Fortinet black logo

Administration Guide

Hyperscale policies

Hyperscale policies

In FortiManager, you can create hyperscale policies by configuring the policy package's policy offload level to Full Offload. For more information on hyperscale firewalls, see the FortiGate Administration Guide.

Note

You must enable the visibility of this feature in Policy & Objects before it can be configured. To toggle feature visibility, go to Policy & Objects > Tools > Feature Visibility, and add or remove a checkmark for the corresponding feature.

To use hyperscale policies in a policy package:
  1. Go to Policy & Objects in supported a ADOM version on FortiManager.
  2. Create a new policy package, or right click an existing policy package from the tree menu, and select Edit.
  3. Under the Policy Offload Level option, select Full Offload, and click OK.
    Hyperscale policy types enabled in Feature Visibility are now available in the policy package.
To configure a hyperscale policy:
  1. Ensure you are in the correct ADOM.
  2. Go to Policy & Objects > Policy Packages.
  3. In the tree menu for the policy package, click the selected hyperscale policy.
  4. Click Create New. The Create New Policy pane opens.
  5. Configure the hyperscale policy settings:
    NameEnter a name for the policy.
    Incoming InterfaceSelect the incoming interface.
    Outgoing InterfaceSelect the outgoing interface.

    Source Address

    Select the source address.

    Destination Address

    Select the destination address.

    Service

    Select services and service groups.

    Action

    Select an action for the policy to take: ACCEPT or DENY.

    Comments

    Optionally, enter comments about the policy.

    Advanced Options

    Expand to view advanced options for the policy.

    Note

    When configuring a Hyperscale Policy, there are fields to define IPv4 and IPv6 source addresses and destination addresses.

  6. Click OK to create the policy. By default, policies will be added to the bottom of the list.

Hyperscale policies

In FortiManager, you can create hyperscale policies by configuring the policy package's policy offload level to Full Offload. For more information on hyperscale firewalls, see the FortiGate Administration Guide.

Note

You must enable the visibility of this feature in Policy & Objects before it can be configured. To toggle feature visibility, go to Policy & Objects > Tools > Feature Visibility, and add or remove a checkmark for the corresponding feature.

To use hyperscale policies in a policy package:
  1. Go to Policy & Objects in supported a ADOM version on FortiManager.
  2. Create a new policy package, or right click an existing policy package from the tree menu, and select Edit.
  3. Under the Policy Offload Level option, select Full Offload, and click OK.
    Hyperscale policy types enabled in Feature Visibility are now available in the policy package.
To configure a hyperscale policy:
  1. Ensure you are in the correct ADOM.
  2. Go to Policy & Objects > Policy Packages.
  3. In the tree menu for the policy package, click the selected hyperscale policy.
  4. Click Create New. The Create New Policy pane opens.
  5. Configure the hyperscale policy settings:
    NameEnter a name for the policy.
    Incoming InterfaceSelect the incoming interface.
    Outgoing InterfaceSelect the outgoing interface.

    Source Address

    Select the source address.

    Destination Address

    Select the destination address.

    Service

    Select services and service groups.

    Action

    Select an action for the policy to take: ACCEPT or DENY.

    Comments

    Optionally, enter comments about the policy.

    Advanced Options

    Expand to view advanced options for the policy.

    Note

    When configuring a Hyperscale Policy, there are fields to define IPv4 and IPv6 source addresses and destination addresses.

  6. Click OK to create the policy. By default, policies will be added to the bottom of the list.