Fortinet 100A Router User Manual


 
Firewall Configuring virtual IPs
FortiGate-100A Administration Guide 01-28007-0068-20041203 219
10 Select OK.
To delete a virtual IP
1 Go to Firewall > Virtual IP.
2 Select the Delete icon beside the virtual IP you want to delete.
3 Select OK.
To edit a virtual IP
1 Go to Firewall > Virtual IP.
2 Select the Edit icon beside the virtual IP you want to modify.
3 Select OK.
IP pool
An IP pool (also called a dynamic IP pool) is a range of IP addresses added to a
firewall interface. You can enable Dynamic IP Pool in a firewall policy to translate the
source address of outgoing packets to an address randomly selected from the IP pool.
An IP pool list appears when the policy destination interface is the same as the IP pool
interface.
You can add an IP pool if you want to add NAT mode policies that translate source
addresses to addresses randomly selected from the IP pool rather than being limited
to the IP address of the destination interface.
For example, if you add an IP pool to the internal interface, you can select Dynamic IP
pool for WAN1->Internal, WAN2->Internal, DMZ1->Internal, and DMZ2->Internal
policies.
You can add multiple IP pools to any interface and select the IP pool to use when
configuring a firewall policy.
You can enter an IP address range using the following formats.
x.x.x.x-x.x.x.x, for example 192.168.110.100-192.168.110.120
x.x.x.[x-x], for example 192.168.110.[100-120]
This section describes:
IP pool list
IP pool options
Configuring IP pools
IP Pools for firewall policies that use fixed ports
IP pools and dynamic NAT