system ip-detection
Use this command to configure how FortiWeb analyzes the identification (ID) field in IP packet headers in order to distinguish source IP addresses that are actually Internet connections shared by multiple clients, not single clients.
To use this command, your administrator account’s access control profile must have either w
or rw
permission to the sysgrp
area. For details, see Permissions.
Syntax
config system ip-detection
set share-ip-detection-level {low | medium | high}
end
Variable | Description | Default |
Select how different packets’ ID fields can be before FortiWeb detects that an IP is shared by multiple clients. |
low
|