FGT3HD111111111 # config firewall auth-portal
FGT3HD111111111 (auth-portal) # get
groups:
portal-addr : 192.168.20.15
portal-addr6 :
identity-based-route:
FGT3HD111111111 # config firewall policy
FGT3HD111111111 (policy) # edit 5
FGT3HD111111111 (5) # get
policyid : 5
uuid : 736dca40-c042-51e7-b162-fb3c6250db81
srcintf:
== [ port1 ]
name: port1
dstintf:
== [ virtual-wan-link ]
name: virtual-wan-link
srcaddr:
== [ all ]
name: all
dstaddr:
== [ all ]
name: all
rtp-nat : disable
action : accept
status : enable
schedule : always
schedule-timeout : disable
service:
== [ ALL ]
name: ALL
utm-status : enable
logtraffic : all
logtraffic-start : disable
capture-packet : disable
auto-asic-offload : enable
wanopt : disable
webcache : disable
session-ttl : 0
vlan-cos-fwd : 255
vlan-cos-rev : 255
wccp : disable
ntlm : disable
ntlm-guest : disable
ntlm-enabled-browsers:
fsso : disable
rsso : disable
fsso-agent-for-ntlm :
groups:
== [ User-101admin1 ]
name: User-101admin1
users:
devices:
== [ all ]
name: all
auth-path : disable
disclaimer : disable
natip : 0.0.0.0 0.0.0.0
match-vip : disable
diffserv-forward : disable
diffserv-reverse : disable
tcp-mss-sender : 0
tcp-mss-receiver : 0
comments :
auth-cert :
auth-redirect-addr :
identity-based-route:
block-notification : disable
custom-log-fields:
tags:
replacemsg-override-group:
srcaddr-negate : disable
dstaddr-negate : disable
service-negate : disable
endpoint-compliance : disable
timeout-send-rst : disable
delay-tcp-npu-session: disable
profile-type : single
av-profile : default
webfilter-profile : default
spamfilter-profile :
dlp-sensor :
ips-sensor : default
application-list : default
voip-profile :
icap-profile :
profile-protocol-options: default
ssl-ssh-profile : certificate-inspection
traffic-shaper :
traffic-shaper-reverse:
per-ip-shaper :
nat : enable
permit-any-host : disable
permit-stun-host : disable
fixedport : disable
ippool : disable
central-nat : disable
redirect-url :
http://www.dla.go.th/