Ip pool, Ip pool” on – Fortinet 100A User Manual

Page 219

Advertising
background image

Firewall

Configuring virtual IPs

FortiGate-100A Administration Guide

01-28007-0068-20041203

219

10

Select OK.

To delete a virtual IP

1

Go to Firewall > Virtual IP.

2

Select the Delete icon beside the virtual IP you want to delete.

3

Select OK.

To edit a virtual IP

1

Go to Firewall > Virtual IP.

2

Select the Edit icon beside the virtual IP you want to modify.

3

Select OK.

IP pool

An IP pool (also called a dynamic IP pool) is a range of IP addresses added to a
firewall interface. You can enable Dynamic IP Pool in a firewall policy to translate the
source address of outgoing packets to an address randomly selected from the IP pool.
An IP pool list appears when the policy destination interface is the same as the IP pool
interface.

You can add an IP pool if you want to add NAT mode policies that translate source
addresses to addresses randomly selected from the IP pool rather than being limited
to the IP address of the destination interface.

For example, if you add an IP pool to the internal interface, you can select Dynamic IP
pool for WAN1->Internal, WAN2->Internal, DMZ1->Internal, and DMZ2->Internal

policies.

You can add multiple IP pools to any interface and select the IP pool to use when
configuring a firewall policy.

You can enter an IP address range using the following formats.

• x.x.x.x-x.x.x.x, for example 192.168.110.100-192.168.110.120
• x.x.x.[x-x], for example 192.168.110.[100-120]

This section describes:

IP pool list

IP pool options

Configuring IP pools

IP Pools for firewall policies that use fixed ports

IP pools and dynamic NAT

Advertising