Fortinet black logo

Administration Guide

Creating normalized interfaces

Creating normalized interfaces

If you want to use a physical interface name in a per-platform mapping rule in a normalized interface, you must first delete the default per-platform mapping rule from the default per-platform interface. Otherwise the dynamic-interface default mapping has been used error is displayed, and you cannot create the normalized interface.

Default Interface Mapping Error

To delete the default per-platform mapping rule:
  1. Go to Policy & Objects > Object Configurations > Normalized Interface > Normalized Interface.
  2. In the content pane, right-click the default per-platform normalized interface, and select Edit.

    The Edit Normalized Interface page appears.

  3. In the Per-Platform Mapping table, right-click the default per-platform mapping rule, and select Delete.
  4. Click OK.
Creating normalized interfaces for zones
To enable zone-only interface mapping:
  1. In the FortiManager CLI, enter the following commands to enable zone-only interface mapping.

    config system global

    set normalized-intf-zone-only enable

To create normalized interfaces for zones:
  1. Go to Policy & Objects > Object Configurations > Normalized Interface > Normalized Interface.
  2. Click Create New.

    The Create New Normalized Interface pane is displayed.

  3. Complete the Name, Description, and Color options.
  4. Optionally, enable Map as zone only.
    This setting allows the normalized interface to be mapped only as a zone. This feature must be enabled in the CLI before it is available in the GUI.
  5. Add a per-platform mapping.
    1. Toggle Per-Platform Mapping to ON.

      The Per-Platform Mapping table is displayed.

    2. Click Create New.

      The Create new Per-Platform Mapping dialog box is displayed.

    3. In the Matched Platform list, select the model for which you created the zone.
    4. In the Mapped Interface Name box, type the name of the interface.
    5. Click OK.
  6. Add a per-device mapping.
    1. Toggle Per-Device Mapping to ON.

      The Per-Device Mapping table is displayed.

    2. Click Create New.

      The Create new Per-Device Mapping dialog box is displayed.

    3. In the Mapped Device list, select the model for which you created the zone.
    4. In the Mapped Interface Name, select the zone.
    5. Click OK.
  7. Click OK.
    Once the zone has been created, you can select it when configuring device zones. See Device zones.

Creating normalized interfaces

If you want to use a physical interface name in a per-platform mapping rule in a normalized interface, you must first delete the default per-platform mapping rule from the default per-platform interface. Otherwise the dynamic-interface default mapping has been used error is displayed, and you cannot create the normalized interface.

Default Interface Mapping Error

To delete the default per-platform mapping rule:
  1. Go to Policy & Objects > Object Configurations > Normalized Interface > Normalized Interface.
  2. In the content pane, right-click the default per-platform normalized interface, and select Edit.

    The Edit Normalized Interface page appears.

  3. In the Per-Platform Mapping table, right-click the default per-platform mapping rule, and select Delete.
  4. Click OK.
Creating normalized interfaces for zones
To enable zone-only interface mapping:
  1. In the FortiManager CLI, enter the following commands to enable zone-only interface mapping.

    config system global

    set normalized-intf-zone-only enable

To create normalized interfaces for zones:
  1. Go to Policy & Objects > Object Configurations > Normalized Interface > Normalized Interface.
  2. Click Create New.

    The Create New Normalized Interface pane is displayed.

  3. Complete the Name, Description, and Color options.
  4. Optionally, enable Map as zone only.
    This setting allows the normalized interface to be mapped only as a zone. This feature must be enabled in the CLI before it is available in the GUI.
  5. Add a per-platform mapping.
    1. Toggle Per-Platform Mapping to ON.

      The Per-Platform Mapping table is displayed.

    2. Click Create New.

      The Create new Per-Platform Mapping dialog box is displayed.

    3. In the Matched Platform list, select the model for which you created the zone.
    4. In the Mapped Interface Name box, type the name of the interface.
    5. Click OK.
  6. Add a per-device mapping.
    1. Toggle Per-Device Mapping to ON.

      The Per-Device Mapping table is displayed.

    2. Click Create New.

      The Create new Per-Device Mapping dialog box is displayed.

    3. In the Mapped Device list, select the model for which you created the zone.
    4. In the Mapped Interface Name, select the zone.
    5. Click OK.
  7. Click OK.
    Once the zone has been created, you can select it when configuring device zones. See Device zones.