Fortinet black logo

CLI Reference

server-policy ip-group

server-policy ip-group

Use this command to group IP addresses or IP ranges, so that you can later reference them in IP Protection > IP List (config waf ip-list).

To use this command, your administrator account’s access control profile must have both r and w permissions to items in the traroutegrp category.

Syntax

config server-policy ip-group

edit <index>

config members

edit <index>

set ip <IP_addresses_or_ranges>

next

end

next

end

Variable Description Default
<IP_addresses_or_ranges>

Enter one of the following values:

  • A single IP address that a client source IP must match, such as a trusted private network IP address (e.g. an administrator’s computer, 172.16.1.20). Multiple addresses or ranges should be separated with comma ",".
  • A range or addresses (e.g. 1.2.3.4,2001::1,1.2.3.4-1.2.3.40,2001::1-2001::100).

No default.

server-policy ip-group

Use this command to group IP addresses or IP ranges, so that you can later reference them in IP Protection > IP List (config waf ip-list).

To use this command, your administrator account’s access control profile must have both r and w permissions to items in the traroutegrp category.

Syntax

config server-policy ip-group

edit <index>

config members

edit <index>

set ip <IP_addresses_or_ranges>

next

end

next

end

Variable Description Default
<IP_addresses_or_ranges>

Enter one of the following values:

  • A single IP address that a client source IP must match, such as a trusted private network IP address (e.g. an administrator’s computer, 172.16.1.20). Multiple addresses or ranges should be separated with comma ",".
  • A range or addresses (e.g. 1.2.3.4,2001::1,1.2.3.4-1.2.3.40,2001::1-2001::100).

No default.