Ansible Galaxy FortiOS Collection
2.2.1

FortiOS/Galaxy Version Mapping Guide

  • FortiOS Galaxy Versioning

User's Guide

  • Install FortiOS Ansible Galaxy
  • Run Your First Playbook
  • Frequently Asked Questions (FAQ)
  • Get Help

modules index

  • Configuration Modules
    • fortios_alertemail_setting – Configure alert email settings in Fortinet’s FortiOS and FortiGate.
    • fortios_antivirus_heuristic – Configure global heuristic options in Fortinet’s FortiOS and FortiGate.
    • fortios_antivirus_mms_checksum – Configure MMS content checksum list in Fortinet’s FortiOS and FortiGate.
    • fortios_antivirus_notification – Configure AntiVirus notification lists in Fortinet’s FortiOS and FortiGate.
    • fortios_antivirus_profile – Configure AntiVirus profiles in Fortinet’s FortiOS and FortiGate.
    • fortios_antivirus_quarantine – Configure quarantine options in Fortinet’s FortiOS and FortiGate.
    • fortios_antivirus_settings – Configure AntiVirus settings in Fortinet’s FortiOS and FortiGate.
    • fortios_application_custom – Configure custom application signatures in Fortinet’s FortiOS and FortiGate.
    • fortios_application_group – Configure firewall application groups in Fortinet’s FortiOS and FortiGate.
    • fortios_application_list – Configure application control lists in Fortinet’s FortiOS and FortiGate.
    • fortios_application_name – Configure application signatures in Fortinet’s FortiOS and FortiGate.
    • fortios_application_rule_settings – Configure application rule settings in Fortinet’s FortiOS and FortiGate.
    • fortios_authentication_rule – Configure Authentication Rules in Fortinet’s FortiOS and FortiGate.
    • fortios_authentication_scheme – Configure Authentication Schemes in Fortinet’s FortiOS and FortiGate.
    • fortios_authentication_setting – Configure authentication setting in Fortinet’s FortiOS and FortiGate.
    • fortios_automation_setting – Automation setting configuration in Fortinet’s FortiOS and FortiGate.
    • fortios_certificate_ca – CA certificate in Fortinet’s FortiOS and FortiGate.
    • fortios_certificate_crl – Certificate Revocation List as a PEM file in Fortinet’s FortiOS and FortiGate.
    • fortios_certificate_local – Local keys and certificates in Fortinet’s FortiOS and FortiGate.
    • fortios_certificate_remote – Remote certificate as a PEM file in Fortinet’s FortiOS and FortiGate.
    • fortios_cifs_domain_controller – Define known domain controller servers in Fortinet’s FortiOS and FortiGate.
    • fortios_cifs_profile – Configure CIFS profile in Fortinet’s FortiOS and FortiGate.
    • fortios_credential_store_domain_controller – Define known domain controller servers in Fortinet’s FortiOS and FortiGate.
    • fortios_dlp_data_type – Configure predefined data type used by DLP blocking in Fortinet’s FortiOS and FortiGate.
    • fortios_dlp_dictionary – Configure dictionaries used by DLP blocking in Fortinet’s FortiOS and FortiGate.
    • fortios_dlp_filepattern – Configure file patterns used by DLP blocking in Fortinet’s FortiOS and FortiGate.
    • fortios_dlp_fp_doc_source – Create a DLP fingerprint database by allowing the FortiGate to access a file server containing files from which to create fingerprints in Fortinet’s FortiOS and FortiGate.
    • fortios_dlp_fp_sensitivity – Create self-explanatory DLP sensitivity levels to be used when setting sensitivity under config fp-doc-source in Fortinet’s FortiOS and FortiGate.
    • fortios_dlp_profile – Configure DLP profiles in Fortinet’s FortiOS and FortiGate.
    • fortios_dlp_sensitivity – Create self-explanatory DLP sensitivity levels to be used when setting sensitivity under config fp-doc-source in Fortinet’s FortiOS and FortiGate.
    • fortios_dlp_sensor – Configure sensors used by DLP blocking in Fortinet’s FortiOS and FortiGate.
    • fortios_dlp_settings – Designate logical storage for DLP fingerprint database in Fortinet’s FortiOS and FortiGate.
    • fortios_dnsfilter_domain_filter – Configure DNS domain filters in Fortinet’s FortiOS and FortiGate.
    • fortios_dnsfilter_profile – Configure DNS domain filter profile in Fortinet’s FortiOS and FortiGate.
    • fortios_dpdk_cpus – Configure CPUs enabled to run engines in each DPDK stage in Fortinet’s FortiOS and FortiGate.
    • fortios_dpdk_global – Configure global DPDK options in Fortinet’s FortiOS and FortiGate.
    • fortios_emailfilter_block_allow_list – Configure anti-spam block/allow list in Fortinet’s FortiOS and FortiGate.
    • fortios_emailfilter_bwl – Configure anti-spam black/white list in Fortinet’s FortiOS and FortiGate.
    • fortios_emailfilter_bword – Configure AntiSpam banned word list in Fortinet’s FortiOS and FortiGate.
    • fortios_emailfilter_dnsbl – Configure AntiSpam DNSBL/ORBL in Fortinet’s FortiOS and FortiGate.
    • fortios_emailfilter_fortishield – Configure FortiGuard - AntiSpam in Fortinet’s FortiOS and FortiGate.
    • fortios_emailfilter_iptrust – Configure AntiSpam IP trust in Fortinet’s FortiOS and FortiGate.
    • fortios_emailfilter_mheader – Configure AntiSpam MIME header in Fortinet’s FortiOS and FortiGate.
    • fortios_emailfilter_options – Configure AntiSpam options in Fortinet’s FortiOS and FortiGate.
    • fortios_emailfilter_profile – Configure Email Filter profiles in Fortinet’s FortiOS and FortiGate.
    • fortios_endpoint_control_client – Configure endpoint control client lists in Fortinet’s FortiOS and FortiGate.
    • fortios_endpoint_control_fctems – Configure FortiClient Enterprise Management Server (EMS) entries in Fortinet’s FortiOS and FortiGate.
    • fortios_endpoint_control_forticlient_ems – Configure FortiClient Enterprise Management Server (EMS) entries in Fortinet’s FortiOS and FortiGate.
    • fortios_endpoint_control_forticlient_registration_sync – Configure FortiClient registration synchronization settings in Fortinet’s FortiOS and FortiGate.
    • fortios_endpoint_control_profile – Configure FortiClient endpoint control profiles in Fortinet’s FortiOS and FortiGate.
    • fortios_endpoint_control_registered_forticlient – Registered FortiClient list in Fortinet’s FortiOS and FortiGate.
    • fortios_endpoint_control_settings – Configure endpoint control settings in Fortinet’s FortiOS and FortiGate.
    • fortios_extender_controller_dataplan – FortiExtender dataplan configuration in Fortinet’s FortiOS and FortiGate.
    • fortios_extender_controller_extender – Extender controller configuration in Fortinet’s FortiOS and FortiGate.
    • fortios_extender_controller_extender_profile – FortiExtender extender profile configuration in Fortinet’s FortiOS and FortiGate.
    • fortios_extender_extender_info – Display FortiExtender struct information in Fortinet’s FortiOS and FortiGate.
    • fortios_extender_lte_carrier_by_mcc_mnc – Display FortiExtender modem carrier based on MCC and MNC in Fortinet’s FortiOS and FortiGate.
    • fortios_extender_lte_carrier_list – Display FortiExtender modem carrier list in Fortinet’s FortiOS and FortiGate.
    • fortios_extender_modem_status – Display detailed FortiExtender modem status in Fortinet’s FortiOS and FortiGate.
    • fortios_extender_sys_info – Display detailed FortiExtender system information in Fortinet’s FortiOS and FortiGate.
    • fortios_extension_controller_dataplan – FortiExtender dataplan configuration in Fortinet’s FortiOS and FortiGate.
    • fortios_extension_controller_extender – Extender controller configuration in Fortinet’s FortiOS and FortiGate.
    • fortios_extension_controller_extender_profile – FortiExtender extender profile configuration in Fortinet’s FortiOS and FortiGate.
    • fortios_extension_controller_fortigate – FortiGate controller configuration in Fortinet’s FortiOS and FortiGate.
    • fortios_extension_controller_fortigate_profile – FortiGate connector profile configuration in Fortinet’s FortiOS and FortiGate.
    • fortios_file_filter_profile – Configure file-filter profiles in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_access_proxy – Configure IPv4 access proxy in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_access_proxy6 – Configure IPv6 access proxy in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_access_proxy_ssh_client_cert – Configure Access Proxy SSH client certificate in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_access_proxy_virtual_host – Configure Access Proxy virtual hosts in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_acl – Configure IPv4 access control list in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_acl6 – Configure IPv6 access control list in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_address – Configure IPv4 addresses in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_address6 – Configure IPv6 firewall addresses in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_address6_template – Configure IPv6 address templates in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_addrgrp – Configure IPv4 address groups in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_addrgrp6 – Configure IPv6 address groups in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_auth_portal – Configure firewall authentication portals in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_carrier_endpoint_bwl – Carrier end point black/white list tables in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_central_snat_map – Configure IPv4 and IPv6 central SNAT policies in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_city – Define city table in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_consolidated_policy – Configure consolidated IPv4/IPv6 policies in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_country – Define country table in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_decrypted_traffic_mirror – Configure decrypted traffic mirror in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_dnstranslation – Configure DNS translation in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_dos_policy – Configure IPv4 DoS policies in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_dos_policy6 – Configure IPv6 DoS policies in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_global – Global firewall settings in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_gtp – Configure GTP in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_identity_based_route – Configure identity based routing in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_interface_policy – Configure IPv4 interface policies in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_interface_policy6 – Configure IPv6 interface policies in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_internet_service – Show Internet Service application in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_internet_service_addition – Configure Internet Services Addition in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_internet_service_append – Configure additional port mappings for Internet Services in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_internet_service_botnet – Show Internet Service botnet in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_internet_service_custom – Configure custom Internet Services in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_internet_service_custom_group – Configure custom Internet Service group in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_internet_service_definition – Configure Internet Service definition in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_internet_service_extension – Configure Internet Services Extension in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_internet_service_group – Configure group of Internet Service in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_internet_service_ipbl_reason – IP block list reason in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_internet_service_ipbl_vendor – IP block list vendor in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_internet_service_list – Internet Service list in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_internet_service_name – Define internet service names in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_internet_service_owner – Internet Service owner in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_internet_service_reputation – Show Internet Service reputation in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_internet_service_sld – Internet Service Second Level Domain in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_ip_translation – Configure firewall IP-translation in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_ipmacbinding_setting – Configure IP to MAC binding settings in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_ipmacbinding_table – Configure IP to MAC address pairs in the IP/MAC binding table in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_ippool – Configure IPv4 IP pools in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_ippool6 – Configure IPv6 IP pools in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_iprope_list – List in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_ipv6_eh_filter – Configure IPv6 extension header filter in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_ldb_monitor – Configure server load balancing health monitors in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_local_in_policy – Configure user defined IPv4 local-in policies in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_local_in_policy6 – Configure user defined IPv6 local-in policies in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_mms_profile – Configure MMS profiles in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_multicast_address – Configure multicast addresses in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_multicast_address6 – Configure IPv6 multicast address in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_multicast_policy – Configure multicast NAT policies in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_multicast_policy6 – Configure IPv6 multicast NAT policies in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_network_service_dynamic – Configure Dynamic Network Services in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_pfcp – Configure PFCP in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_policy – Configure IPv4/IPv6 policies in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_policy46 – Configure IPv4 to IPv6 policies in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_policy6 – Configure IPv6 policies in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_policy64 – Configure IPv6 to IPv4 policies in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_profile_group – Configure profile groups in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_profile_protocol_options – Configure protocol options in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_proute – List policy routing in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_proxy_address – Configure web proxy address in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_proxy_addrgrp – Configure web proxy address group in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_proxy_policy – Configure proxy policies in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_region – Define region table in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_schedule_group – Schedule group configuration in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_schedule_onetime – Onetime schedule configuration in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_schedule_recurring – Recurring schedule configuration in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_security_policy – Configure NGFW IPv4/IPv6 application policies in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_service_category – Configure service categories in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_service_custom – Configure custom services in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_service_group – Configure service groups in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_shaper_per_ip_shaper – Configure per-IP traffic shaper in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_shaper_traffic_shaper – Configure shared traffic shaper in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_shaping_policy – Configure shaping policies in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_shaping_profile – Configure shaping profiles in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_sniffer – Configure sniffer in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_ssh_host_key – SSH proxy host public keys in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_ssh_local_ca – SSH proxy local CA in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_ssh_local_key – SSH proxy local keys in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_ssh_setting – SSH proxy settings in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_ssl_server – Configure SSL servers in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_ssl_setting – SSL proxy settings in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_ssl_ssh_profile – Configure SSL/SSH protocol options in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_traffic_class – Configure names for shaping classes in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_ttl_policy – Configure TTL policies in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_vendor_mac – Show vendor and the MAC address they have in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_vip – Configure virtual IP for IPv4 in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_vip46 – Configure IPv4 to IPv6 virtual IPs in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_vip6 – Configure virtual IP for IPv6 in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_vip64 – Configure IPv6 to IPv4 virtual IPs in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_vipgrp – Configure IPv4 virtual IP groups in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_vipgrp46 – Configure IPv4 to IPv6 virtual IP groups in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_vipgrp6 – Configure IPv6 virtual IP groups in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_vipgrp64 – Configure IPv6 to IPv4 virtual IP groups in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_wildcard_fqdn_custom – Config global/VDOM Wildcard FQDN address in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_wildcard_fqdn_group – Config global Wildcard FQDN address groups in Fortinet’s FortiOS and FortiGate.
    • fortios_ftp_proxy_explicit – Configure explicit FTP proxy settings in Fortinet’s FortiOS and FortiGate.
    • fortios_gtp_apn – Configure APN for GTP in Fortinet’s FortiOS and FortiGate.
    • fortios_gtp_apn_shaper – Global per-APN shaper in Fortinet’s FortiOS and FortiGate.
    • fortios_gtp_apngrp – Configure APN groups for GTP in Fortinet’s FortiOS and FortiGate.
    • fortios_gtp_ie_allow_list – IE allow list in Fortinet’s FortiOS and FortiGate.
    • fortios_gtp_ie_white_list – IE white list in Fortinet’s FortiOS and FortiGate.
    • fortios_gtp_message_filter_v0v1 – Message filter for GTPv0/v1 messages in Fortinet’s FortiOS and FortiGate.
    • fortios_gtp_message_filter_v2 – Message filter for GTPv2 messages in Fortinet’s FortiOS and FortiGate.
    • fortios_gtp_rat_timeout_profile – RAT timeout profil in Fortinet’s FortiOS and FortiGate.
    • fortios_gtp_tunnel_limit – GTP tunnel limiter in Fortinet’s FortiOS and FortiGate.
    • fortios_hardware_nic – Display NIC information in Fortinet’s FortiOS and FortiGate.
    • fortios_hardware_npu_np6_dce – Show NP6 non-zero subengine drop counters in Fortinet’s FortiOS and FortiGate.
    • fortios_hardware_npu_np6_session_stats – Show NP6 session offloading statistics counters in Fortinet’s FortiOS and FortiGate.
    • fortios_hardware_npu_np6_sse_stats – Show NP6 hardware session statistics counters in Fortinet’s FortiOS and FortiGate.
    • fortios_icap_profile – Configure ICAP profiles in Fortinet’s FortiOS and FortiGate.
    • fortios_icap_server – Configure ICAP servers in Fortinet’s FortiOS and FortiGate.
    • fortios_icap_server_group – Configure an ICAP server group consisting of multiple forward servers. Supports failover and load balancing in Fortinet’s FortiOS and FortiGate.
    • fortios_ips_custom – Configure IPS custom signature in Fortinet’s FortiOS and FortiGate.
    • fortios_ips_decoder – Configure IPS decoder in Fortinet’s FortiOS and FortiGate.
    • fortios_ips_global – Configure IPS global parameter in Fortinet’s FortiOS and FortiGate.
    • fortios_ips_rule – Configure IPS rules in Fortinet’s FortiOS and FortiGate.
    • fortios_ips_rule_settings – Configure IPS rule setting in Fortinet’s FortiOS and FortiGate.
    • fortios_ips_sensor – Configure IPS sensor in Fortinet’s FortiOS and FortiGate.
    • fortios_ips_settings – Configure IPS VDOM parameter in Fortinet’s FortiOS and FortiGate.
    • fortios_ips_view_map – Configure IPS view-map in Fortinet’s FortiOS and FortiGate.
    • fortios_log_custom_field – Configure custom log fields in Fortinet’s FortiOS and FortiGate.
    • fortios_log_disk_filter – Configure filters for local disk logging. Use these filters to determine the log messages to record according to severity and type in Fortinet’s FortiOS and FortiGate.
    • fortios_log_disk_setting – Settings for local disk logging in Fortinet’s FortiOS and FortiGate.
    • fortios_log_eventfilter – Configure log event filters in Fortinet’s FortiOS and FortiGate.
    • fortios_log_fortianalyzer2_filter – Filters for FortiAnalyzer in Fortinet’s FortiOS and FortiGate.
    • fortios_log_fortianalyzer2_override_filter – Override filters for FortiAnalyzer in Fortinet’s FortiOS and FortiGate.
    • fortios_log_fortianalyzer2_override_setting – Override FortiAnalyzer settings in Fortinet’s FortiOS and FortiGate.
    • fortios_log_fortianalyzer2_setting – Global FortiAnalyzer settings in Fortinet’s FortiOS and FortiGate.
    • fortios_log_fortianalyzer3_filter – Filters for FortiAnalyzer in Fortinet’s FortiOS and FortiGate.
    • fortios_log_fortianalyzer3_override_filter – Override filters for FortiAnalyzer in Fortinet’s FortiOS and FortiGate.
    • fortios_log_fortianalyzer3_override_setting – Override FortiAnalyzer settings in Fortinet’s FortiOS and FortiGate.
    • fortios_log_fortianalyzer3_setting – Global FortiAnalyzer settings in Fortinet’s FortiOS and FortiGate.
    • fortios_log_fortianalyzer_cloud_filter – Filters for FortiAnalyzer Cloud in Fortinet’s FortiOS and FortiGate.
    • fortios_log_fortianalyzer_cloud_override_filter – Override filters for FortiAnalyzer Cloud in Fortinet’s FortiOS and FortiGate.
    • fortios_log_fortianalyzer_cloud_override_setting – Override FortiAnalyzer Cloud settings in Fortinet’s FortiOS and FortiGate.
    • fortios_log_fortianalyzer_cloud_setting – Global FortiAnalyzer Cloud settings in Fortinet’s FortiOS and FortiGate.
    • fortios_log_fortianalyzer_filter – Filters for FortiAnalyzer in Fortinet’s FortiOS and FortiGate.
    • fortios_log_fortianalyzer_override_filter – Override filters for FortiAnalyzer in Fortinet’s FortiOS and FortiGate.
    • fortios_log_fortianalyzer_override_setting – Override FortiAnalyzer settings in Fortinet’s FortiOS and FortiGate.
    • fortios_log_fortianalyzer_setting – Global FortiAnalyzer settings in Fortinet’s FortiOS and FortiGate.
    • fortios_log_fortiguard_filter – Filters for FortiCloud in Fortinet’s FortiOS and FortiGate.
    • fortios_log_fortiguard_override_filter – Override filters for FortiCloud in Fortinet’s FortiOS and FortiGate.
    • fortios_log_fortiguard_override_setting – Override global FortiCloud logging settings for this VDOM in Fortinet’s FortiOS and FortiGate.
    • fortios_log_fortiguard_setting – Configure logging to FortiCloud in Fortinet’s FortiOS and FortiGate.
    • fortios_log_gui_display – Configure how log messages are displayed on the GUI in Fortinet’s FortiOS and FortiGate.
    • fortios_log_memory_filter – Filters for memory buffer in Fortinet’s FortiOS and FortiGate.
    • fortios_log_memory_global_setting – Global settings for memory logging in Fortinet’s FortiOS and FortiGate.
    • fortios_log_memory_setting – Settings for memory buffer in Fortinet’s FortiOS and FortiGate.
    • fortios_log_null_device_filter – Filters for null device logging in Fortinet’s FortiOS and FortiGate.
    • fortios_log_null_device_setting – Settings for null device logging in Fortinet’s FortiOS and FortiGate.
    • fortios_log_setting – Configure general log settings in Fortinet’s FortiOS and FortiGate.
    • fortios_log_syslogd2_filter – Filters for remote system server in Fortinet’s FortiOS and FortiGate.
    • fortios_log_syslogd2_override_filter – Override filters for remote system server in Fortinet’s FortiOS and FortiGate.
    • fortios_log_syslogd2_override_setting – Override settings for remote syslog server in Fortinet’s FortiOS and FortiGate.
    • fortios_log_syslogd2_setting – Global settings for remote syslog server in Fortinet’s FortiOS and FortiGate.
    • fortios_log_syslogd3_filter – Filters for remote system server in Fortinet’s FortiOS and FortiGate.
    • fortios_log_syslogd3_override_filter – Override filters for remote system server in Fortinet’s FortiOS and FortiGate.
    • fortios_log_syslogd3_override_setting – Override settings for remote syslog server in Fortinet’s FortiOS and FortiGate.
    • fortios_log_syslogd3_setting – Global settings for remote syslog server in Fortinet’s FortiOS and FortiGate.
    • fortios_log_syslogd4_filter – Filters for remote system server in Fortinet’s FortiOS and FortiGate.
    • fortios_log_syslogd4_override_filter – Override filters for remote system server in Fortinet’s FortiOS and FortiGate.
    • fortios_log_syslogd4_override_setting – Override settings for remote syslog server in Fortinet’s FortiOS and FortiGate.
    • fortios_log_syslogd4_setting – Global settings for remote syslog server in Fortinet’s FortiOS and FortiGate.
    • fortios_log_syslogd_filter – Filters for remote system server in Fortinet’s FortiOS and FortiGate.
    • fortios_log_syslogd_override_filter – Override filters for remote system server in Fortinet’s FortiOS and FortiGate.
    • fortios_log_syslogd_override_setting – Override settings for remote syslog server in Fortinet’s FortiOS and FortiGate.
    • fortios_log_syslogd_setting – Global settings for remote syslog server in Fortinet’s FortiOS and FortiGate.
    • fortios_log_tacacsplusaccounting2_filter – Settings for TACACS+ accounting events filter in Fortinet’s FortiOS and FortiGate.
    • fortios_log_tacacsplusaccounting2_setting – Settings for TACACS+ accounting in Fortinet’s FortiOS and FortiGate.
    • fortios_log_tacacsplusaccounting3_filter – Settings for TACACS+ accounting events filter in Fortinet’s FortiOS and FortiGate.
    • fortios_log_tacacsplusaccounting3_setting – Settings for TACACS+ accounting in Fortinet’s FortiOS and FortiGate.
    • fortios_log_tacacsplusaccounting_filter – Settings for TACACS+ accounting events filter in Fortinet’s FortiOS and FortiGate.
    • fortios_log_tacacsplusaccounting_setting – Settings for TACACS+ accounting in Fortinet’s FortiOS and FortiGate.
    • fortios_log_threat_weight – Configure threat weight settings in Fortinet’s FortiOS and FortiGate.
    • fortios_log_webtrends_filter – Filters for WebTrends in Fortinet’s FortiOS and FortiGate.
    • fortios_log_webtrends_setting – Settings for WebTrends in Fortinet’s FortiOS and FortiGate.
    • fortios_monitoring_np6_ipsec_engine – Configure NP6 IPsec engine status monitoring in Fortinet’s FortiOS and FortiGate.
    • fortios_monitoring_npu_hpe – Configure npu-hpe status monitoring in Fortinet’s FortiOS and FortiGate.
    • fortios_nsxt_service_chain – Configure NSX-T service chain in Fortinet’s FortiOS and FortiGate.
    • fortios_nsxt_setting – Configure NSX-T setting in Fortinet’s FortiOS and FortiGate.
    • fortios_pfcp_message_filter – Message filter for PFCP messages in Fortinet’s FortiOS and FortiGate.
    • fortios_report_chart – Report chart widget configuration in Fortinet’s FortiOS and FortiGate.
    • fortios_report_dataset – Report dataset configuration in Fortinet’s FortiOS and FortiGate.
    • fortios_report_layout – Report layout configuration in Fortinet’s FortiOS and FortiGate.
    • fortios_report_setting – Report setting configuration in Fortinet’s FortiOS and FortiGate.
    • fortios_report_style – Report style configuration in Fortinet’s FortiOS and FortiGate.
    • fortios_report_theme – Report themes configuratio in Fortinet’s FortiOS and FortiGate.
    • fortios_router_access_list – Configure access lists in Fortinet’s FortiOS and FortiGate.
    • fortios_router_access_list6 – Configure IPv6 access lists in Fortinet’s FortiOS and FortiGate.
    • fortios_router_aspath_list – Configure Autonomous System (AS) path lists in Fortinet’s FortiOS and FortiGate.
    • fortios_router_auth_path – Configure authentication based routing in Fortinet’s FortiOS and FortiGate.
    • fortios_router_bfd – Configure BFD in Fortinet’s FortiOS and FortiGate.
    • fortios_router_bfd6 – Configure IPv6 BFD in Fortinet’s FortiOS and FortiGate.
    • fortios_router_bgp – Configure BGP in Fortinet’s FortiOS and FortiGate.
    • fortios_router_community_list – Configure community lists in Fortinet’s FortiOS and FortiGate.
    • fortios_router_isis – Configure IS-IS in Fortinet’s FortiOS and FortiGate.
    • fortios_router_key_chain – Configure key-chain in Fortinet’s FortiOS and FortiGate.
    • fortios_router_multicast – Configure router multicast in Fortinet’s FortiOS and FortiGate.
    • fortios_router_multicast6 – Configure IPv6 multicast in Fortinet’s FortiOS and FortiGate.
    • fortios_router_multicast_flow – Configure multicast-flow in Fortinet’s FortiOS and FortiGate.
    • fortios_router_ospf – Configure OSPF in Fortinet’s FortiOS and FortiGate.
    • fortios_router_ospf6 – Configure IPv6 OSPF in Fortinet’s FortiOS and FortiGate.
    • fortios_router_policy – Configure IPv4 routing policies in Fortinet’s FortiOS and FortiGate.
    • fortios_router_policy6 – Configure IPv6 routing policies in Fortinet’s FortiOS and FortiGate.
    • fortios_router_prefix_list – Configure IPv4 prefix lists in Fortinet’s FortiOS and FortiGate.
    • fortios_router_prefix_list6 – Configure IPv6 prefix lists in Fortinet’s FortiOS and FortiGate.
    • fortios_router_rip – Configure RIP in Fortinet’s FortiOS and FortiGate.
    • fortios_router_ripng – Configure RIPng in Fortinet’s FortiOS and FortiGate.
    • fortios_router_route_map – Configure route maps in Fortinet’s FortiOS and FortiGate.
    • fortios_router_setting – Configure router settings in Fortinet’s FortiOS and FortiGate.
    • fortios_router_static – Configure IPv4 static routing tables in Fortinet’s FortiOS and FortiGate.
    • fortios_router_static6 – Configure IPv6 static routing tables in Fortinet’s FortiOS and FortiGate.
    • fortios_sctp_filter_profile – Configure SCTP filter profiles in Fortinet’s FortiOS and FortiGate.
    • fortios_spamfilter_bwl – Configure anti-spam black/white list in Fortinet’s FortiOS and FortiGate.
    • fortios_spamfilter_bword – Configure AntiSpam banned word list in Fortinet’s FortiOS and FortiGate.
    • fortios_spamfilter_dnsbl – Configure AntiSpam DNSBL/ORBL in Fortinet’s FortiOS and FortiGate.
    • fortios_spamfilter_fortishield – Configure FortiGuard - AntiSpam in Fortinet’s FortiOS and FortiGate.
    • fortios_spamfilter_iptrust – Configure AntiSpam IP trust in Fortinet’s FortiOS and FortiGate.
    • fortios_spamfilter_mheader – Configure AntiSpam MIME header in Fortinet’s FortiOS and FortiGate.
    • fortios_spamfilter_options – Configure AntiSpam options in Fortinet’s FortiOS and FortiGate.
    • fortios_spamfilter_profile – Configure AntiSpam profiles in Fortinet’s FortiOS and FortiGate.
    • fortios_ssh_filter_profile – Configure SSH filter profile in Fortinet’s FortiOS and FortiGate.
    • fortios_switch_controller_802_1x_settings – Configure global 802.1X settings in Fortinet’s FortiOS and FortiGate.
    • fortios_switch_controller_auto_config_custom – Policies which can override the ‘default’ for specific ISL/ICL/FortiLink interface in Fortinet’s FortiOS and FortiGate.
    • fortios_switch_controller_auto_config_default – Policies which are applied automatically to all ISL/ICL/FortiLink interfaces in Fortinet’s FortiOS and FortiGate.
    • fortios_switch_controller_auto_config_policy – Policy definitions which can define the behavior on auto configured interfaces in Fortinet’s FortiOS and FortiGate.
    • fortios_switch_controller_custom_command – Configure the FortiGate switch controller to send custom commands to managed FortiSwitch devices in Fortinet’s FortiOS and FortiGate.
    • fortios_switch_controller_dynamic_port_policy – Configure Dynamic port policy to be applied on the managed FortiSwitch ports through DPP device in Fortinet’s FortiOS and FortiGate.
    • fortios_switch_controller_flow_tracking – Configure FortiSwitch flow tracking and export via ipfix/netflow in Fortinet’s FortiOS and FortiGate.
    • fortios_switch_controller_fortilink_settings – Configure integrated FortiLink settings for FortiSwitch in Fortinet’s FortiOS and FortiGate.
    • fortios_switch_controller_global – Configure FortiSwitch global settings in Fortinet’s FortiOS and FortiGate.
    • fortios_switch_controller_igmp_snooping – Configure FortiSwitch IGMP snooping global settings in Fortinet’s FortiOS and FortiGate.
    • fortios_switch_controller_initial_config_template – Configure template for auto-generated VLANs in Fortinet’s FortiOS and FortiGate.
    • fortios_switch_controller_initial_config_vlans – Configure initial template for auto-generated VLAN interfaces in Fortinet’s FortiOS and FortiGate.
    • fortios_switch_controller_lldp_profile – Configure FortiSwitch LLDP profiles in Fortinet’s FortiOS and FortiGate.
    • fortios_switch_controller_lldp_settings – Configure FortiSwitch LLDP settings in Fortinet’s FortiOS and FortiGate.
    • fortios_switch_controller_location – Configure FortiSwitch location services in Fortinet’s FortiOS and FortiGate.
    • fortios_switch_controller_mac_policy – Configure MAC policy to be applied on the managed FortiSwitch devices through NAC device in Fortinet’s FortiOS and FortiGate.
    • fortios_switch_controller_mac_sync_settings – Configure global MAC synchronization settings in Fortinet’s FortiOS and FortiGate.
    • fortios_switch_controller_managed_switch – Configure FortiSwitch devices that are managed by this FortiGate in Fortinet’s FortiOS and FortiGate.
    • fortios_switch_controller_nac_device – Configure/list NAC devices learned on the managed FortiSwitch ports which matches NAC policy in Fortinet’s FortiOS and FortiGate.
    • fortios_switch_controller_nac_settings – Configure integrated NAC settings for FortiSwitch in Fortinet’s FortiOS and FortiGate.
    • fortios_switch_controller_network_monitor_settings – Configure network monitor settings in Fortinet’s FortiOS and FortiGate.
    • fortios_switch_controller_poe – List PoE end-points status in Fortinet’s FortiOS and FortiGate.
    • fortios_switch_controller_port_policy – Configure port policy to be applied on the managed FortiSwitch ports through NAC device in Fortinet’s FortiOS and FortiGate.
    • fortios_switch_controller_ptp_policy – PTP policy configuration in Fortinet’s FortiOS and FortiGate.
    • fortios_switch_controller_ptp_settings – Global PTP settings in Fortinet’s FortiOS and FortiGate.
    • fortios_switch_controller_qos_dot1p_map – Configure FortiSwitch QoS 802.1p in Fortinet’s FortiOS and FortiGate.
    • fortios_switch_controller_qos_ip_dscp_map – Configure FortiSwitch QoS IP precedence/DSCP in Fortinet’s FortiOS and FortiGate.
    • fortios_switch_controller_qos_qos_policy – Configure FortiSwitch QoS policy in Fortinet’s FortiOS and FortiGate.
    • fortios_switch_controller_qos_queue_policy – Configure FortiSwitch QoS egress queue policy in Fortinet’s FortiOS and FortiGate.
    • fortios_switch_controller_quarantine – Configure FortiSwitch quarantine support in Fortinet’s FortiOS and FortiGate.
    • fortios_switch_controller_remote_log – Configure logging by FortiSwitch device to a remote syslog server in Fortinet’s FortiOS and FortiGate.
    • fortios_switch_controller_security_policy_802_1x – Configure 802.1x MAC Authentication Bypass (MAB) policies in Fortinet’s FortiOS and FortiGate.
    • fortios_switch_controller_security_policy_captive_portal – Names of VLANs that use captive portal authentication in Fortinet’s FortiOS and FortiGate.
    • fortios_switch_controller_security_policy_local_access – Configure allowaccess list for mgmt and internal interfaces on managed FortiSwitch units in Fortinet’s FortiOS and FortiGate.
    • fortios_switch_controller_sflow – Configure FortiSwitch sFlow in Fortinet’s FortiOS and FortiGate.
    • fortios_switch_controller_snmp_community – Configure FortiSwitch SNMP v1/v2c communities globally in Fortinet’s FortiOS and FortiGate.
    • fortios_switch_controller_snmp_sysinfo – Configure FortiSwitch SNMP system information globally in Fortinet’s FortiOS and FortiGate.
    • fortios_switch_controller_snmp_trap_threshold – Configure FortiSwitch SNMP trap threshold values globally in Fortinet’s FortiOS and FortiGate.
    • fortios_switch_controller_snmp_user – Configure FortiSwitch SNMP v3 users globally in Fortinet’s FortiOS and FortiGate.
    • fortios_switch_controller_storm_control – Configure FortiSwitch storm control in Fortinet’s FortiOS and FortiGate.
    • fortios_switch_controller_storm_control_policy – Configure FortiSwitch storm control policy to be applied on managed-switch ports in Fortinet’s FortiOS and FortiGate.
    • fortios_switch_controller_stp_instance – Configure FortiSwitch multiple spanning tree protocol (MSTP) instances in Fortinet’s FortiOS and FortiGate.
    • fortios_switch_controller_stp_settings – Configure FortiSwitch spanning tree protocol (STP) in Fortinet’s FortiOS and FortiGate.
    • fortios_switch_controller_switch_group – Configure FortiSwitch switch groups in Fortinet’s FortiOS and FortiGate.
    • fortios_switch_controller_switch_interface_tag – Configure switch object tags in Fortinet’s FortiOS and FortiGate.
    • fortios_switch_controller_switch_log – Configure FortiSwitch logging (logs are transferred to and inserted into FortiGate event log) in Fortinet’s FortiOS and FortiGate.
    • fortios_switch_controller_switch_profile – Configure FortiSwitch switch profile in Fortinet’s FortiOS and FortiGate.
    • fortios_switch_controller_system – Configure system-wide switch controller settings in Fortinet’s FortiOS and FortiGate.
    • fortios_switch_controller_traffic_policy – Configure FortiSwitch traffic policy in Fortinet’s FortiOS and FortiGate.
    • fortios_switch_controller_traffic_sniffer – Configure FortiSwitch RSPAN/ERSPAN traffic sniffing parameters in Fortinet’s FortiOS and FortiGate.
    • fortios_switch_controller_virtual_port_pool – Configure virtual pool in Fortinet’s FortiOS and FortiGate.
    • fortios_switch_controller_vlan – Configure VLANs for switch controller in Fortinet’s FortiOS and FortiGate.
    • fortios_switch_controller_vlan_policy – Configure VLAN policy to be applied on the managed FortiSwitch ports through dynamic-port-policy in Fortinet’s FortiOS and FortiGate.
    • fortios_system_3g_modem_custom – 3G MODEM custom in Fortinet’s FortiOS and FortiGate.
    • fortios_system_accprofile – Configure access profiles for system administrators in Fortinet’s FortiOS and FortiGate.
    • fortios_system_acme – Configure ACME client in Fortinet’s FortiOS and FortiGate.
    • fortios_system_admin – Configure admin users in Fortinet’s FortiOS and FortiGate.
    • fortios_system_affinity_interrupt – Configure interrupt affinity in Fortinet’s FortiOS and FortiGate.
    • fortios_system_affinity_packet_redistribution – Configure packet redistribution in Fortinet’s FortiOS and FortiGate.
    • fortios_system_alarm – Configure alarm in Fortinet’s FortiOS and FortiGate.
    • fortios_system_alias – Configure alias command in Fortinet’s FortiOS and FortiGate.
    • fortios_system_api_user – Configure API users in Fortinet’s FortiOS and FortiGate.
    • fortios_system_arp_table – Configure ARP table in Fortinet’s FortiOS and FortiGate.
    • fortios_system_auto_install – Configure USB auto installation in Fortinet’s FortiOS and FortiGate.
    • fortios_system_auto_script – Configure auto script in Fortinet’s FortiOS and FortiGate.
    • fortios_system_automation_action – Action for automation stitches in Fortinet’s FortiOS and FortiGate.
    • fortios_system_automation_destination – Automation destinations in Fortinet’s FortiOS and FortiGate.
    • fortios_system_automation_stitch – Automation stitches in Fortinet’s FortiOS and FortiGate.
    • fortios_system_automation_trigger – Trigger for automation stitches in Fortinet’s FortiOS and FortiGate.
    • fortios_system_autoupdate_push_update – Configure push updates in Fortinet’s FortiOS and FortiGate.
    • fortios_system_autoupdate_schedule – Configure update schedule in Fortinet’s FortiOS and FortiGate.
    • fortios_system_autoupdate_tunneling – Configure web proxy tunneling for the FDN in Fortinet’s FortiOS and FortiGate.
    • fortios_system_central_management – Configure central management in Fortinet’s FortiOS and FortiGate.
    • fortios_system_cluster_sync – Configure FortiGate Session Life Support Protocol (FGSP) session synchronization in Fortinet’s FortiOS and FortiGate.
    • fortios_system_console – Configure console in Fortinet’s FortiOS and FortiGate.
    • fortios_system_csf – Add this FortiGate to a Security Fabric or set up a new Security Fabric on this FortiGate in Fortinet’s FortiOS and FortiGate.
    • fortios_system_custom_language – Configure custom languages in Fortinet’s FortiOS and FortiGate.
    • fortios_system_ddns – Configure DDNS in Fortinet’s FortiOS and FortiGate.
    • fortios_system_dedicated_mgmt – Configure dedicated management in Fortinet’s FortiOS and FortiGate.
    • fortios_system_dhcp6_server – Configure DHCPv6 servers in Fortinet’s FortiOS and FortiGate.
    • fortios_system_dhcp_server – Configure DHCP servers in Fortinet’s FortiOS and FortiGate.
    • fortios_system_dns – Configure DNS in Fortinet’s FortiOS and FortiGate.
    • fortios_system_dns64 – Configure DNS64 in Fortinet’s FortiOS and FortiGate.
    • fortios_system_dns_database – Configure DNS databases in Fortinet’s FortiOS and FortiGate.
    • fortios_system_dns_server – Configure DNS servers in Fortinet’s FortiOS and FortiGate.
    • fortios_system_dscp_based_priority – Configure DSCP based priority table in Fortinet’s FortiOS and FortiGate.
    • fortios_system_email_server – Configure the email server used by the FortiGate various things. For example, for sending email messages to users to support user authentication features in Fortinet’s FortiOS and FortiGate.
    • fortios_system_external_resource – Configure external resource in Fortinet’s FortiOS and FortiGate.
    • fortios_system_federated_upgrade – Coordinate federated upgrades within the Security Fabric in Fortinet’s FortiOS and FortiGate.
    • fortios_system_fips_cc – Configure FIPS-CC mode in Fortinet’s FortiOS and FortiGate.
    • fortios_system_fm – Configure FM in Fortinet’s FortiOS and FortiGate.
    • fortios_system_fortiai – Configure FortiAI in Fortinet’s FortiOS and FortiGate.
    • fortios_system_fortiguard – Configure FortiGuard services in Fortinet’s FortiOS and FortiGate.
    • fortios_system_fortimanager – Configure FortiManager in Fortinet’s FortiOS and FortiGate.
    • fortios_system_fortindr – Configure FortiNDR in Fortinet’s FortiOS and FortiGate.
    • fortios_system_fortisandbox – Configure FortiSandbox in Fortinet’s FortiOS and FortiGate.
    • fortios_system_fsso_polling – Configure Fortinet Single Sign On (FSSO) server in Fortinet’s FortiOS and FortiGate.
    • fortios_system_ftm_push – Configure FortiToken Mobile push services in Fortinet’s FortiOS and FortiGate.
    • fortios_system_geneve – Configure GENEVE devices in Fortinet’s FortiOS and FortiGate.
    • fortios_system_geoip_country – Define geoip country name-ID table in Fortinet’s FortiOS and FortiGate.
    • fortios_system_geoip_override – Configure geographical location mapping for IP address(es) to override mappings from FortiGuard in Fortinet’s FortiOS and FortiGate.
    • fortios_system_gi_gk – Configure Gi Firewall Gatekeeper in Fortinet’s FortiOS and FortiGate.
    • fortios_system_global – Configure global attributes in Fortinet’s FortiOS and FortiGate.
    • fortios_system_gre_tunnel – Configure GRE tunnel in Fortinet’s FortiOS and FortiGate.
    • fortios_system_ha – Configure HA in Fortinet’s FortiOS and FortiGate.
    • fortios_system_ha_monitor – Configure HA monitor in Fortinet’s FortiOS and FortiGate.
    • fortios_system_ike – Configure IKE global attributes in Fortinet’s FortiOS and FortiGate.
    • fortios_system_interface – Configure interfaces in Fortinet’s FortiOS and FortiGate.
    • fortios_system_ipam – Configure IP address management services in Fortinet’s FortiOS and FortiGate.
    • fortios_system_ipip_tunnel – Configure IP in IP Tunneling in Fortinet’s FortiOS and FortiGate.
    • fortios_system_ips – Configure IPS system settings in Fortinet’s FortiOS and FortiGate.
    • fortios_system_ips_urlfilter_dns – Configure IPS URL filter DNS servers in Fortinet’s FortiOS and FortiGate.
    • fortios_system_ips_urlfilter_dns6 – Configure IPS URL filter IPv6 DNS servers in Fortinet’s FortiOS and FortiGate.
    • fortios_system_ipsec_aggregate – Configure an aggregate of IPsec tunnels in Fortinet’s FortiOS and FortiGate.
    • fortios_system_ipv6_neighbor_cache – Configure IPv6 neighbor cache table in Fortinet’s FortiOS and FortiGate.
    • fortios_system_ipv6_tunnel – Configure IPv6/IPv4 in IPv6 tunnel in Fortinet’s FortiOS and FortiGate.
    • fortios_system_isf_queue_profile – Create a queue profile of switch in Fortinet’s FortiOS and FortiGate.
    • fortios_system_link_monitor – Configure Link Health Monitor in Fortinet’s FortiOS and FortiGate.
    • fortios_system_lldp_network_policy – Configure LLDP network policy in Fortinet’s FortiOS and FortiGate.
    • fortios_system_lte_modem – Configure USB LTE/WIMAX devices in Fortinet’s FortiOS and FortiGate.
    • fortios_system_mac_address_table – Configure MAC address tables in Fortinet’s FortiOS and FortiGate.
    • fortios_system_management_tunnel – Management tunnel configuration in Fortinet’s FortiOS and FortiGate.
    • fortios_system_mem_mgr – Configure memory manager in Fortinet’s FortiOS and FortiGate.
    • fortios_system_mobile_tunnel – Configure Mobile tunnels, an implementation of Network Mobility (NEMO) extensions for Mobile IPv4 RFC5177 in Fortinet’s FortiOS and FortiGate.
    • fortios_system_modem – Configure MODEM in Fortinet’s FortiOS and FortiGate.
    • fortios_system_nat64 – Configure NAT64 in Fortinet’s FortiOS and FortiGate.
    • fortios_system_nd_proxy – Configure IPv6 neighbor discovery proxy (RFC4389) in Fortinet’s FortiOS and FortiGate.
    • fortios_system_netflow – Configure NetFlow in Fortinet’s FortiOS and FortiGate.
    • fortios_system_network_visibility – Configure network visibility settings in Fortinet’s FortiOS and FortiGate.
    • fortios_system_np6 – Configure NP6 attributes in Fortinet’s FortiOS and FortiGate.
    • fortios_system_npu – Configure NPU attributes in Fortinet’s FortiOS and FortiGate.
    • fortios_system_ntp – Configure system NTP information in Fortinet’s FortiOS and FortiGate.
    • fortios_system_object_tagging – Configure object tagging in Fortinet’s FortiOS and FortiGate.
    • fortios_system_password_policy – Configure password policy for locally defined administrator passwords and IPsec VPN pre-shared keys in Fortinet’s FortiOS and FortiGate.
    • fortios_system_password_policy_guest_admin – Configure the password policy for guest administrators in Fortinet’s FortiOS and FortiGate.
    • fortios_system_performance_top – Display information about the top CPU processes in Fortinet’s FortiOS and FortiGate.
    • fortios_system_physical_switch – Configure physical switches in Fortinet’s FortiOS and FortiGate.
    • fortios_system_pppoe_interface – Configure the PPPoE interfaces in Fortinet’s FortiOS and FortiGate.
    • fortios_system_probe_response – Configure system probe response in Fortinet’s FortiOS and FortiGate.
    • fortios_system_proxy_arp – Configure proxy-ARP in Fortinet’s FortiOS and FortiGate.
    • fortios_system_ptp – Configure system PTP information in Fortinet’s FortiOS and FortiGate.
    • fortios_system_replacemsg_admin – Replacement messages in Fortinet’s FortiOS and FortiGate.
    • fortios_system_replacemsg_alertmail – Replacement messages in Fortinet’s FortiOS and FortiGate.
    • fortios_system_replacemsg_auth – Replacement messages in Fortinet’s FortiOS and FortiGate.
    • fortios_system_replacemsg_automation – Replacement messages in Fortinet’s FortiOS and FortiGate.
    • fortios_system_replacemsg_device_detection_portal – Replacement messages in Fortinet’s FortiOS and FortiGate.
    • fortios_system_replacemsg_ec – Replacement messages in Fortinet’s FortiOS and FortiGate.
    • fortios_system_replacemsg_fortiguard_wf – Replacement messages in Fortinet’s FortiOS and FortiGate.
    • fortios_system_replacemsg_ftp – Replacement messages in Fortinet’s FortiOS and FortiGate.
    • fortios_system_replacemsg_group – Configure replacement message groups in Fortinet’s FortiOS and FortiGate.
    • fortios_system_replacemsg_http – Replacement messages in Fortinet’s FortiOS and FortiGate.
    • fortios_system_replacemsg_icap – Replacement messages in Fortinet’s FortiOS and FortiGate.
    • fortios_system_replacemsg_image – Configure replacement message images in Fortinet’s FortiOS and FortiGate.
    • fortios_system_replacemsg_mail – Replacement messages in Fortinet’s FortiOS and FortiGate.
    • fortios_system_replacemsg_mm1 – Replacement messages in Fortinet’s FortiOS and FortiGate.
    • fortios_system_replacemsg_mm3 – Replacement messages in Fortinet’s FortiOS and FortiGate.
    • fortios_system_replacemsg_mm4 – Replacement messages in Fortinet’s FortiOS and FortiGate.
    • fortios_system_replacemsg_mm7 – Replacement messages in Fortinet’s FortiOS and FortiGate.
    • fortios_system_replacemsg_mms – Replacement messages in Fortinet’s FortiOS and FortiGate.
    • fortios_system_replacemsg_nac_quar – Replacement messages in Fortinet’s FortiOS and FortiGate.
    • fortios_system_replacemsg_nntp – Replacement messages in Fortinet’s FortiOS and FortiGate.
    • fortios_system_replacemsg_spam – Replacement messages in Fortinet’s FortiOS and FortiGate.
    • fortios_system_replacemsg_sslvpn – Replacement messages in Fortinet’s FortiOS and FortiGate.
    • fortios_system_replacemsg_traffic_quota – Replacement messages in Fortinet’s FortiOS and FortiGate.
    • fortios_system_replacemsg_utm – Replacement messages in Fortinet’s FortiOS and FortiGate.
    • fortios_system_replacemsg_webproxy – Replacement messages in Fortinet’s FortiOS and FortiGate.
    • fortios_system_resource_limits – Configure resource limits in Fortinet’s FortiOS and FortiGate.
    • fortios_system_saml – Global settings for SAML authentication in Fortinet’s FortiOS and FortiGate.
    • fortios_system_sdn_connector – Configure connection to SDN Connector in Fortinet’s FortiOS and FortiGate.
    • fortios_system_sdwan – Configure redundant Internet connections with multiple outbound links and health-check profiles in Fortinet’s FortiOS and FortiGate.
      • Synopsis
      • Requirements
      • FortiOS Version Compatibility
      • Parameters
      • Notes
      • Examples
      • Return Values
      • Status
      • Authors
    • fortios_system_session_helper – Configure session helper in Fortinet’s FortiOS and FortiGate.
    • fortios_system_session_ttl – Configure global session TTL timers for this FortiGate in Fortinet’s FortiOS and FortiGate.
    • fortios_system_settings – Configure VDOM settings in Fortinet’s FortiOS and FortiGate.
    • fortios_system_sflow – Configure sFlow in Fortinet’s FortiOS and FortiGate.
    • fortios_system_sit_tunnel – Configure IPv6 tunnel over IPv4 in Fortinet’s FortiOS and FortiGate.
    • fortios_system_smc_ntp – Configure SMC NTP information in Fortinet’s FortiOS and FortiGate.
    • fortios_system_sms_server – Configure SMS server for sending SMS messages to support user authentication in Fortinet’s FortiOS and FortiGate.
    • fortios_system_snmp_community – SNMP community configuration in Fortinet’s FortiOS and FortiGate.
    • fortios_system_snmp_mib_view – SNMP Access Control MIB View configuration in Fortinet’s FortiOS and FortiGate.
    • fortios_system_snmp_sysinfo – SNMP system info configuration in Fortinet’s FortiOS and FortiGate.
    • fortios_system_snmp_user – SNMP user configuration in Fortinet’s FortiOS and FortiGate.
    • fortios_system_speed_test_schedule – Speed test schedule for each interface in Fortinet’s FortiOS and FortiGate.
    • fortios_system_speed_test_server – Configure speed test server list in Fortinet’s FortiOS and FortiGate.
    • fortios_system_sso_admin – Configure SSO admin users in Fortinet’s FortiOS and FortiGate.
    • fortios_system_sso_forticloud_admin – Configure FortiCloud SSO admin users in Fortinet’s FortiOS and FortiGate.
    • fortios_system_standalone_cluster – Configure FortiGate Session Life Support Protocol (FGSP) cluster attributes in Fortinet’s FortiOS and FortiGate.
    • fortios_system_storage – Configure logical storage in Fortinet’s FortiOS and FortiGate.
    • fortios_system_stp – Configure Spanning Tree Protocol (STP) in Fortinet’s FortiOS and FortiGate.
    • fortios_system_switch_interface – Configure software switch interfaces by grouping physical and WiFi interfaces in Fortinet’s FortiOS and FortiGate.
    • fortios_system_tos_based_priority – Configure Type of Service (ToS) based priority table to set network traffic priorities in Fortinet’s FortiOS and FortiGate.
    • fortios_system_vdom – Configure virtual domain in Fortinet’s FortiOS and FortiGate.
    • fortios_system_vdom_dns – Configure DNS servers for a non-management VDOM in Fortinet’s FortiOS and FortiGate.
    • fortios_system_vdom_exception – Global configuration objects that can be configured independently across different ha peers for all VDOMs or for the defined VDOM scope in Fortinet’s FortiOS and FortiGate.
    • fortios_system_vdom_link – Configure VDOM links in Fortinet’s FortiOS and FortiGate.
    • fortios_system_vdom_netflow – Configure NetFlow per VDOM in Fortinet’s FortiOS and FortiGate.
    • fortios_system_vdom_property – Configure VDOM property in Fortinet’s FortiOS and FortiGate.
    • fortios_system_vdom_radius_server – Configure a RADIUS server to use as a RADIUS Single Sign On (RSSO) server for this VDOM in Fortinet’s FortiOS and FortiGate.
    • fortios_system_vdom_sflow – Configure sFlow per VDOM to add or change the IP address and UDP port that FortiGate sFlow agents in this VDOM use to send sFlow datagrams to an sFlow collector in Fortinet’s FortiOS and FortiGate.
    • fortios_system_virtual_switch – Configure virtual hardware switch interfaces in Fortinet’s FortiOS and FortiGate.
    • fortios_system_virtual_wan_link – Configure redundant internet connections using SD-WAN (formerly virtual WAN link) in Fortinet’s FortiOS and FortiGate.
    • fortios_system_virtual_wire_pair – Configure virtual wire pairs in Fortinet’s FortiOS and FortiGate.
    • fortios_system_vne_tunnel – Configure virtual network enabler tunnel in Fortinet’s FortiOS and FortiGate.
    • fortios_system_vxlan – Configure VXLAN devices in Fortinet’s FortiOS and FortiGate.
    • fortios_system_wccp – Configure WCCP in Fortinet’s FortiOS and FortiGate.
    • fortios_system_zone – Configure zones to group two or more interfaces. When a zone is created you can configure policies for the zone instead of individual interfaces in the zone in Fortinet’s FortiOS and FortiGate.
    • fortios_user_adgrp – Configure FSSO groups in Fortinet’s FortiOS and FortiGate.
    • fortios_user_certificate – Configure certificate users in Fortinet’s FortiOS and FortiGate.
    • fortios_user_device – Configure devices in Fortinet’s FortiOS and FortiGate.
    • fortios_user_device_access_list – Configure device access control lists in Fortinet’s FortiOS and FortiGate.
    • fortios_user_device_category – Configure device categories in Fortinet’s FortiOS and FortiGate.
    • fortios_user_device_group – Configure device groups in Fortinet’s FortiOS and FortiGate.
    • fortios_user_domain_controller – Configure domain controller entries in Fortinet’s FortiOS and FortiGate.
    • fortios_user_exchange – Configure MS Exchange server entries in Fortinet’s FortiOS and FortiGate.
    • fortios_user_fortitoken – Configure FortiToken in Fortinet’s FortiOS and FortiGate.
    • fortios_user_fsso – Configure Fortinet Single Sign On (FSSO) agents in Fortinet’s FortiOS and FortiGate.
    • fortios_user_fsso_polling – Configure FSSO active directory servers for polling mode in Fortinet’s FortiOS and FortiGate.
    • fortios_user_group – Configure user groups in Fortinet’s FortiOS and FortiGate.
    • fortios_user_krb_keytab – Configure Kerberos keytab entries in Fortinet’s FortiOS and FortiGate.
    • fortios_user_ldap – Configure LDAP server entries in Fortinet’s FortiOS and FortiGate.
    • fortios_user_local – Configure local users in Fortinet’s FortiOS and FortiGate.
    • fortios_user_nac_policy – Configure NAC policy matching pattern to identify matching NAC devices in Fortinet’s FortiOS and FortiGate.
    • fortios_user_password_policy – Configure user password policy in Fortinet’s FortiOS and FortiGate.
    • fortios_user_peer – Configure peer users in Fortinet’s FortiOS and FortiGate.
    • fortios_user_peergrp – Configure peer groups in Fortinet’s FortiOS and FortiGate.
    • fortios_user_pop3 – POP3 server entry configuration in Fortinet’s FortiOS and FortiGate.
    • fortios_user_quarantine – Configure quarantine support in Fortinet’s FortiOS and FortiGate.
    • fortios_user_radius – Configure RADIUS server entries in Fortinet’s FortiOS and FortiGate.
    • fortios_user_saml – SAML server entry configuration in Fortinet’s FortiOS and FortiGate.
    • fortios_user_security_exempt_list – Configure security exemption list in Fortinet’s FortiOS and FortiGate.
    • fortios_user_setting – Configure user authentication setting in Fortinet’s FortiOS and FortiGate.
    • fortios_user_tacacsplus – Configure TACACS+ server entries in Fortinet’s FortiOS and FortiGate.
    • fortios_videofilter_profile – Configure VideoFilter profile in Fortinet’s FortiOS and FortiGate.
    • fortios_videofilter_youtube_channel_filter – Configure YouTube channel filter in Fortinet’s FortiOS and FortiGate.
    • fortios_videofilter_youtube_key – Configure YouTube API keys in Fortinet’s FortiOS and FortiGate.
    • fortios_voip_profile – Configure VoIP profiles in Fortinet’s FortiOS and FortiGate.
    • fortios_vpn_certificate_ca – CA certificate in Fortinet’s FortiOS and FortiGate.
    • fortios_vpn_certificate_crl – Certificate Revocation List as a PEM file in Fortinet’s FortiOS and FortiGate.
    • fortios_vpn_certificate_local – Local keys and certificates in Fortinet’s FortiOS and FortiGate.
    • fortios_vpn_certificate_ocsp_server – OCSP server configuration in Fortinet’s FortiOS and FortiGate.
    • fortios_vpn_certificate_remote – Remote certificate as a PEM file in Fortinet’s FortiOS and FortiGate.
    • fortios_vpn_certificate_setting – VPN certificate setting in Fortinet’s FortiOS and FortiGate.
    • fortios_vpn_ike_gateway – List gateways in Fortinet’s FortiOS and FortiGate.
    • fortios_vpn_ipsec_concentrator – Concentrator configuration in Fortinet’s FortiOS and FortiGate.
    • fortios_vpn_ipsec_fec – Configure Forward Error Correction (FEC) mapping profiles in Fortinet’s FortiOS and FortiGate.
    • fortios_vpn_ipsec_forticlient – Configure FortiClient policy realm in Fortinet’s FortiOS and FortiGate.
    • fortios_vpn_ipsec_manualkey – Configure IPsec manual keys in Fortinet’s FortiOS and FortiGate.
    • fortios_vpn_ipsec_manualkey_interface – Configure IPsec manual keys in Fortinet’s FortiOS and FortiGate.
    • fortios_vpn_ipsec_phase1 – Configure VPN remote gateway in Fortinet’s FortiOS and FortiGate.
    • fortios_vpn_ipsec_phase1_interface – Configure VPN remote gateway in Fortinet’s FortiOS and FortiGate.
    • fortios_vpn_ipsec_phase2 – Configure VPN autokey tunnel in Fortinet’s FortiOS and FortiGate.
    • fortios_vpn_ipsec_phase2_interface – Configure VPN autokey tunnel in Fortinet’s FortiOS and FortiGate.
    • fortios_vpn_l2tp – Configure L2TP in Fortinet’s FortiOS and FortiGate.
    • fortios_vpn_ocvpn – Configure Overlay Controller VPN settings in Fortinet’s FortiOS and FortiGate.
    • fortios_vpn_pptp – Configure PPTP in Fortinet’s FortiOS and FortiGate.
    • fortios_vpn_ssl_client – Client in Fortinet’s FortiOS and FortiGate.
    • fortios_vpn_ssl_settings – Configure SSL-VPN in Fortinet’s FortiOS and FortiGate.
    • fortios_vpn_ssl_web_host_check_software – SSL-VPN host check software in Fortinet’s FortiOS and FortiGate.
    • fortios_vpn_ssl_web_portal – Portal in Fortinet’s FortiOS and FortiGate.
    • fortios_vpn_ssl_web_realm – Realm in Fortinet’s FortiOS and FortiGate.
    • fortios_vpn_ssl_web_user_bookmark – Configure SSL-VPN user bookmark in Fortinet’s FortiOS and FortiGate.
    • fortios_vpn_ssl_web_user_group_bookmark – Configure SSL-VPN user group bookmark in Fortinet’s FortiOS and FortiGate.
    • fortios_waf_main_class – Hidden table for datasource in Fortinet’s FortiOS and FortiGate.
    • fortios_waf_profile – Configure Web application firewall configuration in Fortinet’s FortiOS and FortiGate.
    • fortios_waf_signature – Hidden table for datasource in Fortinet’s FortiOS and FortiGate.
    • fortios_waf_sub_class – Hidden table for datasource in Fortinet’s FortiOS and FortiGate.
    • fortios_wanopt_auth_group – Configure WAN optimization authentication groups in Fortinet’s FortiOS and FortiGate.
    • fortios_wanopt_cache_service – Designate cache-service for wan-optimization and webcache in Fortinet’s FortiOS and FortiGate.
    • fortios_wanopt_content_delivery_network_rule – Configure WAN optimization content delivery network rules in Fortinet’s FortiOS and FortiGate.
    • fortios_wanopt_peer – Configure WAN optimization peers in Fortinet’s FortiOS and FortiGate.
    • fortios_wanopt_profile – Configure WAN optimization profiles in Fortinet’s FortiOS and FortiGate.
    • fortios_wanopt_remote_storage – Configure a remote cache device as Web cache storage in Fortinet’s FortiOS and FortiGate.
    • fortios_wanopt_settings – Configure WAN optimization settings in Fortinet’s FortiOS and FortiGate.
    • fortios_wanopt_webcache – Configure global Web cache settings in Fortinet’s FortiOS and FortiGate.
    • fortios_web_proxy_debug_url – Configure debug URL addresses in Fortinet’s FortiOS and FortiGate.
    • fortios_web_proxy_explicit – Configure explicit Web proxy settings in Fortinet’s FortiOS and FortiGate.
    • fortios_web_proxy_forward_server – Configure forward-server addresses in Fortinet’s FortiOS and FortiGate.
    • fortios_web_proxy_forward_server_group – Configure a forward server group consisting or multiple forward servers. Supports failover and load balancing in Fortinet’s FortiOS and FortiGate.
    • fortios_web_proxy_global – Configure Web proxy global settings in Fortinet’s FortiOS and FortiGate.
    • fortios_web_proxy_profile – Configure web proxy profiles in Fortinet’s FortiOS and FortiGate.
    • fortios_web_proxy_url_match – Exempt URLs from web proxy forwarding and caching in Fortinet’s FortiOS and FortiGate.
    • fortios_web_proxy_wisp – Configure Websense Integrated Services Protocol (WISP) servers in Fortinet’s FortiOS and FortiGate.
    • fortios_webfilter_content – Configure Web filter banned word table in Fortinet’s FortiOS and FortiGate.
    • fortios_webfilter_content_header – Configure content types used by Web filter in Fortinet’s FortiOS and FortiGate.
    • fortios_webfilter_fortiguard – Configure FortiGuard Web Filter service in Fortinet’s FortiOS and FortiGate.
    • fortios_webfilter_ftgd_local_cat – Configure FortiGuard Web Filter local categories in Fortinet’s FortiOS and FortiGate.
    • fortios_webfilter_ftgd_local_rating – Configure local FortiGuard Web Filter local ratings in Fortinet’s FortiOS and FortiGate.
    • fortios_webfilter_ips_urlfilter_cache_setting – Configure IPS URL filter cache settings in Fortinet’s FortiOS and FortiGate.
    • fortios_webfilter_ips_urlfilter_setting – Configure IPS URL filter settings in Fortinet’s FortiOS and FortiGate.
    • fortios_webfilter_ips_urlfilter_setting6 – Configure IPS URL filter settings for IPv6 in Fortinet’s FortiOS and FortiGate.
    • fortios_webfilter_override – Configure FortiGuard Web Filter administrative overrides in Fortinet’s FortiOS and FortiGate.
    • fortios_webfilter_profile – Configure Web filter profiles in Fortinet’s FortiOS and FortiGate.
    • fortios_webfilter_search_engine – Configure web filter search engines in Fortinet’s FortiOS and FortiGate.
    • fortios_webfilter_status – Display rating info in Fortinet’s FortiOS and FortiGate.
    • fortios_webfilter_urlfilter – Configure URL filter lists in Fortinet’s FortiOS and FortiGate.
    • fortios_wireless_controller_access_control_list – Configure WiFi bridge access control list in Fortinet’s FortiOS and FortiGate.
    • fortios_wireless_controller_address – Configure the client with its MAC address in Fortinet’s FortiOS and FortiGate.
    • fortios_wireless_controller_addrgrp – Configure the MAC address group in Fortinet’s FortiOS and FortiGate.
    • fortios_wireless_controller_ap_status – Configure access point status (rogue | accepted | suppressed) in Fortinet’s FortiOS and FortiGate.
    • fortios_wireless_controller_apcfg_profile – Configure AP local configuration profiles in Fortinet’s FortiOS and FortiGate.
    • fortios_wireless_controller_arrp_profile – Configure WiFi Automatic Radio Resource Provisioning (ARRP) profiles in Fortinet’s FortiOS and FortiGate.
    • fortios_wireless_controller_ble_profile – Configure Bluetooth Low Energy profile in Fortinet’s FortiOS and FortiGate.
    • fortios_wireless_controller_bonjour_profile – Configure Bonjour profiles. Bonjour is Apple’s zero configuration networking protocol. Bonjour profiles allow APs and FortiAPs to connnect to networks using Bonjour in Fortinet’s FortiOS and FortiGate.
    • fortios_wireless_controller_client_info – Wireless controller client-info in Fortinet’s FortiOS and FortiGate.
    • fortios_wireless_controller_global – Configure wireless controller global settings in Fortinet’s FortiOS and FortiGate.
    • fortios_wireless_controller_hotspot20_anqp_3gpp_cellular – Configure 3GPP public land mobile network (PLMN) in Fortinet’s FortiOS and FortiGate.
    • fortios_wireless_controller_hotspot20_anqp_ip_address_type – Configure IP address type availability in Fortinet’s FortiOS and FortiGate.
    • fortios_wireless_controller_hotspot20_anqp_nai_realm – Configure network access identifier (NAI) realm in Fortinet’s FortiOS and FortiGate.
    • fortios_wireless_controller_hotspot20_anqp_network_auth_type – Configure network authentication type in Fortinet’s FortiOS and FortiGate.
    • fortios_wireless_controller_hotspot20_anqp_roaming_consortium – Configure roaming consortium in Fortinet’s FortiOS and FortiGate.
    • fortios_wireless_controller_hotspot20_anqp_venue_name – Configure venue name duple in Fortinet’s FortiOS and FortiGate.
    • fortios_wireless_controller_hotspot20_anqp_venue_url – Configure venue URL in Fortinet’s FortiOS and FortiGate.
    • fortios_wireless_controller_hotspot20_h2qp_advice_of_charge – Configure advice of charge in Fortinet’s FortiOS and FortiGate.
    • fortios_wireless_controller_hotspot20_h2qp_conn_capability – Configure connection capability in Fortinet’s FortiOS and FortiGate.
    • fortios_wireless_controller_hotspot20_h2qp_operator_name – Configure operator friendly name in Fortinet’s FortiOS and FortiGate.
    • fortios_wireless_controller_hotspot20_h2qp_osu_provider – Configure online sign up (OSU) provider list in Fortinet’s FortiOS and FortiGate.
    • fortios_wireless_controller_hotspot20_h2qp_osu_provider_nai – Configure online sign up (OSU) provider NAI list in Fortinet’s FortiOS and FortiGate.
    • fortios_wireless_controller_hotspot20_h2qp_terms_and_conditions – Configure terms and conditions in Fortinet’s FortiOS and FortiGate.
    • fortios_wireless_controller_hotspot20_h2qp_wan_metric – Configure WAN metrics in Fortinet’s FortiOS and FortiGate.
    • fortios_wireless_controller_hotspot20_hs_profile – Configure hotspot profile in Fortinet’s FortiOS and FortiGate.
    • fortios_wireless_controller_hotspot20_icon – Configure OSU provider icon in Fortinet’s FortiOS and FortiGate.
    • fortios_wireless_controller_hotspot20_qos_map – Configure QoS map set in Fortinet’s FortiOS and FortiGate.
    • fortios_wireless_controller_inter_controller – Configure inter wireless controller operation in Fortinet’s FortiOS and FortiGate.
    • fortios_wireless_controller_log – Configure wireless controller event log filters in Fortinet’s FortiOS and FortiGate.
    • fortios_wireless_controller_mpsk_profile – Configure MPSK profile in Fortinet’s FortiOS and FortiGate.
    • fortios_wireless_controller_nac_profile – Configure WiFi network access control (NAC) profiles in Fortinet’s FortiOS and FortiGate.
    • fortios_wireless_controller_qos_profile – Configure WiFi quality of service (QoS) profiles in Fortinet’s FortiOS and FortiGate.
    • fortios_wireless_controller_region – Configure FortiAP regions (for floor plans and maps) in Fortinet’s FortiOS and FortiGate.
    • fortios_wireless_controller_rf_analysis – Wireless controller rf-analysis in Fortinet’s FortiOS and FortiGate.
    • fortios_wireless_controller_setting – VDOM wireless controller configuration in Fortinet’s FortiOS and FortiGate.
    • fortios_wireless_controller_snmp – Configure SNMP in Fortinet’s FortiOS and FortiGate.
    • fortios_wireless_controller_spectral_info – Wireless controller spectrum analysis in Fortinet’s FortiOS and FortiGate.
    • fortios_wireless_controller_ssid_policy – Configure WiFi SSID policies in Fortinet’s FortiOS and FortiGate.
    • fortios_wireless_controller_status – Wireless controller status in Fortinet’s FortiOS and FortiGate.
    • fortios_wireless_controller_syslog_profile – Configure Wireless Termination Points (WTP) system log server profile in Fortinet’s FortiOS and FortiGate.
    • fortios_wireless_controller_timers – Configure CAPWAP timers in Fortinet’s FortiOS and FortiGate.
    • fortios_wireless_controller_utm_profile – Configure UTM (Unified Threat Management) profile in Fortinet’s FortiOS and FortiGate.
    • fortios_wireless_controller_vap – Configure Virtual Access Points (VAPs) in Fortinet’s FortiOS and FortiGate.
    • fortios_wireless_controller_vap_group – Configure virtual Access Point (VAP) groups in Fortinet’s FortiOS and FortiGate.
    • fortios_wireless_controller_vap_status – Wireless controller VAP-status in Fortinet’s FortiOS and FortiGate.
    • fortios_wireless_controller_wag_profile – Configure wireless access gateway (WAG) profiles used for tunnels on AP in Fortinet’s FortiOS and FortiGate.
    • fortios_wireless_controller_wids_profile – Configure wireless intrusion detection system (WIDS) profiles in Fortinet’s FortiOS and FortiGate.
    • fortios_wireless_controller_wtp – Configure Wireless Termination Points (WTPs), that is, FortiAPs or APs to be managed by FortiGate in Fortinet’s FortiOS and FortiGate.
    • fortios_wireless_controller_wtp_group – Configure WTP groups in Fortinet’s FortiOS and FortiGate.
    • fortios_wireless_controller_wtp_profile – Configure WTP profiles or FortiAP profiles that define radio settings for manageable FortiAP platforms in Fortinet’s FortiOS and FortiGate.
    • fortios_wireless_controller_wtp_status – Wireless controller WTP-status in Fortinet’s FortiOS and FortiGate.
  • Monitor Modules
  • Facts Gathering Modules
  • Export playbooks
  • Generic Modules

Appendices

  • Release Notes
Ansible Galaxy FortiOS Collection
  • Docs »
  • Configuration Modules »
  • fortios_system_sdwan – Configure redundant Internet connections with multiple outbound links and health-check profiles in Fortinet’s FortiOS and FortiGate.
  • Edit on GitHub

fortios_system_sdwan – Configure redundant Internet connections with multiple outbound links and health-check profiles in Fortinet’s FortiOS and FortiGate.¶

New in version 2.0.0.

  • Synopsis
  • Requirements
  • FortiOS Version Compatibility
  • Parameters
  • Notes
  • Examples
  • Return Values
  • Status
  • Authors

Synopsis¶

  • This module is able to configure a FortiGate or FortiOS (FOS) device by allowing the user to set and modify system feature and sdwan category. Examples include all parameters and values need to be adjusted to datasources before usage. Tested with FOS v6.0.0

Requirements¶

The below requirements are needed on the host that executes this module.

  • ansible>=2.9

FortiOS Version Compatibility¶


v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
fortios_system_sdwan yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes

Parameters¶

  • access_token - Token-based authentication. Generated from GUI of Fortigate. type: str required: false
  • enable_log - Enable/Disable logging for task. type: bool required: false default: False
  • vdom - Virtual domain, among those defined previously. A vdom is a virtual instance of the FortiGate that can be configured and used as a different unit. type: str default: root
  • member_path - Member attribute path to operate on. type: str
  • member_state - Add or delete a member under specified attribute path. type: str choices: present, absent
  • system_sdwan - Configure redundant Internet connections with multiple outbound links and health-check profiles. type: dict more...
    v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
    system_sdwan yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
    • duplication - Create SD-WAN duplication rule. type: list more...
      v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
      duplication yes no yes yes yes yes yes yes yes yes yes yes yes yes yes
      • dstaddr - Destination address or address group names. type: list more...
        v6.4.0 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        dstaddr yes yes yes yes yes yes yes yes yes yes yes yes yes yes
        • name - Address or address group name. Source firewall.address.name firewall.addrgrp.name. type: str more...
          v6.4.0 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
          name yes yes yes yes yes yes yes yes yes yes yes yes yes yes
      • dstaddr6 - Destination address6 or address6 group names. type: list more...
        v6.4.0 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        dstaddr6 yes yes yes yes yes yes yes yes yes yes yes yes yes yes
        • name - Address6 or address6 group name. Source firewall.address6.name firewall.addrgrp6.name. type: str more...
          v6.4.0 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
          name yes yes yes yes yes yes yes yes yes yes yes yes yes yes
      • dstintf - Outgoing (egress) interfaces or zones. type: list more...
        v6.4.0 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        dstintf yes yes yes yes yes yes yes yes yes yes yes yes yes yes
        • name - Interface, zone or SDWAN zone name. Source system.interface.name system.zone.name system.sdwan.zone.name. type: str more...
          v6.4.0 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
          name yes yes yes yes yes yes yes yes yes yes yes yes yes yes
      • id - Duplication rule ID (1 - 255). type: int more...
        v6.4.0 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        id yes yes yes yes yes yes yes yes yes yes yes yes yes yes
      • packet_de_duplication - Enable/disable discarding of packets that have been duplicated. type: str choices: enable, disable more...
        v6.4.0 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        packet_de_duplication yes yes yes yes yes yes yes yes yes yes yes yes yes yes
        [enable] yes yes yes yes yes yes yes yes yes yes yes yes yes yes
        [disable] yes yes yes yes yes yes yes yes yes yes yes yes yes yes
      • packet_duplication - Configure packet duplication method. type: str choices: disable, force, on-demand more...
        v6.4.0 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        packet_duplication yes yes yes yes yes yes yes yes yes yes yes yes yes yes
        [disable] yes yes yes yes yes yes yes yes yes yes yes yes yes yes
        [force] yes yes yes yes yes yes yes yes yes yes yes yes yes yes
        [on-demand] yes yes yes yes yes yes yes yes yes yes yes yes yes yes
      • service - Service and service group name. type: list more...
        v6.4.0 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        service yes yes yes yes yes yes yes yes yes yes yes yes yes yes
        • name - Service and service group name. Source firewall.service.custom.name firewall.service.group.name. type: str more...
          v6.4.0 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
          name yes yes yes yes yes yes yes yes yes yes yes yes yes yes
      • service_id - SD-WAN service rule ID list. type: list more...
        v6.4.0 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        service_id no yes yes yes yes yes yes yes yes yes yes yes yes yes
        • id - SD-WAN service rule ID. Source system.sdwan.service.id. type: int more...
          v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
          id yes yes yes yes yes yes yes yes yes yes yes yes yes
      • sla_match_service - Enable/disable packet duplication matching health-check SLAs in service rule. type: str choices: enable, disable more...
        v6.4.0 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        sla_match_service no no no no no no no no no no no yes yes yes
        [enable] n/a n/a n/a n/a n/a n/a n/a n/a n/a n/a n/a yes yes yes
        [disable] n/a n/a n/a n/a n/a n/a n/a n/a n/a n/a n/a yes yes yes
      • srcaddr - Source address or address group names. type: list more...
        v6.4.0 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        srcaddr yes yes yes yes yes yes yes yes yes yes yes yes yes yes
        • name - Address or address group name. Source firewall.address.name firewall.addrgrp.name. type: str more...
          v6.4.0 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
          name yes yes yes yes yes yes yes yes yes yes yes yes yes yes
      • srcaddr6 - Source address6 or address6 group names. type: list more...
        v6.4.0 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        srcaddr6 yes yes yes yes yes yes yes yes yes yes yes yes yes yes
        • name - Address6 or address6 group name. Source firewall.address6.name firewall.addrgrp6.name. type: str more...
          v6.4.0 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
          name yes yes yes yes yes yes yes yes yes yes yes yes yes yes
      • srcintf - Incoming (ingress) interfaces or zones. type: list more...
        v6.4.0 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        srcintf yes yes yes yes yes yes yes yes yes yes yes yes yes yes
        • name - Interface, zone or SDWAN zone name. Source system.interface.name system.zone.name system.sdwan.zone.name. type: str more...
          v6.4.0 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
          name yes yes yes yes yes yes yes yes yes yes yes yes yes yes
    • duplication_max_num - Maximum number of interface members a packet is duplicated in the SD-WAN zone (2 - 4). type: int more...
      v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
      duplication_max_num yes no yes yes yes yes yes yes yes yes yes yes yes yes yes
    • fail_alert_interfaces - Physical interfaces that will be alerted. type: list more...
      v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
      fail_alert_interfaces yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
      • name - Physical interface name. Source system.interface.name. type: str more...
        v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        name yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
    • fail_detect - Enable/disable SD-WAN Internet connection status checking (failure detection). type: str choices: enable, disable more...
      v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
      fail_detect yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
      [enable] yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
      [disable] yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
    • health_check - SD-WAN status checking or health checking. Identify a server on the Internet and determine how SD-WAN verifies that the FortiGate can communicate with it. type: list more...
      v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
      health_check yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
      • addr_mode - Address mode (IPv4 or IPv6). type: str choices: ipv4, ipv6 more...
        v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        addr_mode yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
        [ipv4] yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
        [ipv6] yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
      • detect_mode - The mode determining how to detect the server. type: str choices: active, passive, prefer-passive, remote more...
        v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        detect_mode no no no yes yes yes yes yes yes yes yes yes yes yes yes
        [active] n/a n/a n/a yes yes yes yes yes yes yes yes yes yes yes yes
        [passive] n/a n/a n/a yes yes yes yes yes yes yes yes yes yes yes yes
        [prefer-passive] n/a n/a n/a yes yes yes yes yes yes yes yes yes yes yes yes
        [remote] n/a n/a n/a no no no no no no no no no no yes yes
      • diffservcode - Differentiated services code point (DSCP) in the IP header of the probe packet. type: str more...
        v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        diffservcode yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
      • dns_match_ip - Response IP expected from DNS server if the protocol is DNS. type: str more...
        v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        dns_match_ip yes no yes yes yes yes yes yes yes yes yes yes yes yes yes
      • dns_request_domain - Fully qualified domain name to resolve for the DNS probe. type: str more...
        v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        dns_request_domain yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
      • embed_measured_health - Enable/disable embedding measured health information. type: str choices: enable, disable more...
        v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        embed_measured_health no no no no no no no no no no no no no yes yes
        [enable] n/a n/a n/a n/a n/a n/a n/a n/a n/a n/a n/a n/a n/a yes yes
        [disable] n/a n/a n/a n/a n/a n/a n/a n/a n/a n/a n/a n/a n/a yes yes
      • failtime - Number of failures before server is considered lost (1 - 3600). type: int more...
        v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        failtime yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
      • ftp_file - Full path and file name on the FTP server to download for FTP health-check to probe. type: str more...
        v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        ftp_file yes no yes yes yes yes yes yes yes yes yes yes yes yes yes
      • ftp_mode - FTP mode. type: str choices: passive, port more...
        v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        ftp_mode yes no yes yes yes yes yes yes yes yes yes yes yes yes yes
        [passive] yes n/a yes yes yes yes yes yes yes yes yes yes yes yes yes
        [port] yes n/a yes yes yes yes yes yes yes yes yes yes yes yes yes
      • ha_priority - HA election priority (1 - 50). type: int more...
        v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        ha_priority yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
      • http_agent - String in the http-agent field in the HTTP header. type: str more...
        v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        http_agent yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
      • http_get - URL used to communicate with the server if the protocol if the protocol is HTTP. type: str more...
        v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        http_get yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
      • http_match - Response string expected from the server if the protocol is HTTP. type: str more...
        v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        http_match yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
      • interval - Status check interval in milliseconds, or the time between attempting to connect to the server (500 - 3600*1000 msec). type: int more...
        v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        interval yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
      • members - Member sequence number list. type: list more...
        v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        members yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
        • seq_num - Member sequence number. Source system.sdwan.members.seq-num. type: int more...
          v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
          seq_num yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
      • mos_codec - Codec to use for MOS calculation . type: str choices: g711, g722, g729 more...
        v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        mos_codec no no no no no no no no no no no no yes yes yes
        [g711] n/a n/a n/a n/a n/a n/a n/a n/a n/a n/a n/a n/a yes yes yes
        [g722] n/a n/a n/a n/a n/a n/a n/a n/a n/a n/a n/a n/a yes yes yes
        [g729] n/a n/a n/a n/a n/a n/a n/a n/a n/a n/a n/a n/a yes yes yes
      • name - Status check or health check name. type: str more...
        v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        name yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
      • packet_size - Packet size of a TWAMP test session. type: int more...
        v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        packet_size yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
      • password - TWAMP controller password in authentication mode. type: str more...
        v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        password yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
      • port - Port number used to communicate with the server over the selected protocol (0 - 65535). type: int more...
        v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        port yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
      • probe_count - Number of most recent probes that should be used to calculate latency and jitter (5 - 30). type: int more...
        v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        probe_count yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
      • probe_packets - Enable/disable transmission of probe packets. type: str choices: disable, enable more...
        v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        probe_packets yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
        [disable] yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
        [enable] yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
      • probe_timeout - Time to wait before a probe packet is considered lost (500 - 3600*1000 msec). type: int more...
        v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        probe_timeout yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
      • protocol - Protocol used to determine if the FortiGate can communicate with the server. type: str choices: ping, tcp-echo, udp-echo, http, twamp, dns, tcp-connect, ftp, ping6 more...
        v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        protocol yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
        [ping] yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
        [tcp-echo] yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
        [udp-echo] yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
        [http] yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
        [twamp] yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
        [dns] yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
        [tcp-connect] yes no yes yes yes yes yes yes yes yes yes yes yes yes yes
        [ftp] yes no yes yes yes yes yes yes yes yes yes yes yes yes yes
        [ping6] no yes n/a n/a n/a n/a n/a n/a n/a n/a n/a n/a n/a n/a n/a
      • quality_measured_method - Method to measure the quality of tcp-connect. type: str choices: half-open, half-close more...
        v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        quality_measured_method yes no yes yes yes yes yes yes yes yes yes yes yes yes yes
        [half-open] yes n/a yes yes yes yes yes yes yes yes yes yes yes yes yes
        [half-close] yes n/a yes yes yes yes yes yes yes yes yes yes yes yes yes
      • recoverytime - Number of successful responses received before server is considered recovered (1 - 3600). type: int more...
        v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        recoverytime yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
      • security_mode - Twamp controller security mode. type: str choices: none, authentication more...
        v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        security_mode yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
        [none] yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
        [authentication] yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
      • server - IP address or FQDN name of the server. type: list
      • sla - Service level agreement (SLA). type: list more...
        v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        sla yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
        • id - SLA ID. type: int more...
          v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
          id yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
        • jitter_threshold - Jitter for SLA to make decision in milliseconds. (0 - 10000000). type: int more...
          v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
          jitter_threshold yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
        • latency_threshold - Latency for SLA to make decision in milliseconds. (0 - 10000000). type: int more...
          v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
          latency_threshold yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
        • link_cost_factor - Criteria on which to base link selection. type: list choices: latency, jitter, packet-loss, mos more...
          v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
          link_cost_factor yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
          [latency] yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
          [jitter] yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
          [packet-loss] yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
          [mos] no no no no no no no no no no no no yes yes yes
        • mos_threshold - Minimum Mean Opinion Score for SLA to be marked as pass. (1.0 - 5.0). type: str more...
          v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
          mos_threshold no no no no no no no no no no no no yes yes yes
        • packetloss_threshold - Packet loss for SLA to make decision in percentage. (0 - 100). type: int more...
          v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
          packetloss_threshold yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
        • priority_in_sla - Value to be distributed into routing table when in-sla (0 - 65535). type: int more...
          v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
          priority_in_sla no no no no no no no no no no no no no yes yes
        • priority_out_sla - Value to be distributed into routing table when out-sla (0 - 65535). type: int more...
          v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
          priority_out_sla no no no no no no no no no no no no no yes yes
      • sla_fail_log_period - Time interval in seconds that SLA fail log messages will be generated (0 - 3600). type: int more...
        v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        sla_fail_log_period yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
      • sla_id_redistribute - Select the ID from the SLA sub-table. The selected SLA"s priority value will be distributed into the routing table (0 - 32). type: int more...
        v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        sla_id_redistribute no no no no no no no no no no no no no yes yes
      • sla_pass_log_period - Time interval in seconds that SLA pass log messages will be generated (0 - 3600). type: int more...
        v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        sla_pass_log_period yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
      • source - Source IP address used in the health-check packet to the server. type: str more...
        v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        source no no no no no no no no no no no no yes yes yes
      • system_dns - Enable/disable system DNS as the probe server. type: str choices: disable, enable more...
        v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        system_dns yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
        [disable] yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
        [enable] yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
      • threshold_alert_jitter - Alert threshold for jitter (ms). type: int more...
        v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        threshold_alert_jitter yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
      • threshold_alert_latency - Alert threshold for latency (ms). type: int more...
        v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        threshold_alert_latency yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
      • threshold_alert_packetloss - Alert threshold for packet loss (percentage). type: int more...
        v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        threshold_alert_packetloss yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
      • threshold_warning_jitter - Warning threshold for jitter (ms). type: int more...
        v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        threshold_warning_jitter yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
      • threshold_warning_latency - Warning threshold for latency (ms). type: int more...
        v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        threshold_warning_latency yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
      • threshold_warning_packetloss - Warning threshold for packet loss (percentage). type: int more...
        v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        threshold_warning_packetloss yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
      • update_cascade_interface - Enable/disable update cascade interface. type: str choices: enable, disable more...
        v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        update_cascade_interface yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
        [enable] yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
        [disable] yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
      • update_static_route - Enable/disable updating the static route. type: str choices: enable, disable more...
        v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        update_static_route yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
        [enable] yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
        [disable] yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
      • user - The user name to access probe server. type: str more...
        v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        user yes no yes yes yes yes yes yes yes yes yes yes yes yes yes
      • vrf - Virtual Routing Forwarding ID. type: int more...
        v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        vrf no no no no no no no no no no no no yes yes yes
    • load_balance_mode - Algorithm or mode to use for load balancing Internet traffic to SD-WAN members. type: str choices: source-ip-based, weight-based, usage-based, source-dest-ip-based, measured-volume-based more...
      v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
      load_balance_mode yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
      [source-ip-based] yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
      [weight-based] yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
      [usage-based] yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
      [source-dest-ip-based] yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
      [measured-volume-based] yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
    • members - FortiGate interfaces added to the SD-WAN. type: list more...
      v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
      members yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
      • comment - Comments. type: str more...
        v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        comment yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
      • cost - Cost of this interface for services in SLA mode (0 - 4294967295). type: int more...
        v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        cost yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
      • gateway - The default gateway for this interface. Usually the default gateway of the Internet service provider that this interface is connected to. type: str more...
        v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        gateway yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
      • gateway6 - IPv6 gateway. type: str more...
        v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        gateway6 yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
      • ingress_spillover_threshold - Ingress spillover threshold for this interface (0 - 16776000 kbit/s). When this traffic volume threshold is reached, new sessions spill over to other interfaces in the SD-WAN. type: int more...
        v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        ingress_spillover_threshold yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
      • interface - Interface name. Source system.interface.name. type: str more...
        v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        interface yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
      • priority - Priority of the interface for IPv4 (1 - 65535). Used for SD-WAN rules or priority rules. type: int more...
        v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        priority yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
      • priority6 - Priority of the interface for IPv6 (1 - 65535). Used for SD-WAN rules or priority rules. type: int more...
        v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        priority6 no no no yes yes yes yes yes yes yes yes yes yes yes yes
      • seq_num - Sequence number(1-512). type: int more...
        v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        seq_num yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
      • source - Source IP address used in the health-check packet to the server. type: str more...
        v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        source yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
      • source6 - Source IPv6 address used in the health-check packet to the server. type: str more...
        v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        source6 yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
      • spillover_threshold - Egress spillover threshold for this interface (0 - 16776000 kbit/s). When this traffic volume threshold is reached, new sessions spill over to other interfaces in the SD-WAN. type: int more...
        v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        spillover_threshold yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
      • status - Enable/disable this interface in the SD-WAN. type: str choices: disable, enable more...
        v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        status yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
        [disable] yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
        [enable] yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
      • volume_ratio - Measured volume ratio (this value / sum of all values = percentage of link volume, 1 - 255). type: int more...
        v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        volume_ratio yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
      • weight - Weight of this interface for weighted load balancing. (1 - 255) More traffic is directed to interfaces with higher weights. type: int more...
        v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        weight yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
      • zone - Zone name. Source system.sdwan.zone.name. type: str more...
        v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        zone yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
    • neighbor - Create SD-WAN neighbor from BGP neighbor table to control route advertisements according to SLA status. type: list more...
      v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
      neighbor yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
      • health_check - SD-WAN health-check name. Source system.sdwan.health-check.name. type: str more...
        v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        health_check yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
      • ip - IP/IPv6 address of neighbor. Source router.bgp.neighbor.ip. type: str more...
        v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        ip yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
      • member - Member sequence number list. Source system.sdwan.members.seq-num. type: list more...
        v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        member yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
        • seq_num - Member sequence number. Source system.sdwan.members.seq-num. type: int more...
          v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
          seq_num no no no no no no no no no no no no yes yes yes
      • minimum_sla_meet_members - Minimum number of members which meet SLA when the neighbor is preferred. type: int more...
        v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        minimum_sla_meet_members no no no no no no no no no no no no yes yes yes
      • mode - What metric to select the neighbor. type: str choices: sla, speedtest more...
        v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        mode no no no no yes yes yes yes yes yes yes yes yes yes yes
        [sla] n/a n/a n/a n/a yes yes yes yes yes yes yes yes yes yes yes
        [speedtest] n/a n/a n/a n/a yes yes yes yes yes yes yes yes yes yes yes
      • role - Role of neighbor. type: str choices: standalone, primary, secondary more...
        v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        role yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
        [standalone] yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
        [primary] yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
        [secondary] yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
      • sla_id - SLA ID. type: int more...
        v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        sla_id yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
    • neighbor_hold_boot_time - Waiting period in seconds when switching from the primary neighbor to the secondary neighbor from the neighbor start. (0 - 10000000). type: int more...
      v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
      neighbor_hold_boot_time yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
    • neighbor_hold_down - Enable/disable hold switching from the secondary neighbor to the primary neighbor. type: str choices: enable, disable more...
      v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
      neighbor_hold_down yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
      [enable] yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
      [disable] yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
    • neighbor_hold_down_time - Waiting period in seconds when switching from the secondary neighbor to the primary neighbor when hold-down is disabled. (0 - 10000000). type: int more...
      v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
      neighbor_hold_down_time yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
    • service - Create SD-WAN rules (also called services) to control how sessions are distributed to interfaces in the SD-WAN. type: list more...
      v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
      service yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
      • addr_mode - Address mode (IPv4 or IPv6). type: str choices: ipv4, ipv6 more...
        v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        addr_mode yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
        [ipv4] yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
        [ipv6] yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
      • bandwidth_weight - Coefficient of reciprocal of available bidirectional bandwidth in the formula of custom-profile-1. type: int more...
        v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        bandwidth_weight yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
      • default - Enable/disable use of SD-WAN as default service. type: str choices: enable, disable more...
        v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        default yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
        [enable] yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
        [disable] yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
      • dscp_forward - Enable/disable forward traffic DSCP tag. type: str choices: enable, disable more...
        v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        dscp_forward yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
        [enable] yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
        [disable] yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
      • dscp_forward_tag - Forward traffic DSCP tag. type: str more...
        v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        dscp_forward_tag yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
      • dscp_reverse - Enable/disable reverse traffic DSCP tag. type: str choices: enable, disable more...
        v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        dscp_reverse yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
        [enable] yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
        [disable] yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
      • dscp_reverse_tag - Reverse traffic DSCP tag. type: str more...
        v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        dscp_reverse_tag yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
      • dst - Destination address name. type: list more...
        v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        dst yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
        • name - Address or address group name. Source firewall.address.name firewall.addrgrp.name. type: str more...
          v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
          name yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
      • dst_negate - Enable/disable negation of destination address match. type: str choices: enable, disable more...
        v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        dst_negate yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
        [enable] yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
        [disable] yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
      • dst6 - Destination address6 name. type: list more...
        v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        dst6 yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
        • name - Address6 or address6 group name. Source firewall.address6.name firewall.addrgrp6.name. type: str more...
          v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
          name yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
      • end_port - End destination port number. type: int more...
        v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        end_port yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
      • gateway - Enable/disable SD-WAN service gateway. type: str choices: enable, disable more...
        v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        gateway yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
        [enable] yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
        [disable] yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
      • groups - User groups. type: list more...
        v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        groups yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
        • name - Group name. Source user.group.name. type: str more...
          v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
          name yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
      • hash_mode - Hash algorithm for selected priority members for load balance mode. type: str choices: round-robin, source-ip-based, source-dest-ip-based, inbandwidth, outbandwidth, bibandwidth more...
        v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        hash_mode yes no yes yes yes yes yes yes yes yes yes yes yes yes yes
        [round-robin] yes n/a yes yes yes yes yes yes yes yes yes yes yes yes yes
        [source-ip-based] yes n/a yes yes yes yes yes yes yes yes yes yes yes yes yes
        [source-dest-ip-based] yes n/a yes yes yes yes yes yes yes yes yes yes yes yes yes
        [inbandwidth] yes n/a yes yes yes yes yes yes yes yes yes yes yes yes yes
        [outbandwidth] yes n/a yes yes yes yes yes yes yes yes yes yes yes yes yes
        [bibandwidth] yes n/a yes yes yes yes yes yes yes yes yes yes yes yes yes
      • health_check - Health check list. type: list more...
        v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        health_check yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
        • name - Health check name. Source system.sdwan.health-check.name. type: str more...
          v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
          name yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
      • hold_down_time - Waiting period in seconds when switching from the back-up member to the primary member (0 - 10000000). type: int more...
        v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        hold_down_time yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
      • id - SD-WAN rule ID (1 - 4000). type: int more...
        v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        id yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
      • input_device - Source interface name. type: list more...
        v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        input_device yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
        • name - Interface name. Source system.interface.name. type: str more...
          v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
          name yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
      • input_device_negate - Enable/disable negation of input device match. type: str choices: enable, disable more...
        v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        input_device_negate yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
        [enable] yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
        [disable] yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
      • input_zone - Source input-zone name. type: list more...
        v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        input_zone no no no no no no no no no no no no yes yes yes
        • name - Zone. Source system.sdwan.zone.name. type: str more...
          v7.2.0 v7.2.1 v7.2.2
          name yes yes yes
      • internet_service - Enable/disable use of Internet service for application-based load balancing. type: str choices: enable, disable more...
        v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        internet_service yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
        [enable] yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
        [disable] yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
      • internet_service_app_ctrl - Application control based Internet Service ID list. type: list more...
        v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        internet_service_app_ctrl yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
        • id - Application control based Internet Service ID. type: int more...
          v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
          id yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
      • internet_service_app_ctrl_category - IDs of one or more application control categories. type: list more...
        v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        internet_service_app_ctrl_category no no no no no no no no no no no no yes yes yes
        • id - Application control category ID. type: int more...
          v7.2.0 v7.2.1 v7.2.2
          id yes yes yes
      • internet_service_app_ctrl_group - Application control based Internet Service group list. type: list more...
        v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        internet_service_app_ctrl_group yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
        • name - Application control based Internet Service group name. Source application.group.name. type: str more...
          v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
          name yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
      • internet_service_custom - Custom Internet service name list. type: list more...
        v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        internet_service_custom yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
        • name - Custom Internet service name. Source firewall.internet-service-custom.name. type: str more...
          v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
          name yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
      • internet_service_custom_group - Custom Internet Service group list. type: list more...
        v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        internet_service_custom_group yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
        • name - Custom Internet Service group name. Source firewall.internet-service-custom-group.name. type: str more...
          v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
          name yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
      • internet_service_group - Internet Service group list. type: list more...
        v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        internet_service_group yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
        • name - Internet Service group name. Source firewall.internet-service-group.name. type: str more...
          v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
          name yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
      • internet_service_name - Internet service name list. type: list more...
        v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        internet_service_name yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
        • name - Internet service name. Source firewall.internet-service-name.name. type: str more...
          v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
          name yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
      • jitter_weight - Coefficient of jitter in the formula of custom-profile-1. type: int more...
        v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        jitter_weight yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
      • latency_weight - Coefficient of latency in the formula of custom-profile-1. type: int more...
        v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        latency_weight yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
      • link_cost_factor - Link cost factor. type: str choices: latency, jitter, packet-loss, inbandwidth, outbandwidth, bibandwidth, custom-profile-1 more...
        v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        link_cost_factor yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
        [latency] yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
        [jitter] yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
        [packet-loss] yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
        [inbandwidth] yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
        [outbandwidth] yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
        [bibandwidth] yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
        [custom-profile-1] yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
      • link_cost_threshold - Percentage threshold change of link cost values that will result in policy route regeneration (0 - 10000000). type: int more...
        v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        link_cost_threshold yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
      • minimum_sla_meet_members - Minimum number of members which meet SLA. type: int more...
        v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        minimum_sla_meet_members yes no yes yes yes yes yes yes yes yes yes yes yes yes yes
      • mode - Control how the SD-WAN rule sets the priority of interfaces in the SD-WAN. type: str choices: auto, manual, priority, sla, load-balance more...
        v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        mode yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
        [auto] yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
        [manual] yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
        [priority] yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
        [sla] yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
        [load-balance] yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
      • name - SD-WAN rule name. type: str more...
        v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        name yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
      • packet_loss_weight - Coefficient of packet-loss in the formula of custom-profile-1. type: int more...
        v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        packet_loss_weight yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
      • passive_measurement - Enable/disable passive measurement based on the service criteria. type: str choices: enable, disable more...
        v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        passive_measurement no no no no no yes yes yes yes yes yes yes yes yes yes
        [enable] n/a n/a n/a n/a n/a yes yes yes yes yes yes yes yes yes yes
        [disable] n/a n/a n/a n/a n/a yes yes yes yes yes yes yes yes yes yes
      • priority_members - Member sequence number list. type: list more...
        v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        priority_members yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
        • seq_num - Member sequence number. Source system.sdwan.members.seq-num. type: int more...
          v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
          seq_num yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
      • priority_zone - Priority zone name list. type: list more...
        v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        priority_zone no no no no yes yes yes yes yes yes yes yes yes yes yes
        • name - Priority zone name. Source system.sdwan.zone.name. type: str more...
          v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
          name yes yes yes yes yes yes yes yes yes yes yes
      • protocol - Protocol number. type: int more...
        v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        protocol yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
      • quality_link - Quality grade. type: int more...
        v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        quality_link yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
      • role - Service role to work with neighbor. type: str choices: standalone, primary, secondary more...
        v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        role yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
        [standalone] yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
        [primary] yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
        [secondary] yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
      • route_tag - IPv4 route map route-tag. type: int more...
        v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        route_tag yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
      • sla - Service level agreement (SLA). type: list more...
        v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        sla yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
        • health_check - SD-WAN health-check. Source system.sdwan.health-check.name. type: str more...
          v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
          health_check yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
        • id - SLA ID. type: int more...
          v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
          id yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
      • sla_compare_method - Method to compare SLA value for SLA mode. type: str choices: order, number more...
        v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        sla_compare_method yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
        [order] yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
        [number] yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
      • src - Source address name. type: list more...
        v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        src yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
        • name - Address or address group name. Source firewall.address.name firewall.addrgrp.name. type: str more...
          v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
          name yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
      • src_negate - Enable/disable negation of source address match. type: str choices: enable, disable more...
        v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        src_negate yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
        [enable] yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
        [disable] yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
      • src6 - Source address6 name. type: list more...
        v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        src6 yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
        • name - Address6 or address6 group name. Source firewall.address6.name firewall.addrgrp6.name. type: str more...
          v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
          name yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
      • standalone_action - Enable/disable service when selected neighbor role is standalone while service role is not standalone. type: str choices: enable, disable more...
        v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        standalone_action yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
        [enable] yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
        [disable] yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
      • start_port - Start destination port number. type: int more...
        v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        start_port yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
      • status - Enable/disable SD-WAN service. type: str choices: enable, disable more...
        v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        status yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
        [enable] yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
        [disable] yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
      • tie_break - Method of selecting member if more than one meets the SLA. type: str choices: zone, cfg-order, fib-best-match, input-device more...
        v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        tie_break no no yes yes yes yes yes yes yes yes yes yes yes yes yes
        [zone] n/a n/a yes yes yes yes yes yes yes yes yes yes yes yes yes
        [cfg-order] n/a n/a yes yes yes yes yes yes yes yes yes yes yes yes yes
        [fib-best-match] n/a n/a yes yes yes yes yes yes yes yes yes yes yes yes yes
        [input-device] n/a n/a no no no no no no no no no no yes yes yes
      • tos - Type of service bit pattern. type: str more...
        v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        tos yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
      • tos_mask - Type of service evaluated bits. type: str more...
        v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        tos_mask yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
      • use_shortcut_sla - Enable/disable use of ADVPN shortcut for quality comparison. type: str choices: enable, disable more...
        v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        use_shortcut_sla no no yes yes yes yes yes yes yes yes yes yes yes yes yes
        [enable] n/a n/a yes yes yes yes yes yes yes yes yes yes yes yes yes
        [disable] n/a n/a yes yes yes yes yes yes yes yes yes yes yes yes yes
      • users - User name. type: list more...
        v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        users yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
        • name - User name. Source user.local.name. type: str more...
          v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
          name yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
    • speedtest_bypass_routing - Enable/disable bypass routing when speedtest on a SD-WAN member. type: str choices: disable, enable more...
      v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
      speedtest_bypass_routing no no no no yes yes yes yes yes yes yes yes yes yes yes
      [disable] n/a n/a n/a n/a yes yes yes yes yes yes yes yes yes yes yes
      [enable] n/a n/a n/a n/a yes yes yes yes yes yes yes yes yes yes yes
    • status - Enable/disable SD-WAN. type: str choices: disable, enable more...
      v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
      status yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
      [disable] yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
      [enable] yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
    • zone - Configure SD-WAN zones. type: list more...
      v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
      zone yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
      • name - Zone name. type: str more...
        v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        name yes yes yes yes yes yes yes yes yes yes yes yes yes yes yes
      • service_sla_tie_break - Method of selecting member if more than one meets the SLA. type: str choices: cfg-order, fib-best-match, input-device more...
        v6.4.0 v6.4.1 v6.4.4 v7.0.0 v7.0.1 v7.0.2 v7.0.3 v7.0.4 v7.0.5 v7.0.6 v7.0.7 v7.0.8 v7.2.0 v7.2.1 v7.2.2
        service_sla_tie_break no no yes yes yes yes yes yes yes yes yes yes yes yes yes
        [cfg-order] n/a n/a yes yes yes yes yes yes yes yes yes yes yes yes yes
        [fib-best-match] n/a n/a yes yes yes yes yes yes yes yes yes yes yes yes yes
        [input-device] n/a n/a no no no no no no no no no no yes yes yes

Notes¶

Note

  • Legacy fortiosapi has been deprecated, httpapi is the preferred way to run playbooks

Examples¶

- hosts: fortigates
  collections:
    - fortinet.fortios
  connection: httpapi
  vars:
   vdom: "root"
   ansible_httpapi_use_ssl: yes
   ansible_httpapi_validate_certs: no
   ansible_httpapi_port: 443
  tasks:
  - name: Configure redundant Internet connections with multiple outbound links and health-check profiles.
    fortios_system_sdwan:
      vdom:  "{{ vdom }}"
      system_sdwan:
        duplication:
         -
            dstaddr:
             -
                name: "default_name_5 (source firewall.address.name firewall.addrgrp.name)"
            dstaddr6:
             -
                name: "default_name_7 (source firewall.address6.name firewall.addrgrp6.name)"
            dstintf:
             -
                name: "default_name_9 (source system.interface.name system.zone.name system.sdwan.zone.name)"
            id:  "10"
            packet_de_duplication: "enable"
            packet_duplication: "disable"
            service:
             -
                name: "default_name_14 (source firewall.service.custom.name firewall.service.group.name)"
            service_id:
             -
                id:  "16 (source system.sdwan.service.id)"
            sla_match_service: "enable"
            srcaddr:
             -
                name: "default_name_19 (source firewall.address.name firewall.addrgrp.name)"
            srcaddr6:
             -
                name: "default_name_21 (source firewall.address6.name firewall.addrgrp6.name)"
            srcintf:
             -
                name: "default_name_23 (source system.interface.name system.zone.name system.sdwan.zone.name)"
        duplication_max_num: "2"
        fail_alert_interfaces:
         -
            name: "default_name_26 (source system.interface.name)"
        fail_detect: "enable"
        health_check:
         -
            addr_mode: "ipv4"
            detect_mode: "active"
            diffservcode: "<your_own_value>"
            dns_match_ip: "<your_own_value>"
            dns_request_domain: "<your_own_value>"
            embed_measured_health: "enable"
            failtime: "5"
            ftp_file: "<your_own_value>"
            ftp_mode: "passive"
            ha_priority: "1"
            http_agent: "<your_own_value>"
            http_get: "<your_own_value>"
            http_match: "<your_own_value>"
            interval: "500"
            members:
             -
                seq_num: "0"
            mos_codec: "g711"
            name: "default_name_46"
            packet_size: "64"
            password: "<your_own_value>"
            port: "0"
            probe_count: "30"
            probe_packets: "disable"
            probe_timeout: "500"
            protocol: "ping"
            quality_measured_method: "half-open"
            recoverytime: "5"
            security_mode: "none"
            server: "192.168.100.40"
            sla:
             -
                id:  "59"
                jitter_threshold: "5"
                latency_threshold: "5"
                link_cost_factor: "latency"
                mos_threshold: "<your_own_value>"
                packetloss_threshold: "0"
                priority_in_sla: "0"
                priority_out_sla: "0"
            sla_fail_log_period: "0"
            sla_id_redistribute: "0"
            sla_pass_log_period: "0"
            source: "<your_own_value>"
            system_dns: "disable"
            threshold_alert_jitter: "0"
            threshold_alert_latency: "0"
            threshold_alert_packetloss: "0"
            threshold_warning_jitter: "0"
            threshold_warning_latency: "0"
            threshold_warning_packetloss: "0"
            update_cascade_interface: "enable"
            update_static_route: "enable"
            user: "<your_own_value>"
            vrf: "0"
        load_balance_mode: "source-ip-based"
        members:
         -
            comment: "Comments."
            cost: "0"
            gateway: "<your_own_value>"
            gateway6: "<your_own_value>"
            ingress_spillover_threshold: "0"
            interface: "<your_own_value> (source system.interface.name)"
            priority: "1"
            priority6: "1024"
            seq_num: "0"
            source: "<your_own_value>"
            source6: "<your_own_value>"
            spillover_threshold: "0"
            status: "disable"
            volume_ratio: "1"
            weight: "1"
            zone: "<your_own_value> (source system.sdwan.zone.name)"
        neighbor:
         -
            health_check: "<your_own_value> (source system.sdwan.health-check.name)"
            ip: "<your_own_value> (source router.bgp.neighbor.ip)"
            member:
             -
                seq_num: "0"
            minimum_sla_meet_members: "1"
            mode: "sla"
            role: "standalone"
            sla_id: "0"
        neighbor_hold_boot_time: "0"
        neighbor_hold_down: "enable"
        neighbor_hold_down_time: "0"
        service:
         -
            addr_mode: "ipv4"
            bandwidth_weight: "0"
            default: "enable"
            dscp_forward: "enable"
            dscp_forward_tag: "<your_own_value>"
            dscp_reverse: "enable"
            dscp_reverse_tag: "<your_own_value>"
            dst:
             -
                name: "default_name_121 (source firewall.address.name firewall.addrgrp.name)"
            dst_negate: "enable"
            dst6:
             -
                name: "default_name_124 (source firewall.address6.name firewall.addrgrp6.name)"
            end_port: "65535"
            gateway: "enable"
            groups:
             -
                name: "default_name_128 (source user.group.name)"
            hash_mode: "round-robin"
            health_check:
             -
                name: "default_name_131 (source system.sdwan.health-check.name)"
            hold_down_time: "0"
            id:  "133"
            input_device:
             -
                name: "default_name_135 (source system.interface.name)"
            input_device_negate: "enable"
            input_zone:
             -
                name: "default_name_138 (source system.sdwan.zone.name)"
            internet_service: "enable"
            internet_service_app_ctrl:
             -
                id:  "141"
            internet_service_app_ctrl_category:
             -
                id:  "143"
            internet_service_app_ctrl_group:
             -
                name: "default_name_145 (source application.group.name)"
            internet_service_custom:
             -
                name: "default_name_147 (source firewall.internet-service-custom.name)"
            internet_service_custom_group:
             -
                name: "default_name_149 (source firewall.internet-service-custom-group.name)"
            internet_service_group:
             -
                name: "default_name_151 (source firewall.internet-service-group.name)"
            internet_service_name:
             -
                name: "default_name_153 (source firewall.internet-service-name.name)"
            jitter_weight: "0"
            latency_weight: "0"
            link_cost_factor: "latency"
            link_cost_threshold: "10"
            minimum_sla_meet_members: "0"
            mode: "auto"
            name: "default_name_160"
            packet_loss_weight: "0"
            passive_measurement: "enable"
            priority_members:
             -
                seq_num: "0"
            priority_zone:
             -
                name: "default_name_166 (source system.sdwan.zone.name)"
            protocol: "0"
            quality_link: "0"
            role: "standalone"
            route_tag: "0"
            sla:
             -
                health_check: "<your_own_value> (source system.sdwan.health-check.name)"
                id:  "173"
            sla_compare_method: "order"
            src:
             -
                name: "default_name_176 (source firewall.address.name firewall.addrgrp.name)"
            src_negate: "enable"
            src6:
             -
                name: "default_name_179 (source firewall.address6.name firewall.addrgrp6.name)"
            standalone_action: "enable"
            start_port: "1"
            status: "enable"
            tie_break: "zone"
            tos: "<your_own_value>"
            tos_mask: "<your_own_value>"
            use_shortcut_sla: "enable"
            users:
             -
                name: "default_name_188 (source user.local.name)"
        speedtest_bypass_routing: "disable"
        status: "disable"
        zone:
         -
            name: "default_name_192"
            service_sla_tie_break: "cfg-order"

Return Values¶

Common return values are documented: https://docs.ansible.com/ansible/latest/reference_appendices/common_return_values.html#common-return-values, the following are the fields unique to this module:

  • build - Build number of the fortigate image returned: always type: str sample: 1547
  • http_method - Last method used to provision the content into FortiGate returned: always type: str sample: PUT
  • http_status - Last result given by FortiGate on last operation applied returned: always type: str sample: 200
  • mkey - Master key (id) used in the last call to FortiGate returned: success type: str sample: id
  • name - Name of the table used to fulfill the request returned: always type: str sample: urlfilter
  • path - Path of the table used to fulfill the request returned: always type: str sample: webfilter
  • revision - Internal revision number returned: always type: str sample: 17.0.2.10658
  • serial - Serial number of the unit returned: always type: str sample: FGVMEVYYQT3AB5352
  • status - Indication of the operation's result returned: always type: str sample: success
  • vdom - Virtual domain used returned: always type: str sample: root
  • version - Version of the FortiGate returned: always type: str sample: v5.6.3

Status¶

  • This module is not guaranteed to have a backwards compatible interface.

Authors¶

  • Link Zheng (@chillancezen)
  • Jie Xue (@JieX19)
  • Hongbin Lu (@fgtdev-hblu)
  • Frank Shen (@frankshen01)
  • Miguel Angel Munoz (@mamunozgonzalez)
  • Nicolas Thomas (@thomnico)

Hint

If you notice any issues in this documentation, you can create a pull request to improve it.

Next Previous

© Copyright 2020-2021, Fortinet Revision a45c014f.

Built with Sphinx using a theme provided by Read the Docs.
Read the Docs v: 2.2.1
Versions
latest
stable
2.2.1
galaxy-2.2.0
galaxy-2.1.7
galaxy-2.1.6
galaxy-2.1.5
galaxy-2.1.4
galaxy-2.1.3
galaxy-2.1.2
galaxy-2.1.1
galaxy-2.1.0
galaxy-2.0.2
galaxy-2.0.1
galaxy-2.0.0
galaxy-1.1.9
galaxy-1.1.8
galaxy-1.1.7
galaxy-1.1.6
galaxy-1.1.5
galaxy-1.1.4
galaxy-1.1.3
galaxy-1.1.2
galaxy-1.1.1
galaxy-1.1.0
galaxy-1.0.9
galaxy-1.0.8
galaxy-1.0.15
galaxy-1.0.13
galaxy-1.0.12
galaxy-1.0.11
galaxy-1.0.10
Downloads
On Read the Docs
Project Home
Builds

Free document hosting provided by Read the Docs.