Fortigate WAN Management IP Whitelist

Modified on Sun, 9 Aug at 11:27 AM

Create address objects and an address group. In the web interface, this is under Policy & Objects -> Addresses.


If the web management is not on port 443, also make a service object matching the TCP port of the web interface.


Then open a terminal and run these, replacing as necessary:


config firewall local-in-policy
edit 1
set intf wan1
set srcaddr Remote_Admin_Addresses
set dstaddr all
set action accept
set service HTTPS_8443
set schedule always
next
edit 2
set intf wan1
set srcaddr all
set dstaddr all
set action deny
set service HTTPS_8443
set schedule always
next
end

Was this article helpful?

That’s Great!

Thank you for your feedback

Sorry! We couldn't be helpful

Thank you for your feedback

Let us know how can we improve this article!

Select at least one of the reasons
CAPTCHA verification is required.

Feedback sent

We appreciate your effort and will try to fix the article