Fortinet black logo

CLI Reference

system ip-detection

system ip-detection

Use this command to configure how FortiWeb analyzes the identification (ID) field in IP packet headers in order to distinguish source IP addresses that are actually Internet connections shared by multiple clients, not single clients.

To use this command, your administrator account’s access control profile must have either w or rw permission to the sysgrp area. For details, see Permissions.

Syntax

config system ip-detection

set share-ip-detection-level {low | medium | high}

end

Variable Description Default

share-ip-detection-level {low | medium | high}

Select how different packets’ ID fields can be before FortiWeb detects that an IP is shared by multiple clients. low

Related topics

system ip-detection

Use this command to configure how FortiWeb analyzes the identification (ID) field in IP packet headers in order to distinguish source IP addresses that are actually Internet connections shared by multiple clients, not single clients.

To use this command, your administrator account’s access control profile must have either w or rw permission to the sysgrp area. For details, see Permissions.

Syntax

config system ip-detection

set share-ip-detection-level {low | medium | high}

end

Variable Description Default

share-ip-detection-level {low | medium | high}

Select how different packets’ ID fields can be before FortiWeb detects that an IP is shared by multiple clients. low

Related topics