Fortinet black logo

CLI Reference

config firewall vip46

config firewall vip46

Configure IPv4 to IPv6 virtual IPs.

config firewall vip46

Description: Configure IPv4 to IPv6 virtual IPs.

edit <name>

set id {integer}

set uuid {uuid}

set srcintf-filter <interface-name1>, <interface-name2>, ...

set comment {var-string}

set type [static-nat|server-load-balance]

set src-filter <range1>, <range2>, ...

set extip {user}

set mappedip {user}

set arp-reply [disable|enable]

set portforward [disable|enable]

set protocol [tcp|udp]

set extport {user}

set mappedport {user}

set color {integer}

set ldb-method [static|round-robin|...]

set server-type [http|tcp|...]

config realservers

Description: Real servers.

edit <id>

set ip {ipv6-address}

set port {integer}

set status [active|standby|...]

set weight {integer}

set holddown-interval {integer}

set healthcheck [disable|enable|...]

set max-connections {integer}

set monitor <name1>, <name2>, ...

set client-ip {user}

next

end

set monitor <name1>, <name2>, ...

next

end

config firewall vip46

Parameter

Description

Type

Size

Default

id

Custom defined id.

integer

Minimum value: 0 Maximum value: 65535

0

uuid

Universally Unique Identifier (UUID; automatically assigned but can be manually reset).

uuid

Not Specified

00000000-0000-0000-0000-000000000000

srcintf-filter <interface-name>

Interfaces to which the VIP46 applies. Separate the names with spaces.

Interface name.

string

Maximum length: 79

comment

Comment.

var-string

Maximum length: 255

type

VIP type: static NAT or server load balance.

option

-

static-nat

Option

Description

static-nat

Static NAT.

server-load-balance

Server load balance.

src-filter <range>

Source IP filter (x.x.x.x/x).

Src-filter range.

string

Maximum length: 79

extip

Start-external-IP [-end-external-IP].

user

Not Specified

mappedip

Start-mapped-IPv6-address [-end mapped-IPv6-address].

user

Not Specified

arp-reply

Enable ARP reply.

option

-

enable

Option

Description

disable

Disable ARP reply.

enable

Enable ARP reply.

portforward

Enable port forwarding.

option

-

disable

Option

Description

disable

Disable port forwarding.

enable

Enable port forwarding.

protocol

Mapped port protocol.

option

-

tcp

Option

Description

tcp

TCP.

udp

UDP.

extport

External service port.

user

Not Specified

mappedport

Mapped service port.

user

Not Specified

color

Color of icon on the GUI.

integer

Minimum value: 0 Maximum value: 32

0

ldb-method

Load balance method.

option

-

static

Option

Description

static

Distribute sessions based on source IP.

round-robin

Distribute sessions based round robin order.

weighted

Distribute sessions based on weight.

least-session

Distribute sessions to the server with the lowest session count.

least-rtt

Distribute sessions to the server with the lowest Round-Trip-Time.

first-alive

Distribute sessions to the first server that is alive.

server-type

Server type.

option

-

Option

Description

http

HTTP

tcp

TCP

udp

UDP

ip

IP

monitor <name>

Health monitors.

Health monitor name.

string

Maximum length: 79

config realservers

Parameter

Description

Type

Size

Default

ip

Mapped server IPv6.

ipv6-address

Not Specified

::

port

Mapped server port.

integer

Minimum value: 1 Maximum value: 65535

0

status

Server administrative status.

option

-

active

Option

Description

active

Server status active.

standby

Server status standby.

disable

Server status disable.

weight

weight

integer

Minimum value: 1 Maximum value: 255

1

holddown-interval

Hold down interval.

integer

Minimum value: 30 Maximum value: 65535

300

healthcheck

Per server health check.

option

-

vip

Option

Description

disable

Disable per server health check.

enable

Enable per server health check.

vip

Use health check defined in VIP.

max-connections

Maximum number of connections allowed to server.

integer

Minimum value: 0 Maximum value: 2147483647

0

monitor <name>

Health monitors.

Health monitor name.

string

Maximum length: 79

client-ip

Restrict server to a client IP in this range.

user

Not Specified

config firewall vip46

Configure IPv4 to IPv6 virtual IPs.

config firewall vip46

Description: Configure IPv4 to IPv6 virtual IPs.

edit <name>

set id {integer}

set uuid {uuid}

set srcintf-filter <interface-name1>, <interface-name2>, ...

set comment {var-string}

set type [static-nat|server-load-balance]

set src-filter <range1>, <range2>, ...

set extip {user}

set mappedip {user}

set arp-reply [disable|enable]

set portforward [disable|enable]

set protocol [tcp|udp]

set extport {user}

set mappedport {user}

set color {integer}

set ldb-method [static|round-robin|...]

set server-type [http|tcp|...]

config realservers

Description: Real servers.

edit <id>

set ip {ipv6-address}

set port {integer}

set status [active|standby|...]

set weight {integer}

set holddown-interval {integer}

set healthcheck [disable|enable|...]

set max-connections {integer}

set monitor <name1>, <name2>, ...

set client-ip {user}

next

end

set monitor <name1>, <name2>, ...

next

end

config firewall vip46

Parameter

Description

Type

Size

Default

id

Custom defined id.

integer

Minimum value: 0 Maximum value: 65535

0

uuid

Universally Unique Identifier (UUID; automatically assigned but can be manually reset).

uuid

Not Specified

00000000-0000-0000-0000-000000000000

srcintf-filter <interface-name>

Interfaces to which the VIP46 applies. Separate the names with spaces.

Interface name.

string

Maximum length: 79

comment

Comment.

var-string

Maximum length: 255

type

VIP type: static NAT or server load balance.

option

-

static-nat

Option

Description

static-nat

Static NAT.

server-load-balance

Server load balance.

src-filter <range>

Source IP filter (x.x.x.x/x).

Src-filter range.

string

Maximum length: 79

extip

Start-external-IP [-end-external-IP].

user

Not Specified

mappedip

Start-mapped-IPv6-address [-end mapped-IPv6-address].

user

Not Specified

arp-reply

Enable ARP reply.

option

-

enable

Option

Description

disable

Disable ARP reply.

enable

Enable ARP reply.

portforward

Enable port forwarding.

option

-

disable

Option

Description

disable

Disable port forwarding.

enable

Enable port forwarding.

protocol

Mapped port protocol.

option

-

tcp

Option

Description

tcp

TCP.

udp

UDP.

extport

External service port.

user

Not Specified

mappedport

Mapped service port.

user

Not Specified

color

Color of icon on the GUI.

integer

Minimum value: 0 Maximum value: 32

0

ldb-method

Load balance method.

option

-

static

Option

Description

static

Distribute sessions based on source IP.

round-robin

Distribute sessions based round robin order.

weighted

Distribute sessions based on weight.

least-session

Distribute sessions to the server with the lowest session count.

least-rtt

Distribute sessions to the server with the lowest Round-Trip-Time.

first-alive

Distribute sessions to the first server that is alive.

server-type

Server type.

option

-

Option

Description

http

HTTP

tcp

TCP

udp

UDP

ip

IP

monitor <name>

Health monitors.

Health monitor name.

string

Maximum length: 79

config realservers

Parameter

Description

Type

Size

Default

ip

Mapped server IPv6.

ipv6-address

Not Specified

::

port

Mapped server port.

integer

Minimum value: 1 Maximum value: 65535

0

status

Server administrative status.

option

-

active

Option

Description

active

Server status active.

standby

Server status standby.

disable

Server status disable.

weight

weight

integer

Minimum value: 1 Maximum value: 255

1

holddown-interval

Hold down interval.

integer

Minimum value: 30 Maximum value: 65535

300

healthcheck

Per server health check.

option

-

vip

Option

Description

disable

Disable per server health check.

enable

Enable per server health check.

vip

Use health check defined in VIP.

max-connections

Maximum number of connections allowed to server.

integer

Minimum value: 0 Maximum value: 2147483647

0

monitor <name>

Health monitors.

Health monitor name.

string

Maximum length: 79

client-ip

Restrict server to a client IP in this range.

user

Not Specified