Ansible Galaxy FortiOS Collection
galaxy-1.1.5

FortiOS/Galaxy Version Mapping Guide

  • FortiOS Galaxy Versioning

User's Guide

  • Install FortiOS Ansible Galaxy
  • Run Your First Playbook
  • Get Help

modules index

  • Configuration Modules
    • fortios_alertemail_setting – Configure alert email settings in Fortinet’s FortiOS and FortiGate.
    • fortios_antivirus_heuristic – Configure global heuristic options in Fortinet’s FortiOS and FortiGate.
    • fortios_antivirus_profile – Configure AntiVirus profiles in Fortinet’s FortiOS and FortiGate.
    • fortios_antivirus_quarantine – Configure quarantine options in Fortinet’s FortiOS and FortiGate.
    • fortios_antivirus_settings – Configure AntiVirus settings in Fortinet’s FortiOS and FortiGate.
    • fortios_application_custom – Configure custom application signatures in Fortinet’s FortiOS and FortiGate.
    • fortios_application_group – Configure firewall application groups in Fortinet’s FortiOS and FortiGate.
    • fortios_application_list – Configure application control lists in Fortinet’s FortiOS and FortiGate.
    • fortios_application_name – Configure application signatures in Fortinet’s FortiOS and FortiGate.
    • fortios_application_rule_settings – Configure application rule settings in Fortinet’s FortiOS and FortiGate.
    • fortios_authentication_rule – Configure Authentication Rules in Fortinet’s FortiOS and FortiGate.
    • fortios_authentication_scheme – Configure Authentication Schemes in Fortinet’s FortiOS and FortiGate.
    • fortios_authentication_setting – Configure authentication setting in Fortinet’s FortiOS and FortiGate.
    • fortios_certificate_ca – CA certificate in Fortinet’s FortiOS and FortiGate.
    • fortios_certificate_crl – Certificate Revocation List as a PEM file in Fortinet’s FortiOS and FortiGate.
    • fortios_certificate_local – Local keys and certificates in Fortinet’s FortiOS and FortiGate.
    • fortios_dlp_filepattern – Configure file patterns used by DLP blocking in Fortinet’s FortiOS and FortiGate.
    • fortios_dlp_fp_doc_source – Create a DLP fingerprint database by allowing the FortiGate to access a file server containing files from which to create fingerprints in Fortinet’s FortiOS and FortiGate.
    • fortios_dlp_fp_sensitivity – Create self-explanatory DLP sensitivity levels to be used when setting sensitivity under config fp-doc-source in Fortinet’s FortiOS and FortiGate.
    • fortios_dlp_sensor – Configure DLP sensors in Fortinet’s FortiOS and FortiGate.
    • fortios_dlp_settings – Designate logical storage for DLP fingerprint database in Fortinet’s FortiOS and FortiGate.
    • fortios_dnsfilter_domain_filter – Configure DNS domain filters in Fortinet’s FortiOS and FortiGate.
    • fortios_dnsfilter_profile – Configure DNS domain filter profiles in Fortinet’s FortiOS and FortiGate.
    • fortios_endpoint_control_client – Configure endpoint control client lists in Fortinet’s FortiOS and FortiGate.
    • fortios_endpoint_control_forticlient_ems – Configure FortiClient Enterprise Management Server (EMS) entries in Fortinet’s FortiOS and FortiGate.
    • fortios_endpoint_control_forticlient_registration_sync – Configure FortiClient registration synchronization settings in Fortinet’s FortiOS and FortiGate.
    • fortios_endpoint_control_profile – Configure FortiClient endpoint control profiles in Fortinet’s FortiOS and FortiGate.
    • fortios_endpoint_control_registered_forticlient – Registered FortiClient list in Fortinet’s FortiOS and FortiGate.
    • fortios_endpoint_control_settings – Configure endpoint control settings in Fortinet’s FortiOS and FortiGate.
    • fortios_extender_controller_extender – Extender controller configuration in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_address – Configure IPv4 addresses in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_address6 – Configure IPv6 firewall addresses in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_address6_template – Configure IPv6 address templates in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_addrgrp – Configure IPv4 address groups in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_addrgrp6 – Configure IPv6 address groups in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_auth_portal – Configure firewall authentication portals in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_central_snat_map – Configure central SNAT policies in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_dnstranslation – Configure DNS translation in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_dos_policy – Configure IPv4 DoS policies in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_dos_policy6 – Configure IPv6 DoS policies in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_identity_based_route – Configure identity based routing in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_interface_policy – Configure IPv4 interface policies in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_interface_policy6 – Configure IPv6 interface policies in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_internet_service – Show Internet Service application in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_internet_service_custom – Configure custom Internet Services in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_internet_service_custom_group – Configure custom Internet Service group in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_internet_service_group – Configure group of Internet Service in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_ip_translation – Configure firewall IP-translation in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_ipmacbinding_setting – Configure IP to MAC binding settings in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_ipmacbinding_table – Configure IP to MAC address pairs in the IP/MAC binding table in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_ippool – Configure IPv4 IP pools in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_ippool6 – Configure IPv6 IP pools in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_ipv6_eh_filter – Configure IPv6 extension header filter in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_ldb_monitor – Configure server load balancing health monitors in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_local_in_policy – Configure user defined IPv4 local-in policies in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_local_in_policy6 – Configure user defined IPv6 local-in policies in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_multicast_address – Configure multicast addresses in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_multicast_address6 – Configure IPv6 multicast address in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_multicast_policy – Configure multicast NAT policies in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_multicast_policy6 – Configure IPv6 multicast NAT policies in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_policy – Configure IPv4 policies in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_policy46 – Configure IPv4 to IPv6 policies in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_policy6 – Configure IPv6 policies in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_policy64 – Configure IPv6 to IPv4 policies in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_profile_group – Configure profile groups in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_profile_protocol_options – Configure protocol options in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_proxy_address – Web proxy address configuration in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_proxy_addrgrp – Web proxy address group configuration in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_proxy_policy – Configure proxy policies in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_schedule_group – Schedule group configuration in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_schedule_onetime – Onetime schedule configuration in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_schedule_recurring – Recurring schedule configuration in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_service_category – Configure service categories in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_service_custom – Configure custom services in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_service_group – Configure service groups in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_shaper_per_ip_shaper – Configure per-IP traffic shaper in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_shaper_traffic_shaper – Configure shared traffic shaper in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_shaping_policy – Configure shaping policies in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_shaping_profile – Configure shaping profiles in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_sniffer – Configure sniffer in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_ssh_host_key – SSH proxy host public keys in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_ssh_local_ca – SSH proxy local CA in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_ssh_local_key – SSH proxy local keys in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_ssh_setting – SSH proxy settings in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_ssl_server – Configure SSL servers in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_ssl_setting – SSL proxy settings in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_ssl_ssh_profile – Configure SSL/SSH protocol options in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_ttl_policy – Configure TTL policies in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_vip – Configure virtual IP for IPv4 in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_vip46 – Configure IPv4 to IPv6 virtual IPs in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_vip6 – Configure virtual IP for IPv6 in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_vip64 – Configure IPv6 to IPv4 virtual IPs in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_vipgrp – Configure IPv4 virtual IP groups in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_vipgrp46 – Configure IPv4 to IPv6 virtual IP groups in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_vipgrp6 – Configure IPv6 virtual IP groups in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_vipgrp64 – Configure IPv6 to IPv4 virtual IP groups in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_wildcard_fqdn_custom – Config global/VDOM Wildcard FQDN address in Fortinet’s FortiOS and FortiGate.
    • fortios_firewall_wildcard_fqdn_group – Config global Wildcard FQDN address groups in Fortinet’s FortiOS and FortiGate.
    • fortios_ftp_proxy_explicit – Configure explicit FTP proxy settings in Fortinet’s FortiOS and FortiGate.
    • fortios_icap_profile – Configure ICAP profiles in Fortinet’s FortiOS and FortiGate.
    • fortios_icap_server – Configure ICAP servers in Fortinet’s FortiOS and FortiGate.
    • fortios_ips_custom – Configure IPS custom signature in Fortinet’s FortiOS and FortiGate.
    • fortios_ips_decoder – Configure IPS decoder in Fortinet’s FortiOS and FortiGate.
    • fortios_ips_global – Configure IPS global parameter in Fortinet’s FortiOS and FortiGate.
    • fortios_ips_rule – Configure IPS rules in Fortinet’s FortiOS and FortiGate.
    • fortios_ips_rule_settings – Configure IPS rule setting in Fortinet’s FortiOS and FortiGate.
    • fortios_ips_sensor – Configure IPS sensor in Fortinet’s FortiOS and FortiGate.
    • fortios_ips_settings – Configure IPS VDOM parameter in Fortinet’s FortiOS and FortiGate.
    • fortios_log_custom_field – Configure custom log fields in Fortinet’s FortiOS and FortiGate.
    • fortios_log_disk_filter – Configure filters for local disk logging. Use these filters to determine the log messages to record according to severity and type in Fortinet’s FortiOS and FortiGate.
    • fortios_log_disk_setting – Settings for local disk logging in Fortinet’s FortiOS and FortiGate.
    • fortios_log_eventfilter – Configure log event filters in Fortinet’s FortiOS and FortiGate.
    • fortios_log_fortianalyzer2_filter – Filters for FortiAnalyzer in Fortinet’s FortiOS and FortiGate.
    • fortios_log_fortianalyzer2_setting – Global FortiAnalyzer settings in Fortinet’s FortiOS and FortiGate.
    • fortios_log_fortianalyzer3_filter – Filters for FortiAnalyzer in Fortinet’s FortiOS and FortiGate.
    • fortios_log_fortianalyzer3_setting – Global FortiAnalyzer settings in Fortinet’s FortiOS and FortiGate.
    • fortios_log_fortianalyzer_filter – Filters for FortiAnalyzer in Fortinet’s FortiOS and FortiGate.
    • fortios_log_fortianalyzer_override_filter – Override filters for FortiAnalyzer in Fortinet’s FortiOS and FortiGate.
    • fortios_log_fortianalyzer_override_setting – Override FortiAnalyzer settings in Fortinet’s FortiOS and FortiGate.
    • fortios_log_fortianalyzer_setting – Global FortiAnalyzer settings in Fortinet’s FortiOS and FortiGate.
    • fortios_log_fortiguard_filter – Filters for FortiCloud in Fortinet’s FortiOS and FortiGate.
    • fortios_log_fortiguard_override_filter – Override filters for FortiCloud in Fortinet’s FortiOS and FortiGate.
    • fortios_log_fortiguard_override_setting – Override global FortiCloud logging settings for this VDOM in Fortinet’s FortiOS and FortiGate.
    • fortios_log_fortiguard_setting – Configure logging to FortiCloud in Fortinet’s FortiOS and FortiGate.
    • fortios_log_gui_display – Configure how log messages are displayed on the GUI in Fortinet’s FortiOS and FortiGate.
    • fortios_log_memory_filter – Filters for memory buffer in Fortinet’s FortiOS and FortiGate.
    • fortios_log_memory_global_setting – Global settings for memory logging in Fortinet’s FortiOS and FortiGate.
    • fortios_log_memory_setting – Settings for memory buffer in Fortinet’s FortiOS and FortiGate.
    • fortios_log_null_device_filter – Filters for null device logging in Fortinet’s FortiOS and FortiGate.
    • fortios_log_null_device_setting – Settings for null device logging in Fortinet’s FortiOS and FortiGate.
    • fortios_log_setting – Configure general log settings in Fortinet’s FortiOS and FortiGate.
    • fortios_log_syslogd2_filter – Filters for remote system server in Fortinet’s FortiOS and FortiGate.
    • fortios_log_syslogd2_setting – Global settings for remote syslog server in Fortinet’s FortiOS and FortiGate.
    • fortios_log_syslogd3_filter – Filters for remote system server in Fortinet’s FortiOS and FortiGate.
    • fortios_log_syslogd3_setting – Global settings for remote syslog server in Fortinet’s FortiOS and FortiGate.
    • fortios_log_syslogd4_filter – Filters for remote system server in Fortinet’s FortiOS and FortiGate.
    • fortios_log_syslogd4_setting – Global settings for remote syslog server in Fortinet’s FortiOS and FortiGate.
    • fortios_log_syslogd_filter – Filters for remote system server in Fortinet’s FortiOS and FortiGate.
    • fortios_log_syslogd_override_filter – Override filters for remote system server in Fortinet’s FortiOS and FortiGate.
    • fortios_log_syslogd_override_setting – Override settings for remote syslog server in Fortinet’s FortiOS and FortiGate.
    • fortios_log_syslogd_setting – Global settings for remote syslog server in Fortinet’s FortiOS and FortiGate.
    • fortios_log_threat_weight – Configure threat weight settings in Fortinet’s FortiOS and FortiGate.
    • fortios_log_webtrends_filter – Filters for WebTrends in Fortinet’s FortiOS and FortiGate.
    • fortios_log_webtrends_setting – Settings for WebTrends in Fortinet’s FortiOS and FortiGate.
    • fortios_registration_forticare – Add a FortiCare license in Fortinet’s FortiOS and FortiGate.
    • fortios_registration_vdom – Add a VDOM license in Fortinet’s FortiOS and FortiGate.
    • fortios_report_chart – Report chart widget configuration in Fortinet’s FortiOS and FortiGate.
    • fortios_report_dataset – Report dataset configuration in Fortinet’s FortiOS and FortiGate.
    • fortios_report_layout – Report layout configuration in Fortinet’s FortiOS and FortiGate.
    • fortios_report_setting – Report setting configuration in Fortinet’s FortiOS and FortiGate.
    • fortios_report_style – Report style configuration in Fortinet’s FortiOS and FortiGate.
    • fortios_report_theme – Report themes configuratio in Fortinet’s FortiOS and FortiGate.
    • fortios_router_access_list – Configure access lists in Fortinet’s FortiOS and FortiGate.
    • fortios_router_access_list6 – Configure IPv6 access lists in Fortinet’s FortiOS and FortiGate.
    • fortios_router_aspath_list – Configure Autonomous System (AS) path lists in Fortinet’s FortiOS and FortiGate.
    • fortios_router_auth_path – Configure authentication based routing in Fortinet’s FortiOS and FortiGate.
    • fortios_router_bfd – Configure BFD in Fortinet’s FortiOS and FortiGate.
    • fortios_router_bfd6 – Configure IPv6 BFD in Fortinet’s FortiOS and FortiGate.
    • fortios_router_bgp – Configure BGP in Fortinet’s FortiOS and FortiGate.
    • fortios_router_community_list – Configure community lists in Fortinet’s FortiOS and FortiGate.
    • fortios_router_isis – Configure IS-IS in Fortinet’s FortiOS and FortiGate.
    • fortios_router_key_chain – Configure key-chain in Fortinet’s FortiOS and FortiGate.
    • fortios_router_multicast – Configure router multicast in Fortinet’s FortiOS and FortiGate.
    • fortios_router_multicast6 – Configure IPv6 multicast in Fortinet’s FortiOS and FortiGate.
    • fortios_router_multicast_flow – Configure multicast-flow in Fortinet’s FortiOS and FortiGate.
    • fortios_router_ospf – Configure OSPF in Fortinet’s FortiOS and FortiGate.
    • fortios_router_ospf6 – Configure IPv6 OSPF in Fortinet’s FortiOS and FortiGate.
    • fortios_router_policy – Configure IPv4 routing policies in Fortinet’s FortiOS and FortiGate.
    • fortios_router_policy6 – Configure IPv6 routing policies in Fortinet’s FortiOS and FortiGate.
    • fortios_router_prefix_list – Configure IPv4 prefix lists in Fortinet’s FortiOS and FortiGate.
    • fortios_router_prefix_list6 – Configure IPv6 prefix lists in Fortinet’s FortiOS and FortiGate.
    • fortios_router_rip – Configure RIP in Fortinet’s FortiOS and FortiGate.
    • fortios_router_ripng – Configure RIPng in Fortinet’s FortiOS and FortiGate.
    • fortios_router_route_map – Configure route maps in Fortinet’s FortiOS and FortiGate.
    • fortios_router_setting – Configure router settings in Fortinet’s FortiOS and FortiGate.
    • fortios_router_static – Configure IPv4 static routing tables in Fortinet’s FortiOS and FortiGate.
    • fortios_router_static6 – Configure IPv6 static routing tables in Fortinet’s FortiOS and FortiGate.
    • fortios_spamfilter_bwl – Configure anti-spam black/white list in Fortinet’s FortiOS and FortiGate.
    • fortios_spamfilter_bword – Configure AntiSpam banned word list in Fortinet’s FortiOS and FortiGate.
    • fortios_spamfilter_dnsbl – Configure AntiSpam DNSBL/ORBL in Fortinet’s FortiOS and FortiGate.
    • fortios_spamfilter_fortishield – Configure FortiGuard - AntiSpam in Fortinet’s FortiOS and FortiGate.
    • fortios_spamfilter_iptrust – Configure AntiSpam IP trust in Fortinet’s FortiOS and FortiGate.
    • fortios_spamfilter_mheader – Configure AntiSpam MIME header in Fortinet’s FortiOS and FortiGate.
    • fortios_spamfilter_options – Configure AntiSpam options in Fortinet’s FortiOS and FortiGate.
    • fortios_spamfilter_profile – Configure AntiSpam profiles in Fortinet’s FortiOS and FortiGate.
    • fortios_ssh_filter_profile – SSH filter profile in Fortinet’s FortiOS and FortiGate.
    • fortios_switch_controller_802_1x_settings – Configure global 802.1X settings in Fortinet’s FortiOS and FortiGate.
    • fortios_switch_controller_custom_command – Configure the FortiGate switch controller to send custom commands to managed FortiSwitch devices in Fortinet’s FortiOS and FortiGate.
    • fortios_switch_controller_global – Configure FortiSwitch global settings in Fortinet’s FortiOS and FortiGate.
    • fortios_switch_controller_igmp_snooping – Configure FortiSwitch IGMP snooping global settings in Fortinet’s FortiOS and FortiGate.
    • fortios_switch_controller_lldp_profile – Configure FortiSwitch LLDP profiles in Fortinet’s FortiOS and FortiGate.
    • fortios_switch_controller_lldp_settings – Configure FortiSwitch LLDP settings in Fortinet’s FortiOS and FortiGate.
    • fortios_switch_controller_mac_sync_settings – Configure global MAC synchronization settings in Fortinet’s FortiOS and FortiGate.
    • fortios_switch_controller_managed_switch – Configure FortiSwitch devices that are managed by this FortiGate in Fortinet’s FortiOS and FortiGate.
    • fortios_switch_controller_network_monitor_settings – Configure network monitor settings in Fortinet’s FortiOS and FortiGate.
    • fortios_switch_controller_qos_dot1p_map – Configure FortiSwitch QoS 802.1p in Fortinet’s FortiOS and FortiGate.
    • fortios_switch_controller_qos_ip_dscp_map – Configure FortiSwitch QoS IP precedence/DSCP in Fortinet’s FortiOS and FortiGate.
    • fortios_switch_controller_qos_qos_policy – Configure FortiSwitch QoS policy in Fortinet’s FortiOS and FortiGate.
    • fortios_switch_controller_qos_queue_policy – Configure FortiSwitch QoS egress queue policy in Fortinet’s FortiOS and FortiGate.
    • fortios_switch_controller_quarantine – Configure FortiSwitch quarantine support in Fortinet’s FortiOS and FortiGate.
    • fortios_switch_controller_security_policy_802_1x – Configure 802.1x MAC Authentication Bypass (MAB) policies in Fortinet’s FortiOS and FortiGate.
    • fortios_switch_controller_security_policy_captive_portal – Names of VLANs that use captive portal authentication in Fortinet’s FortiOS and FortiGate.
    • fortios_switch_controller_sflow – Configure FortiSwitch sFlow in Fortinet’s FortiOS and FortiGate.
    • fortios_switch_controller_storm_control – Configure FortiSwitch storm control in Fortinet’s FortiOS and FortiGate.
    • fortios_switch_controller_stp_settings – Configure FortiSwitch spanning tree protocol (STP) in Fortinet’s FortiOS and FortiGate.
    • fortios_switch_controller_switch_group – Configure FortiSwitch switch groups in Fortinet’s FortiOS and FortiGate.
    • fortios_switch_controller_switch_interface_tag – Configure switch object tags in Fortinet’s FortiOS and FortiGate.
    • fortios_switch_controller_switch_log – Configure FortiSwitch logging (logs are transferred to and inserted into FortiGate event log) in Fortinet’s FortiOS and FortiGate.
    • fortios_switch_controller_switch_profile – Configure FortiSwitch switch profile in Fortinet’s FortiOS and FortiGate.
    • fortios_switch_controller_system – Configure system-wide switch controller settings in Fortinet’s FortiOS and FortiGate.
    • fortios_switch_controller_virtual_port_pool – Configure virtual pool in Fortinet’s FortiOS and FortiGate.
    • fortios_switch_controller_vlan – Configure VLANs for switch controller in Fortinet’s FortiOS and FortiGate.
    • fortios_system_3g_modem_custom – 3G MODEM custom in Fortinet’s FortiOS and FortiGate.
    • fortios_system_accprofile – Configure access profiles for system administrators in Fortinet’s FortiOS and FortiGate.
    • fortios_system_admin – Configure admin users in Fortinet’s FortiOS and FortiGate.
    • fortios_system_affinity_interrupt – Configure interrupt affinity in Fortinet’s FortiOS and FortiGate.
    • fortios_system_affinity_packet_redistribution – Configure packet redistribution in Fortinet’s FortiOS and FortiGate.
    • fortios_system_alarm – Configure alarm in Fortinet’s FortiOS and FortiGate.
    • fortios_system_alias – Configure alias command in Fortinet’s FortiOS and FortiGate.
    • fortios_system_api_user – Configure API users in Fortinet’s FortiOS and FortiGate.
    • fortios_system_arp_table – Configure ARP table in Fortinet’s FortiOS and FortiGate.
    • fortios_system_auto_install – Configure USB auto installation in Fortinet’s FortiOS and FortiGate.
    • fortios_system_auto_script – Configure auto script in Fortinet’s FortiOS and FortiGate.
    • fortios_system_automation_action – Action for automation stitches in Fortinet’s FortiOS and FortiGate.
    • fortios_system_automation_destination – Automation destinations in Fortinet’s FortiOS and FortiGate.
    • fortios_system_automation_stitch – Automation stitches in Fortinet’s FortiOS and FortiGate.
    • fortios_system_automation_trigger – Trigger for automation stitches in Fortinet’s FortiOS and FortiGate.
    • fortios_system_autoupdate_push_update – Configure push updates in Fortinet’s FortiOS and FortiGate.
    • fortios_system_autoupdate_schedule – Configure update schedule in Fortinet’s FortiOS and FortiGate.
    • fortios_system_autoupdate_tunneling – Configure web proxy tunnelling for the FDN in Fortinet’s FortiOS and FortiGate.
    • fortios_system_central_management – Configure central management in Fortinet’s FortiOS and FortiGate.
    • fortios_system_cluster_sync – Configure FortiGate Session Life Support Protocol (FGSP) session synchronization in Fortinet’s FortiOS and FortiGate.
    • fortios_system_config_backup_restore – Backup/restore fortigate configuration
    • fortios_system_console – Configure console in Fortinet’s FortiOS and FortiGate.
    • fortios_system_csf – Add this FortiGate to a Security Fabric or set up a new Security Fabric on this FortiGate in Fortinet’s FortiOS and FortiGate.
    • fortios_system_custom_language – Configure custom languages in Fortinet’s FortiOS and FortiGate.
    • fortios_system_ddns – Configure DDNS in Fortinet’s FortiOS and FortiGate.
    • fortios_system_dedicated_mgmt – Configure dedicated management in Fortinet’s FortiOS and FortiGate.
    • fortios_system_dhcp6_server – Configure DHCPv6 servers in Fortinet’s FortiOS and FortiGate.
    • fortios_system_dhcp_server – Configure DHCP servers in Fortinet’s FortiOS and FortiGate.
    • fortios_system_dns – Configure DNS in Fortinet’s FortiOS and FortiGate.
    • fortios_system_dns_database – Configure DNS databases in Fortinet’s FortiOS and FortiGate.
    • fortios_system_dns_server – Configure DNS servers in Fortinet’s FortiOS and FortiGate.
    • fortios_system_dscp_based_priority – Configure DSCP based priority table in Fortinet’s FortiOS and FortiGate.
    • fortios_system_email_server – Configure the email server used by the FortiGate various things. For example, for sending email messages to users to support user authentication features in Fortinet’s FortiOS and FortiGate.
    • fortios_system_external_resource – Configure external resource in Fortinet’s FortiOS and FortiGate.
    • fortios_system_fips_cc – Configure FIPS-CC mode in Fortinet’s FortiOS and FortiGate.
    • fortios_system_fm – Configure FM in Fortinet’s FortiOS and FortiGate.
    • fortios_system_fortiguard – Configure FortiGuard services in Fortinet’s FortiOS and FortiGate.
    • fortios_system_fortimanager – Configure FortiManager in Fortinet’s FortiOS and FortiGate.
    • fortios_system_fortisandbox – Configure FortiSandbox in Fortinet’s FortiOS and FortiGate.
    • fortios_system_fsso_polling – Configure Fortinet Single Sign On (FSSO) server in Fortinet’s FortiOS and FortiGate.
    • fortios_system_ftm_push – Configure FortiToken Mobile push services in Fortinet’s FortiOS and FortiGate.
    • fortios_system_geoip_override – Configure geographical location mapping for IP address(es) to override mappings from FortiGuard in Fortinet’s FortiOS and FortiGate.
    • fortios_system_global – Configure global attributes in Fortinet’s FortiOS and FortiGate.
    • fortios_system_gre_tunnel – Configure GRE tunnel in Fortinet’s FortiOS and FortiGate.
    • fortios_system_ha – Configure HA in Fortinet’s FortiOS and FortiGate.
    • fortios_system_ha_monitor – Configure HA monitor in Fortinet’s FortiOS and FortiGate.
    • fortios_system_interface – Configure interfaces in Fortinet’s FortiOS and FortiGate.
    • fortios_system_ipip_tunnel – Configure IP in IP Tunneling in Fortinet’s FortiOS and FortiGate.
    • fortios_system_ips_urlfilter_dns – Configure IPS URL filter DNS servers in Fortinet’s FortiOS and FortiGate.
    • fortios_system_ips_urlfilter_dns6 – Configure IPS URL filter IPv6 DNS servers in Fortinet’s FortiOS and FortiGate.
    • fortios_system_ipv6_neighbor_cache – Configure IPv6 neighbor cache table in Fortinet’s FortiOS and FortiGate.
    • fortios_system_ipv6_tunnel – Configure IPv6/IPv4 in IPv6 tunnel in Fortinet’s FortiOS and FortiGate.
    • fortios_system_link_monitor – Configure Link Health Monitor in Fortinet’s FortiOS and FortiGate.
    • fortios_system_lte_modem – Configure USB LTE/WIMAX devices in Fortinet’s FortiOS and FortiGate.
    • fortios_system_mac_address_table – Configure MAC address tables in Fortinet’s FortiOS and FortiGate.
    • fortios_system_management_tunnel – Management tunnel configuration in Fortinet’s FortiOS and FortiGate.
    • fortios_system_mobile_tunnel – Configure Mobile tunnels, an implementation of Network Mobility (NEMO) extensions for Mobile IPv4 RFC5177 in Fortinet’s FortiOS and FortiGate.
    • fortios_system_modem – Configure MODEM in Fortinet’s FortiOS and FortiGate.
    • fortios_system_nat64 – Configure NAT64 in Fortinet’s FortiOS and FortiGate.
    • fortios_system_netflow – Configure NetFlow in Fortinet’s FortiOS and FortiGate.
    • fortios_system_network_visibility – Configure network visibility settings in Fortinet’s FortiOS and FortiGate.
    • fortios_system_ntp – Configure system NTP information in Fortinet’s FortiOS and FortiGate.
    • fortios_system_object_tagging – Configure object tagging in Fortinet’s FortiOS and FortiGate.
    • fortios_system_password_policy – Configure password policy for locally defined administrator passwords and IPsec VPN pre-shared keys in Fortinet’s FortiOS and FortiGate.
    • fortios_system_password_policy_guest_admin – Configure the password policy for guest administrators in Fortinet’s FortiOS and FortiGate.
    • fortios_system_physical_switch – Configure physical switches in Fortinet’s FortiOS and FortiGate.
    • fortios_system_pppoe_interface – Configure the PPPoE interfaces in Fortinet’s FortiOS and FortiGate.
    • fortios_system_probe_response – Configure system probe response in Fortinet’s FortiOS and FortiGate.
    • fortios_system_proxy_arp – Configure proxy-ARP in Fortinet’s FortiOS and FortiGate.
    • fortios_system_replacemsg_admin – Replacement messages in Fortinet’s FortiOS and FortiGate.
    • fortios_system_replacemsg_alertmail – Replacement messages in Fortinet’s FortiOS and FortiGate.
    • fortios_system_replacemsg_auth – Replacement messages in Fortinet’s FortiOS and FortiGate.
    • fortios_system_replacemsg_device_detection_portal – Replacement messages in Fortinet’s FortiOS and FortiGate.
    • fortios_system_replacemsg_ec – Replacement messages in Fortinet’s FortiOS and FortiGate.
    • fortios_system_replacemsg_fortiguard_wf – Replacement messages in Fortinet’s FortiOS and FortiGate.
    • fortios_system_replacemsg_ftp – Replacement messages in Fortinet’s FortiOS and FortiGate.
    • fortios_system_replacemsg_group – Configure replacement message groups in Fortinet’s FortiOS and FortiGate.
    • fortios_system_replacemsg_http – Replacement messages in Fortinet’s FortiOS and FortiGate.
    • fortios_system_replacemsg_icap – Replacement messages in Fortinet’s FortiOS and FortiGate.
    • fortios_system_replacemsg_image – Configure replacement message images in Fortinet’s FortiOS and FortiGate.
    • fortios_system_replacemsg_mail – Replacement messages in Fortinet’s FortiOS and FortiGate.
    • fortios_system_replacemsg_nac_quar – Replacement messages in Fortinet’s FortiOS and FortiGate.
    • fortios_system_replacemsg_nntp – Replacement messages in Fortinet’s FortiOS and FortiGate.
    • fortios_system_replacemsg_spam – Replacement messages in Fortinet’s FortiOS and FortiGate.
    • fortios_system_replacemsg_sslvpn – Replacement messages in Fortinet’s FortiOS and FortiGate.
    • fortios_system_replacemsg_traffic_quota – Replacement messages in Fortinet’s FortiOS and FortiGate.
    • fortios_system_replacemsg_utm – Replacement messages in Fortinet’s FortiOS and FortiGate.
    • fortios_system_replacemsg_webproxy – Replacement messages in Fortinet’s FortiOS and FortiGate.
    • fortios_system_resource_limits – Configure resource limits in Fortinet’s FortiOS and FortiGate.
    • fortios_system_sdn_connector – Configure connection to SDN Connector in Fortinet’s FortiOS and FortiGate.
    • fortios_system_session_helper – Configure session helper in Fortinet’s FortiOS and FortiGate.
    • fortios_system_session_ttl – Configure global session TTL timers for this FortiGate in Fortinet’s FortiOS and FortiGate.
    • fortios_system_settings – Configure VDOM settings in Fortinet’s FortiOS and FortiGate.
    • fortios_system_sflow – Configure sFlow in Fortinet’s FortiOS and FortiGate.
    • fortios_system_sit_tunnel – Configure IPv6 tunnel over IPv4 in Fortinet’s FortiOS and FortiGate.
    • fortios_system_sms_server – Configure SMS server for sending SMS messages to support user authentication in Fortinet’s FortiOS and FortiGate.
    • fortios_system_snmp_community – SNMP community configuration in Fortinet’s FortiOS and FortiGate.
    • fortios_system_snmp_sysinfo – SNMP system info configuration in Fortinet’s FortiOS and FortiGate.
    • fortios_system_snmp_user – SNMP user configuration in Fortinet’s FortiOS and FortiGate.
    • fortios_system_storage – Configure logical storage in Fortinet’s FortiOS and FortiGate.
    • fortios_system_stp – Configure Spanning Tree Protocol (STP) in Fortinet’s FortiOS and FortiGate.
    • fortios_system_switch_interface – Configure software switch interfaces by grouping physical and WiFi interfaces in Fortinet’s FortiOS and FortiGate.
    • fortios_system_tos_based_priority – Configure Type of Service (ToS) based priority table to set network traffic priorities in Fortinet’s FortiOS and FortiGate.
    • fortios_system_vdom – Configure virtual domain in Fortinet’s FortiOS and FortiGate.
    • fortios_system_vdom_dns – Configure DNS servers for a non-management VDOM in Fortinet’s FortiOS and FortiGate.
    • fortios_system_vdom_exception – Global configuration objects that can be configured independently for all VDOMs or for the defined VDOM scope in Fortinet’s FortiOS and FortiGate.
    • fortios_system_vdom_link – Configure VDOM links in Fortinet’s FortiOS and FortiGate.
    • fortios_system_vdom_netflow – Configure NetFlow per VDOM in Fortinet’s FortiOS and FortiGate.
    • fortios_system_vdom_property – Configure VDOM property in Fortinet’s FortiOS and FortiGate.
    • fortios_system_vdom_radius_server – Configure a RADIUS server to use as a RADIUS Single Sign On (RSSO) server for this VDOM in Fortinet’s FortiOS and FortiGate.
    • fortios_system_vdom_sflow – Configure sFlow per VDOM to add or change the IP address and UDP port that FortiGate sFlow agents in this VDOM use to send sFlow datagrams to an sFlow collector in Fortinet’s FortiOS and FortiGate.
    • fortios_system_virtual_switch – Configure virtual hardware switch interfaces in Fortinet’s FortiOS and FortiGate.
    • fortios_system_virtual_wan_link – Configure redundant internet connections using SD-WAN (formerly virtual WAN link) in Fortinet’s FortiOS and FortiGate.
      • Synopsis
      • Requirements
      • Parameters
      • Notes
      • Examples
      • Return Values
      • Status
      • Authors
    • fortios_system_virtual_wire_pair – Configure virtual wire pairs in Fortinet’s FortiOS and FortiGate.
    • fortios_system_vmlicense – Update VM license using uploaded file. Reboots immediately if successful in Fortinet’s FortiOS and FortiGate.
    • fortios_system_vxlan – Configure VXLAN devices in Fortinet’s FortiOS and FortiGate.
    • fortios_system_wccp – Configure WCCP in Fortinet’s FortiOS and FortiGate.
    • fortios_system_zone – Configure zones to group two or more interfaces. When a zone is created you can configure policies for the zone instead of individual interfaces in the zone in Fortinet’s FortiOS and FortiGate.
    • fortios_user_adgrp – Configure FSSO groups in Fortinet’s FortiOS and FortiGate.
    • fortios_user_device – Configure devices in Fortinet’s FortiOS and FortiGate.
    • fortios_user_device_access_list – Configure device access control lists in Fortinet’s FortiOS and FortiGate.
    • fortios_user_device_category – Configure device categories in Fortinet’s FortiOS and FortiGate.
    • fortios_user_device_group – Configure device groups in Fortinet’s FortiOS and FortiGate.
    • fortios_user_domain_controller – Configure domain controller entries in Fortinet’s FortiOS and FortiGate.
    • fortios_user_fortitoken – Configure FortiToken in Fortinet’s FortiOS and FortiGate.
    • fortios_user_fsso – Configure Fortinet Single Sign On (FSSO) agents in Fortinet’s FortiOS and FortiGate.
    • fortios_user_fsso_polling – Configure FSSO active directory servers for polling mode in Fortinet’s FortiOS and FortiGate.
    • fortios_user_group – Configure user groups in Fortinet’s FortiOS and FortiGate.
    • fortios_user_krb_keytab – Configure Kerberos keytab entries in Fortinet’s FortiOS and FortiGate.
    • fortios_user_ldap – Configure LDAP server entries in Fortinet’s FortiOS and FortiGate.
    • fortios_user_local – Configure local users in Fortinet’s FortiOS and FortiGate.
    • fortios_user_password_policy – Configure user password policy in Fortinet’s FortiOS and FortiGate.
    • fortios_user_peer – Configure peer users in Fortinet’s FortiOS and FortiGate.
    • fortios_user_peergrp – Configure peer groups in Fortinet’s FortiOS and FortiGate.
    • fortios_user_pop3 – POP3 server entry configuration in Fortinet’s FortiOS and FortiGate.
    • fortios_user_quarantine – Configure quarantine support in Fortinet’s FortiOS and FortiGate.
    • fortios_user_radius – Configure RADIUS server entries in Fortinet’s FortiOS and FortiGate.
    • fortios_user_security_exempt_list – Configure security exemption list in Fortinet’s FortiOS and FortiGate.
    • fortios_user_setting – Configure user authentication setting in Fortinet’s FortiOS and FortiGate.
    • fortios_user_tacacsplus – Configure TACACS+ server entries in Fortinet’s FortiOS and FortiGate.
    • fortios_voip_profile – Configure VoIP profiles in Fortinet’s FortiOS and FortiGate.
    • fortios_vpn_certificate_ca – CA certificate in Fortinet’s FortiOS and FortiGate.
    • fortios_vpn_certificate_crl – Certificate Revocation List as a PEM file in Fortinet’s FortiOS and FortiGate.
    • fortios_vpn_certificate_local – Local keys and certificates in Fortinet’s FortiOS and FortiGate.
    • fortios_vpn_certificate_ocsp_server – OCSP server configuration in Fortinet’s FortiOS and FortiGate.
    • fortios_vpn_certificate_remote – Remote certificate as a PEM file in Fortinet’s FortiOS and FortiGate.
    • fortios_vpn_certificate_setting – VPN certificate setting in Fortinet’s FortiOS and FortiGate.
    • fortios_vpn_ipsec_concentrator – Concentrator configuration in Fortinet’s FortiOS and FortiGate.
    • fortios_vpn_ipsec_forticlient – Configure FortiClient policy realm in Fortinet’s FortiOS and FortiGate.
    • fortios_vpn_ipsec_manualkey – Configure IPsec manual keys in Fortinet’s FortiOS and FortiGate.
    • fortios_vpn_ipsec_manualkey_interface – Configure IPsec manual keys in Fortinet’s FortiOS and FortiGate.
    • fortios_vpn_ipsec_phase1 – Configure VPN remote gateway in Fortinet’s FortiOS and FortiGate.
    • fortios_vpn_ipsec_phase1_interface – Configure VPN remote gateway in Fortinet’s FortiOS and FortiGate.
    • fortios_vpn_ipsec_phase2 – Configure VPN autokey tunnel in Fortinet’s FortiOS and FortiGate.
    • fortios_vpn_ipsec_phase2_interface – Configure VPN autokey tunnel in Fortinet’s FortiOS and FortiGate.
    • fortios_vpn_l2tp – Configure L2TP in Fortinet’s FortiOS and FortiGate.
    • fortios_vpn_ocvpn – Configure One-Click VPN settings in Fortinet’s FortiOS and FortiGate.
    • fortios_vpn_pptp – Configure PPTP in Fortinet’s FortiOS and FortiGate.
    • fortios_vpn_ssl_settings – Configure SSL VPN in Fortinet’s FortiOS and FortiGate.
    • fortios_vpn_ssl_web_host_check_software – SSL-VPN host check software in Fortinet’s FortiOS and FortiGate.
    • fortios_vpn_ssl_web_portal – Portal in Fortinet’s FortiOS and FortiGate.
    • fortios_vpn_ssl_web_realm – Realm in Fortinet’s FortiOS and FortiGate.
    • fortios_vpn_ssl_web_user_bookmark – Configure SSL VPN user bookmark in Fortinet’s FortiOS and FortiGate.
    • fortios_vpn_ssl_web_user_group_bookmark – Configure SSL VPN user group bookmark in Fortinet’s FortiOS and FortiGate.
    • fortios_waf_main_class – Hidden table for datasource in Fortinet’s FortiOS and FortiGate.
    • fortios_waf_profile – Web application firewall configuration in Fortinet’s FortiOS and FortiGate.
    • fortios_waf_signature – Hidden table for datasource in Fortinet’s FortiOS and FortiGate.
    • fortios_waf_sub_class – Hidden table for datasource in Fortinet’s FortiOS and FortiGate.
    • fortios_wanopt_auth_group – Configure WAN optimization authentication groups in Fortinet’s FortiOS and FortiGate.
    • fortios_wanopt_cache_service – Designate cache-service for wan-optimization and webcache in Fortinet’s FortiOS and FortiGate.
    • fortios_wanopt_content_delivery_network_rule – Configure WAN optimization content delivery network rules in Fortinet’s FortiOS and FortiGate.
    • fortios_wanopt_peer – Configure WAN optimization peers in Fortinet’s FortiOS and FortiGate.
    • fortios_wanopt_profile – Configure WAN optimization profiles in Fortinet’s FortiOS and FortiGate.
    • fortios_wanopt_remote_storage – Configure a remote cache device as Web cache storage in Fortinet’s FortiOS and FortiGate.
    • fortios_wanopt_settings – Configure WAN optimization settings in Fortinet’s FortiOS and FortiGate.
    • fortios_wanopt_webcache – Configure global Web cache settings in Fortinet’s FortiOS and FortiGate.
    • fortios_web_proxy_debug_url – Configure debug URL addresses in Fortinet’s FortiOS and FortiGate.
    • fortios_web_proxy_explicit – Configure explicit Web proxy settings in Fortinet’s FortiOS and FortiGate.
    • fortios_web_proxy_forward_server – Configure forward-server addresses in Fortinet’s FortiOS and FortiGate.
    • fortios_web_proxy_forward_server_group – Configure a forward server group consisting or multiple forward servers. Supports failover and load balancing in Fortinet’s FortiOS and FortiGate.
    • fortios_web_proxy_global – Configure Web proxy global settings in Fortinet’s FortiOS and FortiGate.
    • fortios_web_proxy_profile – Configure web proxy profiles in Fortinet’s FortiOS and FortiGate.
    • fortios_web_proxy_url_match – Exempt URLs from web proxy forwarding and caching in Fortinet’s FortiOS and FortiGate.
    • fortios_web_proxy_wisp – Configure Wireless Internet service provider (WISP) servers in Fortinet’s FortiOS and FortiGate.
    • fortios_webfilter_content – Configure Web filter banned word table in Fortinet’s FortiOS and FortiGate.
    • fortios_webfilter_content_header – Configure content types used by Web filter in Fortinet’s FortiOS and FortiGate.
    • fortios_webfilter_fortiguard – Configure FortiGuard Web Filter service in Fortinet’s FortiOS and FortiGate.
    • fortios_webfilter_ftgd_local_cat – Configure FortiGuard Web Filter local categories in Fortinet’s FortiOS and FortiGate.
    • fortios_webfilter_ftgd_local_rating – Configure local FortiGuard Web Filter local ratings in Fortinet’s FortiOS and FortiGate.
    • fortios_webfilter_ips_urlfilter_cache_setting – Configure IPS URL filter cache settings in Fortinet’s FortiOS and FortiGate.
    • fortios_webfilter_ips_urlfilter_setting – Configure IPS URL filter settings in Fortinet’s FortiOS and FortiGate.
    • fortios_webfilter_ips_urlfilter_setting6 – Configure IPS URL filter settings for IPv6 in Fortinet’s FortiOS and FortiGate.
    • fortios_webfilter_override – Configure FortiGuard Web Filter administrative overrides in Fortinet’s FortiOS and FortiGate.
    • fortios_webfilter_profile – Configure Web filter profiles in Fortinet’s FortiOS and FortiGate.
    • fortios_webfilter_search_engine – Configure web filter search engines in Fortinet’s FortiOS and FortiGate.
    • fortios_webfilter_urlfilter – Configure URL filter lists in Fortinet’s FortiOS and FortiGate.
    • fortios_wireless_controller_ap_status – Configure access point status (rogue | accepted | suppressed) in Fortinet’s FortiOS and FortiGate.
    • fortios_wireless_controller_ble_profile – Configure Bluetooth Low Energy profile in Fortinet’s FortiOS and FortiGate.
    • fortios_wireless_controller_bonjour_profile – Configure Bonjour profiles. Bonjour is Apple’s zero configuration networking protocol. Bonjour profiles allow APs and FortiAPs to connnect to networks using Bonjour in Fortinet’s FortiOS and FortiGate.
    • fortios_wireless_controller_global – Configure wireless controller global settings in Fortinet’s FortiOS and FortiGate.
    • fortios_wireless_controller_hotspot20_anqp_3gpp_cellular – Configure 3GPP public land mobile network (PLMN) in Fortinet’s FortiOS and FortiGate.
    • fortios_wireless_controller_hotspot20_anqp_ip_address_type – Configure IP address type availability in Fortinet’s FortiOS and FortiGate.
    • fortios_wireless_controller_hotspot20_anqp_nai_realm – Configure network access identifier (NAI) realm in Fortinet’s FortiOS and FortiGate.
    • fortios_wireless_controller_hotspot20_anqp_network_auth_type – Configure network authentication type in Fortinet’s FortiOS and FortiGate.
    • fortios_wireless_controller_hotspot20_anqp_roaming_consortium – Configure roaming consortium in Fortinet’s FortiOS and FortiGate.
    • fortios_wireless_controller_hotspot20_anqp_venue_name – Configure venue name duple in Fortinet’s FortiOS and FortiGate.
    • fortios_wireless_controller_hotspot20_h2qp_conn_capability – Configure connection capability in Fortinet’s FortiOS and FortiGate.
    • fortios_wireless_controller_hotspot20_h2qp_operator_name – Configure operator friendly name in Fortinet’s FortiOS and FortiGate.
    • fortios_wireless_controller_hotspot20_h2qp_osu_provider – Configure online sign up (OSU) provider list in Fortinet’s FortiOS and FortiGate.
    • fortios_wireless_controller_hotspot20_h2qp_wan_metric – Configure WAN metrics in Fortinet’s FortiOS and FortiGate.
    • fortios_wireless_controller_hotspot20_hs_profile – Configure hotspot profile in Fortinet’s FortiOS and FortiGate.
    • fortios_wireless_controller_hotspot20_icon – Configure OSU provider icon in Fortinet’s FortiOS and FortiGate.
    • fortios_wireless_controller_hotspot20_qos_map – Configure QoS map set in Fortinet’s FortiOS and FortiGate.
    • fortios_wireless_controller_inter_controller – Configure inter wireless controller operation in Fortinet’s FortiOS and FortiGate.
    • fortios_wireless_controller_qos_profile – Configure WiFi quality of service (QoS) profiles in Fortinet’s FortiOS and FortiGate.
    • fortios_wireless_controller_setting – VDOM wireless controller configuration in Fortinet’s FortiOS and FortiGate.
    • fortios_wireless_controller_timers – Configure CAPWAP timers in Fortinet’s FortiOS and FortiGate.
    • fortios_wireless_controller_utm_profile – Configure UTM (Unified Threat Management) profile in Fortinet’s FortiOS and FortiGate.
    • fortios_wireless_controller_vap – Configure Virtual Access Points (VAPs) in Fortinet’s FortiOS and FortiGate.
    • fortios_wireless_controller_vap_group – Configure virtual Access Point (VAP) groups in Fortinet’s FortiOS and FortiGate.
    • fortios_wireless_controller_wids_profile – Configure wireless intrusion detection system (WIDS) profiles in Fortinet’s FortiOS and FortiGate.
    • fortios_wireless_controller_wtp – Configure Wireless Termination Points (WTPs), that is, FortiAPs or APs to be managed by FortiGate in Fortinet’s FortiOS and FortiGate.
    • fortios_wireless_controller_wtp_group – Configure WTP groups in Fortinet’s FortiOS and FortiGate.
    • fortios_wireless_controller_wtp_profile – Configure WTP profiles or FortiAP profiles that define radio settings for manageable FortiAP platforms in Fortinet’s FortiOS and FortiGate.
  • Facts Gathering Modules

Appendices

  • Release Notes
Ansible Galaxy FortiOS Collection
  • Docs »
  • Configuration Modules »
  • fortios_system_virtual_wan_link – Configure redundant internet connections using SD-WAN (formerly virtual WAN link) in Fortinet’s FortiOS and FortiGate.
  • Edit on GitHub

fortios_system_virtual_wan_link – Configure redundant internet connections using SD-WAN (formerly virtual WAN link) in Fortinet’s FortiOS and FortiGate.¶

New in version 2.8.

  • Synopsis
  • Requirements
  • Parameters
  • Notes
  • Examples
  • Return Values
  • Status
  • Authors

Synopsis¶

  • This module is able to configure a FortiGate or FortiOS (FOS) device by allowing the user to set and modify system feature and virtual_wan_link category. Examples include all parameters and values need to be adjusted to datasources before usage. Tested with FOS v6.0.0

Requirements¶

The below requirements are needed on the host that executes this module.

  • ansible>=2.9.0

Parameters¶

  • access_token - Token-based authentication. Generated from GUI of Fortigate. type: str required: False
  • vdom - Virtual domain, among those defined previously. A vdom is a virtual instance of the FortiGate that can be configured and used as a different unit. type: str default: root
  • system_virtual_wan_link - Configure redundant internet connections using SD-WAN (formerly virtual WAN link). type: dict
    • fail_alert_interfaces - Physical interfaces that will be alerted. type: list
      • name - Physical interface name. Source system.interface.name. type: str required: True
    • fail_detect - Enable/disable SD-WAN Internet connection status checking (failure detection). type: str choices: enable, disable
    • health_check - SD-WAN status checking or health checking. Identify a server on the Internet and determine how SD-WAN verifies that the FortiGate can communicate with it. type: list
      • addr_mode - Address mode (IPv4 or IPv6). type: str choices: ipv4, ipv6
      • failtime - Number of failures before server is considered lost (1 - 10). type: int
      • http_get - URL used to communicate with the server if the protocol if the protocol is HTTP. type: str
      • http_match - Response string expected from the server if the protocol is HTTP. type: str
      • interval - Status check interval, or the time between attempting to connect to the server (1 - 3600 sec). type: int
      • members - Member sequence number list. type: list
        • seq_num - Member sequence number. Source system.virtual-wan-link.members.seq-num. type: int
      • name - Status check or health check name. type: str required: True
      • packet_size - Packet size of a twamp test session, type: int
      • password - Twamp controller password in authentication mode type: str
      • port - Port number used to communicate with the server over the selected protocol. type: int
      • protocol - Protocol used to determine if the FortiGate can communicate with the server. type: str choices: ping, tcp-echo, udp-echo, http, twamp, ping6
      • recoverytime - Number of successful responses received before server is considered recovered (1 - 10). type: int
      • security_mode - Twamp controller security mode. type: str choices: none, authentication
      • server - IP address or FQDN name of the server. type: str
      • sla - Service level agreement (SLA). type: list
        • id - SLA ID. type: int required: True
        • jitter_threshold - Jitter for SLA to make decision in milliseconds. (0 - 10000000). type: int
        • latency_threshold - Latency for SLA to make decision in milliseconds. (0 - 10000000). type: int
        • link_cost_factor - Criteria on which to base link selection. type: str choices: latency, jitter, packet-loss
        • packetloss_threshold - Packet loss for SLA to make decision in percentage. (0 - 100). type: int
      • threshold_alert_jitter - Alert threshold for jitter (ms). type: int
      • threshold_alert_latency - Alert threshold for latency (ms). type: int
      • threshold_alert_packetloss - Alert threshold for packet loss (percentage). type: int
      • threshold_warning_jitter - Warning threshold for jitter (ms). type: int
      • threshold_warning_latency - Warning threshold for latency (ms). type: int
      • threshold_warning_packetloss - Warning threshold for packet loss (percentage). type: int
      • update_cascade_interface - Enable/disable update cascade interface. type: str choices: enable, disable
      • update_static_route - Enable/disable updating the static route. type: str choices: enable, disable
    • load_balance_mode - Algorithm or mode to use for load balancing Internet traffic to SD-WAN members. type: str choices: source-ip-based, weight-based, usage-based, source-dest-ip-based, measured-volume-based
    • members - Physical FortiGate interfaces added to the virtual-wan-link. type: list
      • gateway - The default gateway for this interface. Usually the default gateway of the Internet service provider that this interface is connected to. type: str
      • gateway6 - IPv6 gateway. type: str
      • ingress_spillover_threshold - Ingress spillover threshold for this interface (0 - 16776000 kbit/s). When this traffic volume threshold is reached, new sessions spill over to other interfaces in the SD-WAN. type: int
      • interface - Interface name. Source system.interface.name. type: str
      • priority - Priority of the interface (0 - 4294967295). Used for SD-WAN rules or priority rules. type: int
      • seq_num - Sequence number(1-255). type: int
      • source - Source IP address used in the health-check packet to the server. type: str
      • source6 - Source IPv6 address used in the health-check packet to the server. type: str
      • spillover_threshold - Egress spillover threshold for this interface (0 - 16776000 kbit/s). When this traffic volume threshold is reached, new sessions spill over to other interfaces in the SD-WAN. type: int
      • status - Enable/disable this interface in the SD-WAN. type: str choices: disable, enable
      • volume_ratio - Measured volume ratio (this value / sum of all values = percentage of link volume, 0 - 255). type: int
      • weight - Weight of this interface for weighted load balancing. (0 - 255) More traffic is directed to interfaces with higher weights. type: int
    • service - Create SD-WAN rules or priority rules (also called services) to control how sessions are distributed to physical interfaces in the SD-WAN. type: list
      • addr_mode - Address mode (IPv4 or IPv6). type: str choices: ipv4, ipv6
      • bandwidth_weight - Coefficient of reciprocal of available bidirectional bandwidth in the formula of custom-profile-1. type: int
      • dscp_forward - Enable/disable forward traffic DSCP tag. type: str choices: enable, disable
      • dscp_forward_tag - Forward traffic DSCP tag. type: str
      • dscp_reverse - Enable/disable reverse traffic DSCP tag. type: str choices: enable, disable
      • dscp_reverse_tag - Reverse traffic DSCP tag. type: str
      • dst - Destination address name. type: list
        • name - Address or address group name. Source firewall.address.name firewall.addrgrp.name. type: str required: True
      • dst_negate - Enable/disable negation of destination address match. type: str choices: enable, disable
      • dst6 - Destination address6 name. type: list
        • name - Address6 or address6 group name. Source firewall.address6.name firewall.addrgrp6.name. type: str required: True
      • end_port - End destination port number. type: int
      • groups - User groups. type: list
        • name - Group name. Source user.group.name. type: str required: True
      • health_check - Health check. Source system.virtual-wan-link.health-check.name. type: str
      • id - Priority rule ID (1 - 4000). type: int required: True
      • input_device - Source interface name. type: list
        • name - Interface name. Source system.interface.name. type: str required: True
      • internet_service - Enable/disable use of Internet service for application-based load balancing. type: str choices: enable, disable
      • internet_service_ctrl - Control-based Internet Service ID list. type: list
        • id - Control-based Internet Service ID. type: int required: True
      • internet_service_ctrl_group - Control-based Internet Service group list. type: list
        • name - Control-based Internet Service group name. Source application.group.name. type: str required: True
      • internet_service_custom - Custom Internet service name list. type: list
        • name - Custom Internet service name. Source firewall.internet-service-custom.name. type: str required: True
      • internet_service_custom_group - Custom Internet Service group list. type: list
        • name - Custom Internet Service group name. Source firewall.internet-service-custom-group.name. type: str required: True
      • internet_service_group - Internet Service group list. type: list
        • name - Internet Service group name. Source firewall.internet-service-group.name. type: str required: True
      • internet_service_id - Internet service ID list. type: list
        • id - Internet service ID. Source firewall.internet-service.id. type: int required: True
      • jitter_weight - Coefficient of jitter in the formula of custom-profile-1. type: int
      • latency_weight - Coefficient of latency in the formula of custom-profile-1. type: int
      • link_cost_factor - Link cost factor. type: str choices: latency, jitter, packet-loss, inbandwidth, outbandwidth, bibandwidth, custom-profile-1
      • link_cost_threshold - Percentage threshold change of link cost values that will result in policy route regeneration (0 - 10000000). type: int
      • member - Member sequence number. type: int
      • mode - Control how the priority rule sets the priority of interfaces in the SD-WAN. type: str choices: auto, manual, priority, sla
      • name - Priority rule name. type: str
      • packet_loss_weight - Coefficient of packet-loss in the formula of custom-profile-1. type: int
      • priority_members - Member sequence number list. type: list
        • seq_num - Member sequence number. Source system.virtual-wan-link.members.seq-num. type: int
      • protocol - Protocol number. type: int
      • quality_link - Quality grade. type: int
      • route_tag - IPv4 route map route-tag. type: int
      • sla - Service level agreement (SLA). type: list
        • health_check - Virtual WAN Link health-check. Source system.virtual-wan-link.health-check.name. type: str
        • id - SLA ID. type: int
      • src - Source address name. type: list
        • name - Address or address group name. Source firewall.address.name firewall.addrgrp.name. type: str required: True
      • src_negate - Enable/disable negation of source address match. type: str choices: enable, disable
      • src6 - Source address6 name. type: list
        • name - Address6 or address6 group name. Source firewall.address6.name firewall.addrgrp6.name. type: str required: True
      • start_port - Start destination port number. type: int
      • status - Enable/disable SD-WAN service. type: str choices: enable, disable
      • tos - Type of service bit pattern. type: str
      • tos_mask - Type of service evaluated bits. type: str
      • users - User name. type: list
        • name - User name. Source user.local.name. type: str required: True
    • status - Enable/disable SD-WAN. type: str choices: disable, enable

Notes¶

Note

  • Legacy fortiosapi has been deprecated, httpapi is the preferred way to run playbooks

Examples¶

- hosts: fortigates
  collections:
    - fortinet.fortios
  connection: httpapi
  vars:
   vdom: "root"
   ansible_httpapi_use_ssl: yes
   ansible_httpapi_validate_certs: no
   ansible_httpapi_port: 443
  tasks:
  - name: Configure redundant internet connections using SD-WAN (formerly virtual WAN link).
    fortios_system_virtual_wan_link:
      vdom:  "{{ vdom }}"
      system_virtual_wan_link:
        fail_alert_interfaces:
         -
            name: "default_name_4 (source system.interface.name)"
        fail_detect: "enable"
        health_check:
         -
            addr_mode: "ipv4"
            failtime: "8"
            http_get: "<your_own_value>"
            http_match: "<your_own_value>"
            interval: "11"
            members:
             -
                seq_num: "13 (source system.virtual-wan-link.members.seq-num)"
            name: "default_name_14"
            packet_size: "15"
            password: "<your_own_value>"
            port: "17"
            protocol: "ping"
            recoverytime: "19"
            security_mode: "none"
            server: "192.168.100.40"
            sla:
             -
                id:  "23"
                jitter_threshold: "24"
                latency_threshold: "25"
                link_cost_factor: "latency"
                packetloss_threshold: "27"
            threshold_alert_jitter: "28"
            threshold_alert_latency: "29"
            threshold_alert_packetloss: "30"
            threshold_warning_jitter: "31"
            threshold_warning_latency: "32"
            threshold_warning_packetloss: "33"
            update_cascade_interface: "enable"
            update_static_route: "enable"
        load_balance_mode: "source-ip-based"
        members:
         -
            gateway: "<your_own_value>"
            gateway6: "<your_own_value>"
            ingress_spillover_threshold: "40"
            interface: "<your_own_value> (source system.interface.name)"
            priority: "42"
            seq_num: "43"
            source: "<your_own_value>"
            source6: "<your_own_value>"
            spillover_threshold: "46"
            status: "disable"
            volume_ratio: "48"
            weight: "49"
        service:
         -
            addr_mode: "ipv4"
            bandwidth_weight: "52"
            dscp_forward: "enable"
            dscp_forward_tag: "<your_own_value>"
            dscp_reverse: "enable"
            dscp_reverse_tag: "<your_own_value>"
            dst:
             -
                name: "default_name_58 (source firewall.address.name firewall.addrgrp.name)"
            dst_negate: "enable"
            dst6:
             -
                name: "default_name_61 (source firewall.address6.name firewall.addrgrp6.name)"
            end_port: "62"
            groups:
             -
                name: "default_name_64 (source user.group.name)"
            health_check: "<your_own_value> (source system.virtual-wan-link.health-check.name)"
            id:  "66"
            input_device:
             -
                name: "default_name_68 (source system.interface.name)"
            internet_service: "enable"
            internet_service_ctrl:
             -
                id:  "71"
            internet_service_ctrl_group:
             -
                name: "default_name_73 (source application.group.name)"
            internet_service_custom:
             -
                name: "default_name_75 (source firewall.internet-service-custom.name)"
            internet_service_custom_group:
             -
                name: "default_name_77 (source firewall.internet-service-custom-group.name)"
            internet_service_group:
             -
                name: "default_name_79 (source firewall.internet-service-group.name)"
            internet_service_id:
             -
                id:  "81 (source firewall.internet-service.id)"
            jitter_weight: "82"
            latency_weight: "83"
            link_cost_factor: "latency"
            link_cost_threshold: "85"
            member: "86"
            mode: "auto"
            name: "default_name_88"
            packet_loss_weight: "89"
            priority_members:
             -
                seq_num: "91 (source system.virtual-wan-link.members.seq-num)"
            protocol: "92"
            quality_link: "93"
            route_tag: "94"
            sla:
             -
                health_check: "<your_own_value> (source system.virtual-wan-link.health-check.name)"
                id:  "97"
            src:
             -
                name: "default_name_99 (source firewall.address.name firewall.addrgrp.name)"
            src_negate: "enable"
            src6:
             -
                name: "default_name_102 (source firewall.address6.name firewall.addrgrp6.name)"
            start_port: "103"
            status: "enable"
            tos: "<your_own_value>"
            tos_mask: "<your_own_value>"
            users:
             -
                name: "default_name_108 (source user.local.name)"
        status: "disable"

Return Values¶

Common return values are documented: https://docs.ansible.com/ansible/latest/reference_appendices/common_return_values.html#common-return-values, the following are the fields unique to this module:

  • build - Build number of the fortigate image returned: always type: str sample: 1547
  • http_method - Last method used to provision the content into FortiGate returned: always type: str sample: PUT
  • http_status - Last result given by FortiGate on last operation applied returned: always type: str sample: 200
  • mkey - Master key (id) used in the last call to FortiGate returned: success type: str sample: id
  • name - Name of the table used to fulfill the request returned: always type: str sample: urlfilter
  • path - Path of the table used to fulfill the request returned: always type: str sample: webfilter
  • revision - Internal revision number returned: always type: str sample: 17.0.2.10658
  • serial - Serial number of the unit returned: always type: str sample: FGVMEVYYQT3AB5352
  • status - Indication of the operation's result returned: always type: str sample: success
  • vdom - Virtual domain used returned: always type: str sample: root
  • version - Version of the FortiGate returned: always type: str sample: v5.6.3

Status¶

  • This module is not guaranteed to have a backwards compatible interface.

Authors¶

  • Link Zheng (@chillancezen)
  • Jie Xue (@JieX19)
  • Hongbin Lu (@fgtdev-hblu)
  • Frank Shen (@frankshen01)
  • Miguel Angel Munoz (@mamunozgonzalez)
  • Nicolas Thomas (@thomnico)

Hint

If you notice any issues in this documentation, you can create a pull request to improve it.

Next Previous

© Copyright 2020, Fortinet Revision 218f1210.

Built with Sphinx using a theme provided by Read the Docs.