Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
solidblueliquid
New Contributor

Can you import IP's in to the Quarantine Log?

Hi Everyone,

 

Currently i'm adding people to the Quarantine section of my 100D (5.6.x) by finding the ip in the Forward Traffic, but i wonder if there's a way to add IP's that haven't shown in the forward traffic via the command line?

4 REPLIES 4
neonbit
Valued Contributor

This KB article shows how you can add IPs via the CLI.

 

The below example will ban 10.0.1.111 for one hour:

 

diagnose user quarantine add src4 10.0.1.111 3600 admin

 

You could add these in a text file, and then upload them to the FortiGate all at once (System > Advanced > Configuration Scripts).

solidblueliquid

If i wanted them on a perma ban, is there a number for this?

 

As for the txt file, would i just repeat the command on each line?

lxzndr

solidblueliquid wrote:

If i wanted them on a perma ban, is there a number for this?

 

I know this is old, but it wasn't answered:

instead of 3600 for 1 hour, enter: indefinite  or try 0

 

 

vikrampaul93
New Contributor

Hi Everyone..

Labels
Top Kudoed Authors