fully Qualified Domain Name (FQDN).

string

Maximum length: 255

interface

Specify outgoing interface to reach server.

string

Maximum length: 15

interface-select-method

Specify how to select outgoing interface to reach server.

option

-

sdwan

Option

Description

sdwan

Set outgoing interface by SD-WAN or policy routing rules.

specify

Set outgoing interface manually.

ip

Forward proxy server IP address.

ipv4-address-any

Not Specified

0.0.0.0

ipv6

Forward proxy server IPv6 address.

ipv6-address

Not Specified

::

masquerade

Enable/disable use of the IP address of the outgoing interface as the client IP address (default = enable)

option

-

enable

Option

Description

enable

Enable use of the IP address of the outgoing interface as the client IP address.

disable

Disable use of the IP address of the outgoing interface as the client IP address.

name

Server name.

string

Maximum length: 63

port

Port number that the forwarding server expects to receive HTTP sessions on (1 - 65535, default = 3128).

integer

Minimum value: 1 Maximum value: 65535

3128

uuid *

Universally Unique Identifier (UUID; automatically assigned but can be manually reset).

uuid

Not Specified

00000000-0000-0000-0000-000000000000

vrf-select

VRF ID used for connection to server.

integer

Minimum value: 0 Maximum value: 511

-1

* This parameter may not exist in some models.

config web-proxy isolator-server

config web-proxy isolator-server

Configure forward-server addresses.

config web-proxy isolator-server
    Description: Configure forward-server addresses.
    edit <name>
        set addr-type [ip|ipv6|...]
        set comment {string}
        set fabric-force-sync [enable|disable]
        set fabric-object [enable|disable]
        set fabric-object-source [member|local|...]
        set fqdn {string}
        set interface {string}
        set interface-select-method [sdwan|specify]
        set ip {ipv4-address-any}
        set ipv6 {ipv6-address}
        set masquerade [enable|disable]
        set port {integer}
        set uuid {uuid}
        set vrf-select {integer}
    next
end

config web-proxy isolator-server

Parameter

Description

Type

Size

Default

addr-type

Address type of the forwarding proxy server: IP or FQDN.

option

-

ip

Option

Description

ip

Use an IPv4 address for the forwarding proxy server.

ipv6

Use an IPv6 address for the forwarding proxy server.

fqdn

Use the FQDN for the forwarding proxy server.

comment

Comment.

string

Maximum length: 63

fabric-force-sync *

Enable/disable forced synchronization of configuration objects from the root FortiGate unit to the downstream devices. Configuration conflict check is skipped.

option

-

disable

Option

Description

enable

Enable forced synchronization of configuration objects from the root FortiGate unit to the downstream devices.

disable

Disable forced synchronization of configuration objects from the root FortiGate unit to the downstream devices.

fabric-object *

Security Fabric global object setting.

option

-

disable

Option

Description

enable

Object is set as a security fabric-wide global object.

disable

Object is local to this security fabric member.

fabric-object-source *

Source of truth for fabric object.

option

-

root

Option

Description

member

Source of truth for this object is a non-root member of fabric.

local

Source of truth for this object is this security fabric member.

root

Source of truth for this object is the root of the fabric.

fqdn

Forward server Fully Qualified Domain Name (FQDN).

string

Maximum length: 255

interface

Specify outgoing interface to reach server.

string

Maximum length: 15

interface-select-method

Specify how to select outgoing interface to reach server.

option

-

sdwan

Option

Description

sdwan

Set outgoing interface by SD-WAN or policy routing rules.

specify

Set outgoing interface manually.

ip

Forward proxy server IP address.

ipv4-address-any

Not Specified

0.0.0.0

ipv6

Forward proxy server IPv6 address.

ipv6-address

Not Specified

::

masquerade

Enable/disable use of the IP address of the outgoing interface as the client IP address (default = enable)

option

-

enable

Option

Description

enable

Enable use of the IP address of the outgoing interface as the client IP address.

disable

Disable use of the IP address of the outgoing interface as the client IP address.

name

Server name.

string

Maximum length: 63

port

Port number that the forwarding server expects to receive HTTP sessions on (1 - 65535, default = 3128).

integer

Minimum value: 1 Maximum value: 65535

3128

uuid *

Universally Unique Identifier (UUID; automatically assigned but can be manually reset).

uuid

Not Specified

00000000-0000-0000-0000-000000000000

vrf-select

VRF ID used for connection to server.

integer

Minimum value: 0 Maximum value: 511

-1

* This parameter may not exist in some models.