Viewing the firewall policy list Firewall Policy
FortiGate Version 4.0 Administration Guide
322 01-400-89802-20090424
http://docs.fortinet.com/ • Feedback
Create New Add a firewall policy. Select the down arrow beside Create New to add a firewall
policy or firewall policy section. A firewall policy section visually groups firewall
policies. For more information, see “Configuring firewall policies” on page 323.
Column Settings Customize the table view. You can select the columns to hide or display and
specify the column displaying order in the table. For more information, see
“Using column settings to control the columns displayed” on page 58 and
“Web-based manager icons” on page 60.
Section View Select to display firewall policies organized by source and destination interfaces.
Note: Section View is not available if any policy selects Any as the source or
destination interface.
Global View Select to list all firewall policies in order according to a sequence number.
Filter icons Edit the column filters to filter or sort the policy list according to the criteria you
specify. For more information, see “Adding filters to web-based manager lists”
on page 53.
ID The policy identifier. Policies are numbered in the order they are added to the
policy list.
From The source interface of the policy. Global view only.
To The destination interface of the policy. Global view only.
Source The source address or address group to which the policy applies. For more
information, see “Firewall Address” on page 345.
Destination The destination address or address group to which the policy applies. For more
information, see “Firewall Address” on page 345.
Schedule The schedule that controls when the policy should be active. For more
information, see “Firewall Schedule” on page 361.
Service The service to which the policy applies. For more information, see “Firewall
Service” on page 351.
Profile The protection profile that is associated with the policy.
Action The response to make when the policy matches a connection attempt.
Status Select the checkbox to enable a policy or deselect it to disable a policy.
From The source interface.
To The destination interface.
VPN Tunnel The VPN tunnel the VPN policy uses.
Authentication The user authentication method the policy uses.
Comments Comments entered when creating or editing the policy.
Log A green check mark indicates traffic logging is enabled for the policy; a grey
cross mark indicates traffic logging is disabled for the policy.
Count The FortiGate unit counts the number of packets and bytes that hit the firewall
policy.
For example, 5/50B means that five packets and 50 bytes in total have hit the
policy.
The counter is reset when the FortiGate unit is restarted or the policy is deleted
and re-configured.
Delete icon Delete the policy from the list.
Edit icon Edit the policy.
Insert Policy
Before icon
Add a new policy above the corresponding policy (the New Policy screen
appears).
Move To icon Move the corresponding policy before or after another policy in the list. For more
information, see “Moving a policy to a different position in the policy list” on
page 320.