0% found this document useful (0 votes)
187 views213 pages

2024 02 14T20 - 31 - 59 VADODBO 2022148459 F40F SFW01 (Root) Preview

Uploaded by

sec19it098
Copyright
© © All Rights Reserved
We take content rights seriously. If you suspect this is your content, claim it here.
Available Formats
Download as TXT, PDF, TXT or read online on Scribd
0% found this document useful (0 votes)
187 views213 pages

2024 02 14T20 - 31 - 59 VADODBO 2022148459 F40F SFW01 (Root) Preview

Uploaded by

sec19it098
Copyright
© © All Rights Reserved
We take content rights seriously. If you suspect this is your content, claim it here.
Available Formats
Download as TXT, PDF, TXT or read online on Scribd

#config-version=FG40FI-7.

00-FW-build1396-000000:opmode=0:vdom=0:user=admin
#version=700
#build=1396
#branch_pt=1396
#platform=FORTIGATE-40F-3G4G
#serialno=FG40FITK21029094
#hwrev=P24695-3
#logdisk=0
#hyperscale_license_status=0
#[Link]=00000000000002690466,00000000000000000000,00000000000000000000,000000000
00000000000
#mgmt.dat2=00000000002011451392,00000000000000000000,00000000000000000001,000000000
00000000000

config system global


set timezone 47
set hostname "VADODBO-2022148459-F40F-SFW01"
set alias "FortiGate-40F-3G4G"
set pre-login-banner enable
set post-login-banner enable
set admin-server-cert "self-sign"
set switch-controller enable
set gui-theme mariner
set management-port-use-admin-sport disable
end
config system accprofile
edit "prof_admin"
set secfabgrp read-write
set ftviewgrp read-write
set authgrp read-write
set sysgrp read-write
set netgrp read-write
set loggrp read-write
set fwgrp read-write
set vpngrp read-write
set utmgrp read-write
set wifi read-write
next
end
config system custom-language
edit "GB2312"
set filename "GB2312"
next
edit "big5"
set filename "big5"
next
edit "en"
set filename "en"
next
edit "euc-kr"
set filename "euc-kr"
next
edit "fr"
set filename "fr"
next
edit "pg"
set filename "pg"
next
edit "sp"
set filename "sp"
next
edit "x-sjis"
set filename "x-sjis"
next
end
config system replacemsg-image
edit "logo_fguard_wf"
set image-type gif
set image-base64 ''
next
edit "logo_fnet"
set image-type gif
set image-base64 ''
next
edit "logo_v3_fguard_app"
set image-base64 ''
next
end
config system switch-interface
edit "[Link]"
set vdom "root"
set member "[Link]"
next
end
config system virtual-switch
edit "fortilink"
set physical-switch "sw0"
config port
edit "a"
next
end
next
edit "lan"
set physical-switch "sw0"
config port
edit "lan1"
next
edit "lan2"
next
end
next
end
config system interface
edit "wan"
set vdom "root"
set mode dhcp
set allowaccess ping https ssh fgfm
set type physical
set alias "BB"
set device-identification enable
set device-user-identification disable
set lldp-reception enable
set lldp-transmission enable
set role wan
set snmp-index 1
set monitor-bandwidth enable
next
edit "lan1"
set vdom "root"
set type physical
set snmp-index 8
next
edit "lan2"
set vdom "root"
set type physical
set snmp-index 9
next
edit "lan3"
set vdom "root"
set ip [Link] [Link]
set allowaccess ping https ssh fgfm fabric
set type physical
set lldp-transmission enable
set snmp-index 10
set monitor-bandwidth enable
next
edit "a"
set vdom "root"
set type physical
set snmp-index 2
next
edit "wwan"
set vdom "root"
set mode dhcp
set distance 10
set allowaccess ping fgfm
set type physical
set alias "LTE"
set device-identification enable
set device-user-identification disable
set lldp-reception enable
set lldp-transmission enable
set role wan
set snmp-index 3
set monitor-bandwidth enable
next
edit "modem"
set vdom "root"
set mode pppoe
set status down
set type physical
set snmp-index 4
next
edit "[Link]"
set vdom "root"
set type tunnel
set snmp-index 11
set src-check disable
next
edit "[Link]"
set vdom "root"
set type tunnel
set snmp-index 12
next
edit "[Link]"
set vdom "root"
set type tunnel
set alias "SSL VPN interface"
set snmp-index 5
next
edit "[Link]"
set vdom "root"
set ip [Link] [Link]
set type switch
set description "Quarantine Soft Switch"
set security-mode captive-portal
set replacemsg-override-group "[Link]"
set device-identification enable
set snmp-index 15
next
edit "lan"
set vdom "root"
set ip [Link] [Link]
set allowaccess ping https ssh fgfm fabric
set type hard-switch
set stp enable
set lldp-transmission enable
set role lan
set snmp-index 6
set monitor-bandwidth enable
next
edit "fortilink"
set vdom "root"
set type hard-switch
set snmp-index 7
next
edit "SISINDIA"
set vdom "root"
set ip [Link] [Link]
set type vap-switch
set alias "SISINDIA"
set device-identification enable
set device-user-identification disable
set role lan
set snmp-index 13
next
edit "[Link]"
set vdom "root"
set color 6
set description "Quarantine VLAN"
set security-mode captive-portal
set device-identification enable
set snmp-index 14
set interface "SISINDIA"
set vlanid 4093
next
edit "H1ILL_T1"
set vdom "root"
set ip [Link] [Link]
set allowaccess ping
set type tunnel
set remote-ip [Link] [Link]
set snmp-index 117
set interface "wan"
next
edit "H1ILL_T1_XC"
set vdom "root"
set ip [Link] [Link]
set allowaccess ping
set type tunnel
set remote-ip [Link] [Link]
set snmp-index 118
set interface "wan"
next
edit "CASHILL1_T1"
set vdom "root"
set ip [Link] [Link]
set allowaccess ping
set type tunnel
set remote-ip [Link] [Link]
set snmp-index 119
set interface "wan"
next
edit "CASHILL1_T1_XC"
set vdom "root"
set ip [Link] [Link]
set allowaccess ping
set type tunnel
set remote-ip [Link] [Link]
set snmp-index 120
set interface "wan"
next
edit "SIFYNOCMGMT-LB"
set vdom "root"
set ip [Link] [Link]
set allowaccess ping https ssh fgfm
set type loopback
set description "SIFY MGMT Loopback"
set snmp-index 121
next
edit "H2ILL_T2"
set vdom "root"
set ip [Link] [Link]
set allowaccess ping
set type tunnel
set remote-ip [Link] [Link]
set snmp-index 122
set interface "wwan"
next
edit "H2ILL_T2_XC"
set vdom "root"
set ip [Link] [Link]
set allowaccess ping
set type tunnel
set remote-ip [Link] [Link]
set snmp-index 123
set interface "wwan"
next
edit "CASHILL2_T2"
set vdom "root"
set ip [Link] [Link]
set allowaccess ping
set type tunnel
set remote-ip [Link] [Link]
set snmp-index 124
set interface "wwan"
next
edit "CASHILL2_T2_XC"
set vdom "root"
set ip [Link] [Link]
set allowaccess ping
set type tunnel
set remote-ip [Link] [Link]
set snmp-index 125
set interface "wwan"
next
end
config system physical-switch
edit "sw0"
set age-val 0
next
end
config system admin
edit "Sifyadmin"
set accprofile "super_admin"
set vdom "root"
set password ENC SH2lx9eIoLcBpzPWuNz47tFl09I480rvJJAMBgoekNV9zgRo6zPrDIFHWKDkZQ=
set gui-ignore-release-overview-version "7.2.0"
config gui-dashboard
edit 1
set name "Status"
set vdom "root"
set permanent enable
config widget
edit 1
set width 1
set height 1
next
edit 2
set type licinfo
set x-pos 1
set width 1
set height 1
next
edit 3
set type forticloud
set x-pos 2
set width 1
set height 1
next
edit 4
set type security-fabric
set x-pos 3
set width 1
set height 1
next
edit 5
set type admins
set x-pos 4
set width 1
set height 1
next
edit 6
set type cpu-usage
set x-pos 5
set width 2
set height 1
next
edit 7
set type memory-usage
set x-pos 6
set width 2
set height 1
next
edit 8
set type sessions
set x-pos 7
set width 2
set height 1
next
end
next
edit 2
set name "Security"
set vdom "root"
config widget
edit 1
set type fortiview
set width 2
set height 1
set fortiview-type "compromisedHosts"
set fortiview-sort-by "verdict"
set fortiview-timeframe "hour"
set fortiview-visualization "table"
next
edit 2
set type fortiview
set x-pos 1
set width 2
set height 1
set fortiview-type "threats"
set fortiview-sort-by "threatLevel"
set fortiview-timeframe "hour"
set fortiview-visualization "table"
next
edit 3
set type vulnerability-summary
set x-pos 2
set width 2
set height 1
next
edit 4
set type host-scan-summary
set x-pos 3
set width 1
set height 1
next
edit 5
set type fortiview
set x-pos 4
set width 2
set height 1
set fortiview-type "endpointDevices"
set fortiview-sort-by "vulnerabilities"
set fortiview-timeframe "hour"
set fortiview-visualization "table"
next
end
next
edit 3
set name "Network"
set vdom "root"
config widget
edit 1
set type routing
set width 2
set height 1
set router-view-type "staticdynamic"
next
edit 2
set type dhcp
set x-pos 1
set width 2
set height 1
next
edit 3
set type virtual-wan
set x-pos 2
set width 2
set height 1
next
edit 4
set type ipsec-vpn
set x-pos 3
set width 2
set height 1
next
edit 5
set type ssl-vpn
set x-pos 4
set width 2
set height 1
next
end
next
edit 4
set name "Users & Devices"
set vdom "root"
config widget
edit 1
set type device-inventory
set width 2
set height 1
set table-visualization "charts"
set device-list-view-type "hardware_vendor"
next
edit 2
set type forticlient
set x-pos 1
set width 2
set height 1
set table-visualization "charts"
set device-list-online "online"
set device-list-telemetry "sending"
set device-list-view-type "interface"
next
edit 3
set type firewall-user
set x-pos 2
set width 2
set height 1
next
edit 4
set type quarantine
set x-pos 3
set width 2
set height 1
next
edit 5
set type nac-vlans
set x-pos 4
set width 2
set height 1
next
end
next
edit 5
set name "WiFi"
set vdom "root"
config widget
edit 1
set type ap-status
set width 2
set height 1
next
edit 2
set type channel-utilization
set x-pos 1
set width 2
set height 1
set wifi-band "both"
next
edit 3
set type clients-by-ap
set x-pos 2
set width 2
set height 1
set wifi-band "both"
next
edit 4
set type client-signal-strength
set x-pos 3
set width 2
set height 1
set wifi-band "both"
next
edit 5
set type rogue-ap
set x-pos 4
set width 2
set height 1
next
edit 6
set type historical-clients
set x-pos 5
set width 2
set height 1
set wifi-band "both"
next
edit 7
set type interfering-ssids
set x-pos 6
set width 2
set height 1
set wifi-band "both"
next
edit 8
set type wifi-login-failures
set x-pos 7
set width 2
set height 1
next
end
next
edit 6
set name "FortiView Sources"
set layout-type standalone
set vdom "root"
set csf disable
config widget
edit 1
set type fortiview
set width 6
set height 3
set fortiview-type "source"
set fortiview-sort-by "bytes"
set fortiview-timeframe "hour"
set fortiview-visualization "table"
next
end
next
edit 7
set name "FortiView Destinations"
set layout-type standalone
set vdom "root"
set csf disable
config widget
edit 1
set type fortiview
set width 6
set height 3
set fortiview-type "destination"
set fortiview-sort-by "bytes"
set fortiview-timeframe "hour"
set fortiview-visualization "table"
next
end
next
edit 8
set name "FortiView Applications"
set layout-type standalone
set vdom "root"
set csf disable
config widget
edit 1
set type fortiview
set width 6
set height 3
set fortiview-type "application"
set fortiview-sort-by "bytes"
set fortiview-timeframe "hour"
set fortiview-visualization "table"
next
end
next
edit 9
set name "FortiView Web Sites"
set layout-type standalone
set vdom "root"
set csf disable
config widget
edit 1
set type fortiview
set width 6
set height 3
set fortiview-type "website"
set fortiview-sort-by "sessions"
set fortiview-timeframe "hour"
set fortiview-visualization "table"
next
end
next
edit 10
set name "FortiView Policies"
set layout-type standalone
set vdom "root"
set csf disable
config widget
edit 1
set type fortiview
set width 6
set height 3
set fortiview-type "policy"
set fortiview-sort-by "bytes"
set fortiview-timeframe "hour"
set fortiview-visualization "table"
next
end
next
edit 11
set name "FortiView Sessions"
set layout-type standalone
set vdom "root"
set csf disable
config widget
edit 1
set type fortiview
set width 6
set height 3
set fortiview-type "realtimeSessions"
set fortiview-sort-by "bytes"
set fortiview-timeframe "realtime"
set fortiview-visualization "table"
next
end
next
end
next
end
config system ha
set override disable
end
config system dns
set primary [Link]
set secondary [Link]
set server-hostname "[Link]"
set protocol dot
end
config system replacemsg mail "partial"
end
config system replacemsg http "http-antiphish-block"
end
config system replacemsg http "http-contenttypeblock"
end
config system replacemsg http "https-blocklisted-cert-block"
end
config system replacemsg http "https-invalid-cert-block"
end
config system replacemsg http "https-untrusted-cert-block"
end
config system replacemsg http "infcache-block"
end
config system replacemsg http "switching-protocols-block"
end
config system replacemsg http "url-block"
end
config system replacemsg http "urlfilter-err"
end
config system replacemsg http "videofilter-block"
end
config system replacemsg webproxy "auth-challenge"
end
config system replacemsg webproxy "auth-group-info-fail"
end
config system replacemsg webproxy "auth-ip-blackout"
end
config system replacemsg webproxy "auth-login-fail"
end
config system replacemsg webproxy "deny"
end
config system replacemsg webproxy "http-err"
end
config system replacemsg webproxy "user-limit"
end
config system replacemsg webproxy "ztna-block"
end
config system replacemsg ftp "ftp-explicit-banner"
end
config system replacemsg fortiguard-wf "ftgd-block"
end
config system replacemsg fortiguard-wf "ftgd-ovrd"
end
config system replacemsg fortiguard-wf "ftgd-quota"
end
config system replacemsg fortiguard-wf "ftgd-warning"
end
config system replacemsg spam "ipblocklist"
end
config system replacemsg spam "reversedns"
end
config system replacemsg spam "smtp-spam-ase"
end
config system replacemsg spam "smtp-spam-dnsbl"
end
config system replacemsg spam "smtp-spam-emailblock-from"
end
config system replacemsg spam "smtp-spam-emailblock-subject"
end
config system replacemsg spam "smtp-spam-emailblock-to"
end
config system replacemsg spam "smtp-spam-feip"
end
config system replacemsg spam "smtp-spam-helo"
end
config system replacemsg spam "smtp-spam-mimeheader"
end
config system replacemsg spam "submit"
end
config system replacemsg alertmail "alertmail-block"
end
config system replacemsg alertmail "alertmail-crit-event"
end
config system replacemsg alertmail "alertmail-disk-full"
end
config system replacemsg alertmail "alertmail-nids-event"
end
config system replacemsg alertmail "alertmail-virus"
end
config system replacemsg admin "post_admin-disclaimer-text"
end
config system replacemsg admin "pre_admin-disclaimer-text"
end
config system replacemsg auth "auth-block-notification-page"
end
config system replacemsg auth "auth-cert-passwd-page"
end
config system replacemsg auth "auth-challenge-page"
end
config system replacemsg auth "auth-disclaimer-page-1"
end
config system replacemsg auth "auth-disclaimer-page-2"
end
config system replacemsg auth "auth-disclaimer-page-3"
end
config system replacemsg auth "auth-email-failed-page"
end
config system replacemsg auth "auth-email-harvesting-page"
end
config system replacemsg auth "auth-email-token-page"
end
config system replacemsg auth "auth-fortitoken-page"
end
config system replacemsg auth "auth-guest-email-page"
end
config system replacemsg auth "auth-guest-print-page"
end
config system replacemsg auth "auth-keepalive-page"
end
config system replacemsg auth "auth-login-failed-page"
end
config system replacemsg auth "auth-login-page"
end
config system replacemsg auth "auth-next-fortitoken-page"
end
config system replacemsg auth "auth-password-page"
end
config system replacemsg auth "auth-portal-page"
end
config system replacemsg auth "auth-proxy-reject-page"
end
config system replacemsg auth "auth-qtn-reject-page"
end
config system replacemsg auth "auth-quarantine-page"
end
config system replacemsg auth "auth-reject-page"
end
config system replacemsg auth "auth-saml-page"
end
config system replacemsg auth "auth-sms-token-page"
end
config system replacemsg auth "auth-success-msg"
end
config system replacemsg auth "auth-success-page"
end
config system replacemsg auth "auth-token-login-failed-page"
end
config system replacemsg auth "auth-token-login-page"
end
config system replacemsg sslvpn "hostcheck-error"
end
config system replacemsg sslvpn "sslvpn-header"
end
config system replacemsg sslvpn "sslvpn-limit"
end
config system replacemsg sslvpn "sslvpn-login"
end
config system replacemsg sslvpn "sslvpn-provision-user"
end
config system replacemsg sslvpn "sslvpn-provision-user-sms"
end
config system replacemsg nac-quar "nac-quar-admin"
end
config system replacemsg nac-quar "nac-quar-app"
end
config system replacemsg nac-quar "nac-quar-dlp"
end
config system replacemsg nac-quar "nac-quar-dos"
end
config system replacemsg nac-quar "nac-quar-ips"
end
config system replacemsg nac-quar "nac-quar-virus"
end
config system replacemsg traffic-quota "per-ip-shaper-block"
end
config system replacemsg utm "appblk-html"
end
config system replacemsg utm "archive-block-html"
end
config system replacemsg utm "archive-block-text"
end
config system replacemsg utm "banned-word-html"
end
config system replacemsg utm "banned-word-text"
end
config system replacemsg utm "block-html"
end
config system replacemsg utm "block-text"
end
config system replacemsg utm "client-file-size-html"
end
config system replacemsg utm "client-virus-html"
end
config system replacemsg utm "decompress-limit-text"
end
config system replacemsg utm "dlp-html"
end
config system replacemsg utm "dlp-subject-text"
end
config system replacemsg utm "dlp-text"
end
config system replacemsg utm "ems-threat-feed-html"
end
config system replacemsg utm "ems-threat-feed-text"
end
config system replacemsg utm "exe-text"
end
config system replacemsg utm "external-blocklist-html"
end
config system replacemsg utm "external-blocklist-text"
end
config system replacemsg utm "file-av-fail-text"
end
config system replacemsg utm "file-filter-html"
end
config system replacemsg utm "file-filter-text"
end
config system replacemsg utm "file-size-html"
end
config system replacemsg utm "file-size-text"
end
config system replacemsg utm "icap-block-text"
end
config system replacemsg utm "icap-error-text"
end
config system replacemsg utm "icap-http-error"
end
config system replacemsg utm "inline-scan-error-html"
end
config system replacemsg utm "inline-scan-error-text"
end
config system replacemsg utm "inline-scan-timeout-html"
end
config system replacemsg utm "inline-scan-timeout-text"
end
config system replacemsg utm "internal-error-text"
end
config system replacemsg utm "ipsblk-html"
end
config system replacemsg utm "ipsfail-html"
end
config system replacemsg utm "outbreak-prevention-html"
end
config system replacemsg utm "outbreak-prevention-text"
end
config system replacemsg utm "transfer-av-fail-text"
end
config system replacemsg utm "transfer-size-text"
end
config system replacemsg utm "virus-html"
end
config system replacemsg utm "virus-text"
end
config system replacemsg utm "waf-html"
end
config system replacemsg icap "icap-req-resp"
end
config system replacemsg automation "automation-email"
end
config system central-management
set type fortimanager
set fmg "[Link]"
set serial-number "FMG-VMTM21007476"
set allow-remote-lte-firmware-upgrade disable
end
config firewall internet-service-name
edit "[Link]"
set internet-service-id 10354860
next
edit "ADP-DNS"
set internet-service-id 6160387
next
edit "ADP-FTP"
set internet-service-id 6160391
next
edit "ADP-ICMP"
set internet-service-id 6160386
next
edit "ADP-Inbound_Email"
set internet-service-id 6160393
next
edit "ADP-LDAP"
set internet-service-id 6160398
next
edit "ADP-NTP"
set internet-service-id 6160392
next
edit "[Link]"
set internet-service-id 6160408
next
edit "[Link]"
set internet-service-id 6160399
next
edit "ADP-Other"
set internet-service-id 6160384
next
edit "ADP-Outbound_Email"
set internet-service-id 6160388
next
edit "ADP-RTMP"
set internet-service-id 6160400
next
edit "ADP-SSH"
set internet-service-id 6160390
next
edit "ADP-Web"
set internet-service-id 6160385
next
edit "AOL-DNS"
set internet-service-id 1572867
next
edit "AOL-FTP"
set internet-service-id 1572871
next
edit "AOL-ICMP"
set internet-service-id 1572866
next
edit "AOL-Inbound_Email"
set internet-service-id 1572873
next
edit "AOL-LDAP"
set internet-service-id 1572878
next
edit "AOL-NTP"
set internet-service-id 1572872
next
edit "[Link]"
set internet-service-id 1572888
next
edit "[Link]"
set internet-service-id 1572879
next
edit "AOL-Other"
set internet-service-id 1572864
next
edit "AOL-Outbound_Email"
set internet-service-id 1572868
next
edit "AOL-RTMP"
set internet-service-id 1572880
next
edit "AOL-SSH"
set internet-service-id 1572870
next
edit "AOL-Web"
set internet-service-id 1572865
next
edit "[Link]"
set internet-service-id 9699489
next
edit "Act-on-DNS"
set internet-service-id 5242883
next
edit "Act-on-FTP"
set internet-service-id 5242887
next
edit "Act-on-ICMP"
set internet-service-id 5242882
next
edit "Act-on-Inbound_Email"
set internet-service-id 5242889
next
edit "Act-on-LDAP"
set internet-service-id 5242894
next
edit "Act-on-NTP"
set internet-service-id 5242888
next
edit "[Link]"
set internet-service-id 5242904
next
edit "[Link]"
set internet-service-id 5242895
next
edit "Act-on-Other"
set internet-service-id 5242880
next
edit "Act-on-Outbound_Email"
set internet-service-id 5242884
next
edit "Act-on-RTMP"
set internet-service-id 5242896
next
edit "Act-on-SSH"
set internet-service-id 5242886
next
edit "Act-on-Web"
set internet-service-id 5242881
next
edit "AdRoll-DNS"
set internet-service-id 4128771
next
edit "AdRoll-FTP"
set internet-service-id 4128775
next
edit "AdRoll-ICMP"
set internet-service-id 4128770
next
edit "AdRoll-Inbound_Email"
set internet-service-id 4128777
next
edit "AdRoll-LDAP"
set internet-service-id 4128782
next
edit "AdRoll-NTP"
set internet-service-id 4128776
next
edit "[Link]"
set internet-service-id 4128792
next
edit "[Link]"
set internet-service-id 4128783
next
edit "AdRoll-Other"
set internet-service-id 4128768
next
edit "AdRoll-Outbound_Email"
set internet-service-id 4128772
next
edit "AdRoll-RTMP"
set internet-service-id 4128784
next
edit "AdRoll-SSH"
set internet-service-id 4128774
next
edit "AdRoll-Web"
set internet-service-id 4128769
next
edit "[Link]"
set internet-service-id 917640
next
edit "[Link]"
set internet-service-id 917776
next
edit "Adobe-DNS"
set internet-service-id 917507
next
edit "Adobe-FTP"
set internet-service-id 917511
next
edit "Adobe-ICMP"
set internet-service-id 917506
next
edit "Adobe-Inbound_Email"
set internet-service-id 917513
next
edit "Adobe-LDAP"
set internet-service-id 917518
next
edit "Adobe-NTP"
set internet-service-id 917512
next
edit "[Link]"
set internet-service-id 917528
next
edit "[Link]"
set internet-service-id 917519
next
edit "Adobe-Other"
set internet-service-id 917504
next
edit "Adobe-Outbound_Email"
set internet-service-id 917508
next
edit "Adobe-RTMP"
set internet-service-id 917520
next
edit "Adobe-SSH"
set internet-service-id 917510
next
edit "Adobe-Web"
set internet-service-id 917505
next
edit "Akamai-CDN"
set internet-service-id 7929993
next
edit "[Link]"
set internet-service-id 7930148
next
edit "[Link]-Rainbow"
set internet-service-id 11534546
next
edit "[Link]"
set internet-service-id 6881402
next
edit "Alibaba-DNS"
set internet-service-id 6881283
next
edit "Alibaba-FTP"
set internet-service-id 6881287
next
edit "Alibaba-ICMP"
set internet-service-id 6881282
next
edit "Alibaba-Inbound_Email"
set internet-service-id 6881289
next
edit "Alibaba-LDAP"
set internet-service-id 6881294
next
edit "Alibaba-NTP"
set internet-service-id 6881288
next
edit "[Link]"
set internet-service-id 6881304
next
edit "[Link]"
set internet-service-id 6881295
next
edit "Alibaba-Other"
set internet-service-id 6881280
next
edit "Alibaba-Outbound_Email"
set internet-service-id 6881284
next
edit "Alibaba-RTMP"
set internet-service-id 6881296
next
edit "Alibaba-SSH"
set internet-service-id 6881286
next
edit "Alibaba-Web"
set internet-service-id 6881281
next
edit "Amazon-AWS"
set internet-service-id 393320
next
edit "[Link]"
set internet-service-id 393478
next
edit "[Link]"
set internet-service-id 393484
next
edit "[Link]"
set internet-service-id 393483
next
edit "[Link]"
set internet-service-id 393479
next
edit "Amazon-AWS.Cloud9"
set internet-service-id 393471
next
edit "[Link]"
set internet-service-id 393481
next
edit "[Link]"
set internet-service-id 393482
next
edit "[Link]"
set internet-service-id 393480
next
edit "[Link]"
set internet-service-id 393472
next
edit "[Link]"
set internet-service-id 393470
next
edit "Amazon-AWS.EC2"
set internet-service-id 393477
next
edit "[Link]"
set internet-service-id 393476
next
edit "[Link]"
set internet-service-id 393452
next
edit "[Link]"
set internet-service-id 393475
next
edit "Amazon-AWS.Route53"
set internet-service-id 393473
next
edit "Amazon-AWS.S3"
set internet-service-id 393474
next
edit "[Link]"
set internet-service-id 393403
next
edit "[Link]"
set internet-service-id 393493
next
edit "Amazon-DNS"
set internet-service-id 393219
next
edit "Amazon-FTP"
set internet-service-id 393223
next
edit "Amazon-ICMP"
set internet-service-id 393218
next
edit "Amazon-Inbound_Email"
set internet-service-id 393225
next
edit "Amazon-LDAP"
set internet-service-id 393230
next
edit "Amazon-NTP"
set internet-service-id 393224
next
edit "[Link]"
set internet-service-id 393240
next
edit "[Link]"
set internet-service-id 393231
next
edit "Amazon-Other"
set internet-service-id 393216
next
edit "Amazon-Outbound_Email"
set internet-service-id 393220
next
edit "Amazon-RTMP"
set internet-service-id 393232
next
edit "Amazon-SSH"
set internet-service-id 393222
next
edit "Amazon-Twitch"
set internet-service-id 393446
next
edit "Amazon-Web"
set internet-service-id 393217
next
edit "Anaplan-DNS"
set internet-service-id 5832707
next
edit "Anaplan-FTP"
set internet-service-id 5832711
next
edit "Anaplan-ICMP"
set internet-service-id 5832706
next
edit "Anaplan-Inbound_Email"
set internet-service-id 5832713
next
edit "Anaplan-LDAP"
set internet-service-id 5832718
next
edit "Anaplan-NTP"
set internet-service-id 5832712
next
edit "[Link]"
set internet-service-id 5832728
next
edit "[Link]"
set internet-service-id 5832719
next
edit "Anaplan-Other"
set internet-service-id 5832704
next
edit "Anaplan-Outbound_Email"
set internet-service-id 5832708
next
edit "Anaplan-RTMP"
set internet-service-id 5832720
next
edit "Anaplan-SSH"
set internet-service-id 5832710
next
edit "Anaplan-Web"
set internet-service-id 5832705
next
edit "AnyDesk-AnyDesk"
set internet-service-id 5963927
next
edit "Apple-APNs"
set internet-service-id 196747
next
edit "[Link]"
set internet-service-id 196723
next
edit "Apple-DNS"
set internet-service-id 196611
next
edit "Apple-FTP"
set internet-service-id 196615
next
edit "Apple-ICMP"
set internet-service-id 196610
next
edit "Apple-Inbound_Email"
set internet-service-id 196617
next
edit "Apple-LDAP"
set internet-service-id 196622
next
edit "Apple-NTP"
set internet-service-id 196616
next
edit "[Link]"
set internet-service-id 196632
next
edit "[Link]"
set internet-service-id 196623
next
edit "Apple-Other"
set internet-service-id 196608
next
edit "Apple-Outbound_Email"
set internet-service-id 196612
next
edit "Apple-RTMP"
set internet-service-id 196624
next
edit "Apple-SSH"
set internet-service-id 196614
next
edit "Apple-Web"
set internet-service-id 196609
next
edit "Apptio-DNS"
set internet-service-id 5701635
next
edit "Apptio-FTP"
set internet-service-id 5701639
next
edit "Apptio-ICMP"
set internet-service-id 5701634
next
edit "Apptio-Inbound_Email"
set internet-service-id 5701641
next
edit "Apptio-LDAP"
set internet-service-id 5701646
next
edit "Apptio-NTP"
set internet-service-id 5701640
next
edit "[Link]"
set internet-service-id 5701656
next
edit "[Link]"
set internet-service-id 5701647
next
edit "Apptio-Other"
set internet-service-id 5701632
next
edit "Apptio-Outbound_Email"
set internet-service-id 5701636
next
edit "Apptio-RTMP"
set internet-service-id 5701648
next
edit "Apptio-SSH"
set internet-service-id 5701638
next
edit "Apptio-Web"
set internet-service-id 5701633
next
edit "[Link]"
set internet-service-id 15860019
next
edit "[Link]-DNS"
set internet-service-id 7798787
next
edit "[Link]-FTP"
set internet-service-id 7798791
next
edit "[Link]-ICMP"
set internet-service-id 7798786
next
edit "[Link]-Inbound_Email"
set internet-service-id 7798793
next
edit "[Link]-LDAP"
set internet-service-id 7798798
next
edit "[Link]-NTP"
set internet-service-id 7798792
next
edit "[Link]"
set internet-service-id 7798808
next
edit "[Link]"
set internet-service-id 7798799
next
edit "[Link]-Other"
set internet-service-id 7798784
next
edit "[Link]-Outbound_Email"
set internet-service-id 7798788
next
edit "[Link]-RTMP"
set internet-service-id 7798800
next
edit "[Link]-SSH"
set internet-service-id 7798790
next
edit "[Link]-Web"
set internet-service-id 7798785
next
edit "Ask-DNS"
set internet-service-id 2621443
next
edit "Ask-FTP"
set internet-service-id 2621447
next
edit "Ask-ICMP"
set internet-service-id 2621442
next
edit "Ask-Inbound_Email"
set internet-service-id 2621449
next
edit "Ask-LDAP"
set internet-service-id 2621454
next
edit "Ask-NTP"
set internet-service-id 2621448
next
edit "[Link]"
set internet-service-id 2621464
next
edit "[Link]"
set internet-service-id 2621455
next
edit "Ask-Other"
set internet-service-id 2621440
next
edit "Ask-Outbound_Email"
set internet-service-id 2621444
next
edit "Ask-RTMP"
set internet-service-id 2621456
next
edit "Ask-SSH"
set internet-service-id 2621446
next
edit "Ask-Web"
set internet-service-id 2621441
next
edit "[Link]"
set internet-service-id 3932388
next
edit "[Link]"
set internet-service-id 3932436
next
edit "Atlassian-DNS"
set internet-service-id 3932163
next
edit "Atlassian-FTP"
set internet-service-id 3932167
next
edit "Atlassian-ICMP"
set internet-service-id 3932162
next
edit "Atlassian-Inbound_Email"
set internet-service-id 3932169
next
edit "Atlassian-LDAP"
set internet-service-id 3932174
next
edit "Atlassian-NTP"
set internet-service-id 3932168
next
edit "[Link]"
set internet-service-id 3932184
next
edit "[Link]"
set internet-service-id 3932175
next
edit "Atlassian-Other"
set internet-service-id 3932160
next
edit "Atlassian-Outbound_Email"
set internet-service-id 3932164
next
edit "Atlassian-RTMP"
set internet-service-id 3932176
next
edit "Atlassian-SSH"
set internet-service-id 3932166
next
edit "Atlassian-Web"
set internet-service-id 3932161
next
edit "[Link]"
set internet-service-id 7143550
next
edit "Avast-DNS"
set internet-service-id 7143427
next
edit "Avast-FTP"
set internet-service-id 7143431
next
edit "Avast-ICMP"
set internet-service-id 7143426
next
edit "Avast-Inbound_Email"
set internet-service-id 7143433
next
edit "Avast-LDAP"
set internet-service-id 7143438
next
edit "Avast-NTP"
set internet-service-id 7143432
next
edit "[Link]"
set internet-service-id 7143448
next
edit "[Link]"
set internet-service-id 7143439
next
edit "Avast-Other"
set internet-service-id 7143424
next
edit "Avast-Outbound_Email"
set internet-service-id 7143428
next
edit "Avast-RTMP"
set internet-service-id 7143440
next
edit "Avast-SSH"
set internet-service-id 7143430
next
edit "Avast-Web"
set internet-service-id 7143425
next
edit "Axon-Evidence"
set internet-service-id 14680353
next
edit "[Link]"
set internet-service-id 13304053
next
edit "Backblaze-DNS"
set internet-service-id 8912899
next
edit "Backblaze-FTP"
set internet-service-id 8912903
next
edit "Backblaze-ICMP"
set internet-service-id 8912898
next
edit "Backblaze-Inbound_Email"
set internet-service-id 8912905
next
edit "Backblaze-LDAP"
set internet-service-id 8912910
next
edit "Backblaze-NTP"
set internet-service-id 8912904
next
edit "[Link]"
set internet-service-id 8912920
next
edit "[Link]"
set internet-service-id 8912911
next
edit "Backblaze-Other"
set internet-service-id 8912896
next
edit "Backblaze-Outbound_Email"
set internet-service-id 8912900
next
edit "Backblaze-RTMP"
set internet-service-id 8912912
next
edit "Backblaze-SSH"
set internet-service-id 8912902
next
edit "Backblaze-Web"
set internet-service-id 8912897
next
edit "Baidu-DNS"
set internet-service-id 2883587
next
edit "Baidu-FTP"
set internet-service-id 2883591
next
edit "Baidu-ICMP"
set internet-service-id 2883586
next
edit "Baidu-Inbound_Email"
set internet-service-id 2883593
next
edit "Baidu-LDAP"
set internet-service-id 2883598
next
edit "Baidu-NTP"
set internet-service-id 2883592
next
edit "[Link]"
set internet-service-id 2883608
next
edit "[Link]"
set internet-service-id 2883599
next
edit "Baidu-Other"
set internet-service-id 2883584
next
edit "Baidu-Outbound_Email"
set internet-service-id 2883588
next
edit "Baidu-RTMP"
set internet-service-id 2883600
next
edit "Baidu-SSH"
set internet-service-id 2883590
next
edit "Baidu-Web"
set internet-service-id 2883585
next
edit "[Link]"
set internet-service-id 10551477
next
edit "Bill-DNS"
set internet-service-id 4456451
next
edit "Bill-FTP"
set internet-service-id 4456455
next
edit "Bill-ICMP"
set internet-service-id 4456450
next
edit "Bill-Inbound_Email"
set internet-service-id 4456457
next
edit "Bill-LDAP"
set internet-service-id 4456462
next
edit "Bill-NTP"
set internet-service-id 4456456
next
edit "[Link]"
set internet-service-id 4456472
next
edit "[Link]"
set internet-service-id 4456463
next
edit "Bill-Other"
set internet-service-id 4456448
next
edit "Bill-Outbound_Email"
set internet-service-id 4456452
next
edit "Bill-RTMP"
set internet-service-id 4456464
next
edit "Bill-SSH"
set internet-service-id 4456454
next
edit "Bill-Web"
set internet-service-id 4456449
next
edit "BinaryEdge-Scanner"
set internet-service-id 14418086
next
edit "Bitdefender-DNS"
set internet-service-id 8126467
next
edit "Bitdefender-FTP"
set internet-service-id 8126471
next
edit "Bitdefender-ICMP"
set internet-service-id 8126466
next
edit "Bitdefender-Inbound_Email"
set internet-service-id 8126473
next
edit "Bitdefender-LDAP"
set internet-service-id 8126478
next
edit "Bitdefender-NTP"
set internet-service-id 8126472
next
edit "[Link]"
set internet-service-id 8126488
next
edit "[Link]"
set internet-service-id 8126479
next
edit "Bitdefender-Other"
set internet-service-id 8126464
next
edit "Bitdefender-Outbound_Email"
set internet-service-id 8126468
next
edit "Bitdefender-RTMP"
set internet-service-id 8126480
next
edit "Bitdefender-SSH"
set internet-service-id 8126470
next
edit "Bitdefender-Web"
set internet-service-id 8126465
next
edit "BlackBerry-Cylance"
set internet-service-id 9175190
next
edit "Blackbaud-DNS"
set internet-service-id 5505027
next
edit "Blackbaud-FTP"
set internet-service-id 5505031
next
edit "Blackbaud-ICMP"
set internet-service-id 5505026
next
edit "Blackbaud-Inbound_Email"
set internet-service-id 5505033
next
edit "Blackbaud-LDAP"
set internet-service-id 5505038
next
edit "Blackbaud-NTP"
set internet-service-id 5505032
next
edit "[Link]"
set internet-service-id 5505048
next
edit "[Link]"
set internet-service-id 5505039
next
edit "Blackbaud-Other"
set internet-service-id 5505024
next
edit "Blackbaud-Outbound_Email"
set internet-service-id 5505028
next
edit "Blackbaud-RTMP"
set internet-service-id 5505040
next
edit "Blackbaud-SSH"
set internet-service-id 5505030
next
edit "Blackbaud-Web"
set internet-service-id 5505025
next
edit "Blackboard-DNS"
set internet-service-id 6225923
next
edit "Blackboard-FTP"
set internet-service-id 6225927
next
edit "Blackboard-ICMP"
set internet-service-id 6225922
next
edit "Blackboard-Inbound_Email"
set internet-service-id 6225929
next
edit "Blackboard-LDAP"
set internet-service-id 6225934
next
edit "Blackboard-NTP"
set internet-service-id 6225928
next
edit "[Link]"
set internet-service-id 6225944
next
edit "[Link]"
set internet-service-id 6225935
next
edit "Blackboard-Other"
set internet-service-id 6225920
next
edit "Blackboard-Outbound_Email"
set internet-service-id 6225924
next
edit "Blackboard-RTMP"
set internet-service-id 6225936
next
edit "Blackboard-SSH"
set internet-service-id 6225926
next
edit "Blackboard-Web"
set internet-service-id 6225921
next
edit "[Link]"
set internet-service-id 14614816
next
edit "[Link]"
set internet-service-id 12845290
next
edit "Bloomberg-Bloomberg"
set internet-service-id 12976367
next
edit "[Link]"
set internet-service-id 7012476
next
edit "Bluejeans-DNS"
set internet-service-id 7012355
next
edit "Bluejeans-FTP"
set internet-service-id 7012359
next
edit "Bluejeans-ICMP"
set internet-service-id 7012354
next
edit "Bluejeans-Inbound_Email"
set internet-service-id 7012361
next
edit "Bluejeans-LDAP"
set internet-service-id 7012366
next
edit "Bluejeans-NTP"
set internet-service-id 7012360
next
edit "[Link]"
set internet-service-id 7012376
next
edit "[Link]"
set internet-service-id 7012367
next
edit "Bluejeans-Other"
set internet-service-id 7012352
next
edit "Bluejeans-Outbound_Email"
set internet-service-id 7012356
next
edit "Bluejeans-RTMP"
set internet-service-id 7012368
next
edit "Bluejeans-SSH"
set internet-service-id 7012358
next
edit "Bluejeans-Web"
set internet-service-id 7012353
next
edit "Botnet-C&[Link]"
set internet-service-id 3080383
next
edit "Box-DNS"
set internet-service-id 589827
next
edit "Box-FTP"
set internet-service-id 589831
next
edit "Box-ICMP"
set internet-service-id 589826
next
edit "Box-Inbound_Email"
set internet-service-id 589833
next
edit "Box-LDAP"
set internet-service-id 589838
next
edit "Box-NTP"
set internet-service-id 589832
next
edit "[Link]"
set internet-service-id 589848
next
edit "[Link]"
set internet-service-id 589839
next
edit "Box-Other"
set internet-service-id 589824
next
edit "Box-Outbound_Email"
set internet-service-id 589828
next
edit "Box-RTMP"
set internet-service-id 589840
next
edit "Box-SSH"
set internet-service-id 589830
next
edit "Box-Web"
set internet-service-id 589825
next
edit "[Link]-CDN"
set internet-service-id 14942345
next
edit "CDN77-CDN"
set internet-service-id 14745737
next
edit "CNN-DNS"
set internet-service-id 2686979
next
edit "CNN-FTP"
set internet-service-id 2686983
next
edit "CNN-ICMP"
set internet-service-id 2686978
next
edit "CNN-Inbound_Email"
set internet-service-id 2686985
next
edit "CNN-LDAP"
set internet-service-id 2686990
next
edit "CNN-NTP"
set internet-service-id 2686984
next
edit "[Link]"
set internet-service-id 2687000
next
edit "[Link]"
set internet-service-id 2686991
next
edit "CNN-Other"
set internet-service-id 2686976
next
edit "CNN-Outbound_Email"
set internet-service-id 2686980
next
edit "CNN-RTMP"
set internet-service-id 2686992
next
edit "CNN-SSH"
set internet-service-id 2686982
next
edit "CNN-Web"
set internet-service-id 2686977
next
edit "CacheFly-CDN"
set internet-service-id 15138953
next
edit "[Link]"
set internet-service-id 10223785
next
edit "Censys-Scanner"
set internet-service-id 10027174
next
edit "Cisco-AppDynamic"
set internet-service-id 1966260
next
edit "Cisco-DNS"
set internet-service-id 1966083
next
edit "[Link]"
set internet-service-id 1966225
next
edit "Cisco-FTP"
set internet-service-id 1966087
next
edit "Cisco-ICMP"
set internet-service-id 1966082
next
edit "Cisco-Inbound_Email"
set internet-service-id 1966089
next
edit "Cisco-LDAP"
set internet-service-id 1966094
next
edit "[Link]"
set internet-service-id 1966218
next
edit "Cisco-NTP"
set internet-service-id 1966088
next
edit "[Link]"
set internet-service-id 1966104
next
edit "[Link]"
set internet-service-id 1966095
next
edit "Cisco-Other"
set internet-service-id 1966080
next
edit "Cisco-Outbound_Email"
set internet-service-id 1966084
next
edit "Cisco-RTMP"
set internet-service-id 1966096
next
edit "Cisco-SSH"
set internet-service-id 1966086
next
edit "[Link]"
set internet-service-id 1966324
next
edit "Cisco-Web"
set internet-service-id 1966081
next
edit "Cisco-Webex"
set internet-service-id 1966183
next
edit "[Link]"
set internet-service-id 1966315
next
edit "Citrix-DNS"
set internet-service-id 2097155
next
edit "Citrix-FTP"
set internet-service-id 2097159
next
edit "Citrix-ICMP"
set internet-service-id 2097154
next
edit "Citrix-Inbound_Email"
set internet-service-id 2097161
next
edit "Citrix-LDAP"
set internet-service-id 2097166
next
edit "Citrix-NTP"
set internet-service-id 2097160
next
edit "[Link]"
set internet-service-id 2097176
next
edit "[Link]"
set internet-service-id 2097167
next
edit "Citrix-Other"
set internet-service-id 2097152
next
edit "Citrix-Outbound_Email"
set internet-service-id 2097156
next
edit "Citrix-RTMP"
set internet-service-id 2097168
next
edit "Citrix-SSH"
set internet-service-id 2097158
next
edit "Citrix-Web"
set internet-service-id 2097153
next
edit "ClickMeeting-ClickMeeting"
set internet-service-id 12320989
next
edit "Cloud4Wi-DNS"
set internet-service-id 8650755
next
edit "Cloud4Wi-FTP"
set internet-service-id 8650759
next
edit "Cloud4Wi-ICMP"
set internet-service-id 8650754
next
edit "Cloud4Wi-Inbound_Email"
set internet-service-id 8650761
next
edit "Cloud4Wi-LDAP"
set internet-service-id 8650766
next
edit "Cloud4Wi-NTP"
set internet-service-id 8650760
next
edit "[Link]"
set internet-service-id 8650776
next
edit "[Link]"
set internet-service-id 8650767
next
edit "Cloud4Wi-Other"
set internet-service-id 8650752
next
edit "Cloud4Wi-Outbound_Email"
set internet-service-id 8650756
next
edit "Cloud4Wi-RTMP"
set internet-service-id 8650768
next
edit "Cloud4Wi-SSH"
set internet-service-id 8650758
next
edit "Cloud4Wi-Web"
set internet-service-id 8650753
next
edit "Cloudflare-CDN"
set internet-service-id 6553737
next
edit "Cloudflare-DNS"
set internet-service-id 6553603
next
edit "Cloudflare-FTP"
set internet-service-id 6553607
next
edit "Cloudflare-ICMP"
set internet-service-id 6553602
next
edit "Cloudflare-Inbound_Email"
set internet-service-id 6553609
next
edit "Cloudflare-LDAP"
set internet-service-id 6553614
next
edit "Cloudflare-NTP"
set internet-service-id 6553608
next
edit "[Link]"
set internet-service-id 6553624
next
edit "[Link]"
set internet-service-id 6553615
next
edit "Cloudflare-Other"
set internet-service-id 6553600
next
edit "Cloudflare-Outbound_Email"
set internet-service-id 6553604
next
edit "Cloudflare-RTMP"
set internet-service-id 6553616
next
edit "Cloudflare-SSH"
set internet-service-id 6553606
next
edit "Cloudflare-Web"
set internet-service-id 6553601
next
edit "CoffeeBean-DNS"
set internet-service-id 8585219
next
edit "CoffeeBean-FTP"
set internet-service-id 8585223
next
edit "CoffeeBean-ICMP"
set internet-service-id 8585218
next
edit "CoffeeBean-Inbound_Email"
set internet-service-id 8585225
next
edit "CoffeeBean-LDAP"
set internet-service-id 8585230
next
edit "CoffeeBean-NTP"
set internet-service-id 8585224
next
edit "[Link]"
set internet-service-id 8585240
next
edit "[Link]"
set internet-service-id 8585231
next
edit "CoffeeBean-Other"
set internet-service-id 8585216
next
edit "CoffeeBean-Outbound_Email"
set internet-service-id 8585220
next
edit "CoffeeBean-RTMP"
set internet-service-id 8585232
next
edit "CoffeeBean-SSH"
set internet-service-id 8585222
next
edit "CoffeeBean-Web"
set internet-service-id 8585217
next
edit "[Link]"
set internet-service-id 16843076
next
edit "Cornerstone-DNS"
set internet-service-id 4653059
next
edit "Cornerstone-FTP"
set internet-service-id 4653063
next
edit "Cornerstone-ICMP"
set internet-service-id 4653058
next
edit "Cornerstone-Inbound_Email"
set internet-service-id 4653065
next
edit "Cornerstone-LDAP"
set internet-service-id 4653070
next
edit "Cornerstone-NTP"
set internet-service-id 4653064
next
edit "[Link]"
set internet-service-id 4653080
next
edit "[Link]"
set internet-service-id 4653071
next
edit "Cornerstone-Other"
set internet-service-id 4653056
next
edit "Cornerstone-Outbound_Email"
set internet-service-id 4653060
next
edit "Cornerstone-RTMP"
set internet-service-id 4653072
next
edit "Cornerstone-SSH"
set internet-service-id 4653062
next
edit "Cornerstone-Web"
set internet-service-id 4653057
next
edit "CounterPath-Bria"
set internet-service-id 15925556
next
edit "Coupa-DNS"
set internet-service-id 3866627
next
edit "Coupa-FTP"
set internet-service-id 3866631
next
edit "Coupa-ICMP"
set internet-service-id 3866626
next
edit "Coupa-Inbound_Email"
set internet-service-id 3866633
next
edit "Coupa-LDAP"
set internet-service-id 3866638
next
edit "Coupa-NTP"
set internet-service-id 3866632
next
edit "[Link]"
set internet-service-id 3866648
next
edit "[Link]"
set internet-service-id 3866639
next
edit "Coupa-Other"
set internet-service-id 3866624
next
edit "Coupa-Outbound_Email"
set internet-service-id 3866628
next
edit "Coupa-RTMP"
set internet-service-id 3866640
next
edit "Coupa-SSH"
set internet-service-id 3866630
next
edit "Coupa-Web"
set internet-service-id 3866625
next
edit "CriminalIP-Scanner"
set internet-service-id 15990950
next
edit "[Link]"
set internet-service-id 7733383
next
edit "Cvent-DNS"
set internet-service-id 5439491
next
edit "Cvent-FTP"
set internet-service-id 5439495
next
edit "Cvent-ICMP"
set internet-service-id 5439490
next
edit "Cvent-Inbound_Email"
set internet-service-id 5439497
next
edit "Cvent-LDAP"
set internet-service-id 5439502
next
edit "Cvent-NTP"
set internet-service-id 5439496
next
edit "[Link]"
set internet-service-id 5439512
next
edit "[Link]"
set internet-service-id 5439503
next
edit "Cvent-Other"
set internet-service-id 5439488
next
edit "Cvent-Outbound_Email"
set internet-service-id 5439492
next
edit "Cvent-RTMP"
set internet-service-id 5439504
next
edit "Cvent-SSH"
set internet-service-id 5439494
next
edit "Cvent-Web"
set internet-service-id 5439489
next
edit "[Link]-Scanner"
set internet-service-id 14221478
next
edit "Cybozu-DNS"
set internet-service-id 7536643
next
edit "Cybozu-FTP"
set internet-service-id 7536647
next
edit "Cybozu-ICMP"
set internet-service-id 7536642
next
edit "Cybozu-Inbound_Email"
set internet-service-id 7536649
next
edit "Cybozu-LDAP"
set internet-service-id 7536654
next
edit "Cybozu-NTP"
set internet-service-id 7536648
next
edit "[Link]"
set internet-service-id 7536664
next
edit "[Link]"
set internet-service-id 7536655
next
edit "Cybozu-Other"
set internet-service-id 7536640
next
edit "Cybozu-Outbound_Email"
set internet-service-id 7536644
next
edit "Cybozu-RTMP"
set internet-service-id 7536656
next
edit "Cybozu-SSH"
set internet-service-id 7536646
next
edit "Cybozu-Web"
set internet-service-id 7536641
next
edit "[Link]"
set internet-service-id 10748206
next
edit "DNS-DoH_DoT"
set internet-service-id 10748089
next
edit "[Link]"
set internet-service-id 10748156
next
edit "Dailymotion-DNS"
set internet-service-id 15335427
next
edit "Dailymotion-FTP"
set internet-service-id 15335431
next
edit "Dailymotion-ICMP"
set internet-service-id 15335426
next
edit "Dailymotion-Inbound_Email"
set internet-service-id 15335433
next
edit "Dailymotion-LDAP"
set internet-service-id 15335438
next
edit "Dailymotion-NTP"
set internet-service-id 15335432
next
edit "[Link]"
set internet-service-id 15335448
next
edit "[Link]"
set internet-service-id 15335439
next
edit "Dailymotion-Other"
set internet-service-id 15335424
next
edit "Dailymotion-Outbound_Email"
set internet-service-id 15335428
next
edit "Dailymotion-RTMP"
set internet-service-id 15335440
next
edit "Dailymotion-SSH"
set internet-service-id 15335430
next
edit "Dailymotion-Web"
set internet-service-id 15335425
next
edit "Datadog-Datadog"
set internet-service-id 11665620
next
edit "[Link]"
set internet-service-id 10486083
next
edit "[Link]"
set internet-service-id 10485939
next
edit "Dell-DNS"
set internet-service-id 2228227
next
edit "Dell-FTP"
set internet-service-id 2228231
next
edit "Dell-ICMP"
set internet-service-id 2228226
next
edit "Dell-Inbound_Email"
set internet-service-id 2228233
next
edit "Dell-LDAP"
set internet-service-id 2228238
next
edit "Dell-NTP"
set internet-service-id 2228232
next
edit "[Link]"
set internet-service-id 2228248
next
edit "[Link]"
set internet-service-id 2228239
next
edit "Dell-Other"
set internet-service-id 2228224
next
edit "Dell-Outbound_Email"
set internet-service-id 2228228
next
edit "Dell-RTMP"
set internet-service-id 2228240
next
edit "Dell-SSH"
set internet-service-id 2228230
next
edit "Dell-Web"
set internet-service-id 2228225
next
edit "DigiCert-OCSP"
set internet-service-id 9240728
next
edit "[Link]"
set internet-service-id 12648679
next
edit "Disney-Disney+"
set internet-service-id 10682552
next
edit "DocuSign-DNS"
set internet-service-id 3473411
next
edit "DocuSign-FTP"
set internet-service-id 3473415
next
edit "DocuSign-ICMP"
set internet-service-id 3473410
next
edit "DocuSign-Inbound_Email"
set internet-service-id 3473417
next
edit "DocuSign-LDAP"
set internet-service-id 3473422
next
edit "DocuSign-NTP"
set internet-service-id 3473416
next
edit "[Link]"
set internet-service-id 3473432
next
edit "[Link]"
set internet-service-id 3473423
next
edit "DocuSign-Other"
set internet-service-id 3473408
next
edit "DocuSign-Outbound_Email"
set internet-service-id 3473412
next
edit "DocuSign-RTMP"
set internet-service-id 3473424
next
edit "DocuSign-SSH"
set internet-service-id 3473414
next
edit "DocuSign-Web"
set internet-service-id 3473409
next
edit "Domo-DNS"
set internet-service-id 4980739
next
edit "Domo-FTP"
set internet-service-id 4980743
next
edit "Domo-ICMP"
set internet-service-id 4980738
next
edit "Domo-Inbound_Email"
set internet-service-id 4980745
next
edit "Domo-LDAP"
set internet-service-id 4980750
next
edit "Domo-NTP"
set internet-service-id 4980744
next
edit "[Link]"
set internet-service-id 4980760
next
edit "[Link]"
set internet-service-id 4980751
next
edit "Domo-Other"
set internet-service-id 4980736
next
edit "Domo-Outbound_Email"
set internet-service-id 4980740
next
edit "Domo-RTMP"
set internet-service-id 4980752
next
edit "Domo-SSH"
set internet-service-id 4980742
next
edit "Domo-Web"
set internet-service-id 4980737
next
edit "Dropbox-DNS"
set internet-service-id 720899
next
edit "Dropbox-FTP"
set internet-service-id 720903
next
edit "Dropbox-ICMP"
set internet-service-id 720898
next
edit "Dropbox-Inbound_Email"
set internet-service-id 720905
next
edit "Dropbox-LDAP"
set internet-service-id 720910
next
edit "Dropbox-NTP"
set internet-service-id 720904
next
edit "[Link]"
set internet-service-id 720920
next
edit "[Link]"
set internet-service-id 720911
next
edit "Dropbox-Other"
set internet-service-id 720896
next
edit "Dropbox-Outbound_Email"
set internet-service-id 720900
next
edit "Dropbox-RTMP"
set internet-service-id 720912
next
edit "Dropbox-SSH"
set internet-service-id 720902
next
edit "Dropbox-Web"
set internet-service-id 720897
next
edit "Druva-DNS"
set internet-service-id 5177347
next
edit "Druva-FTP"
set internet-service-id 5177351
next
edit "Druva-ICMP"
set internet-service-id 5177346
next
edit "Druva-Inbound_Email"
set internet-service-id 5177353
next
edit "Druva-LDAP"
set internet-service-id 5177358
next
edit "Druva-NTP"
set internet-service-id 5177352
next
edit "[Link]"
set internet-service-id 5177368
next
edit "[Link]"
set internet-service-id 5177359
next
edit "Druva-Other"
set internet-service-id 5177344
next
edit "Druva-Outbound_Email"
set internet-service-id 5177348
next
edit "Druva-RTMP"
set internet-service-id 5177360
next
edit "Druva-SSH"
set internet-service-id 5177350
next
edit "Druva-Web"
set internet-service-id 5177345
next
edit "[Link]"
set internet-service-id 6029426
next
edit "Edgio-CDN"
set internet-service-id 15073417
next
edit "Egnyte-Egnyte"
set internet-service-id 7667846
next
edit "Eventbrite-DNS"
set internet-service-id 4718595
next
edit "Eventbrite-FTP"
set internet-service-id 4718599
next
edit "Eventbrite-ICMP"
set internet-service-id 4718594
next
edit "Eventbrite-Inbound_Email"
set internet-service-id 4718601
next
edit "Eventbrite-LDAP"
set internet-service-id 4718606
next
edit "Eventbrite-NTP"
set internet-service-id 4718600
next
edit "[Link]"
set internet-service-id 4718616
next
edit "[Link]"
set internet-service-id 4718607
next
edit "Eventbrite-Other"
set internet-service-id 4718592
next
edit "Eventbrite-Outbound_Email"
set internet-service-id 4718596
next
edit "Eventbrite-RTMP"
set internet-service-id 4718608
next
edit "Eventbrite-SSH"
set internet-service-id 4718598
next
edit "Eventbrite-Web"
set internet-service-id 4718593
next
edit "Ewon-Talk2M"
set internet-service-id 8781970
next
edit "[Link]"
set internet-service-id 8978580
next
edit "FSecure-FSecure"
set internet-service-id 9830564
next
edit "FactSet-FactSet"
set internet-service-id 12910830
next
edit "Fastly-CDN"
set internet-service-id 11206793
next
edit "[Link]"
set internet-service-id 14483742
next
edit "Five9-Five9"
set internet-service-id 13041904
next
edit "[Link]"
set internet-service-id 11600083
next
edit "Fortinet-DNS"
set internet-service-id 1245187
next
edit "Fortinet-FTP"
set internet-service-id 1245191
next
edit "[Link]"
set internet-service-id 1245477
next
edit "Fortinet-FortiCloud"
set internet-service-id 1245326
next
edit "Fortinet-FortiEDR"
set internet-service-id 1245475
next
edit "Fortinet-FortiGuard"
set internet-service-id 1245324
next
edit "[Link]"
set internet-service-id 1245514
next
edit "[Link]"
set internet-service-id 1245454
next
edit "[Link]"
set internet-service-id 1245325
next
edit "Fortinet-FortiSASE"
set internet-service-id 1245481
next
edit "[Link]"
set internet-service-id 1245432
next
edit "[Link]"
set internet-service-id 1245480
next
edit "Fortinet-ICMP"
set internet-service-id 1245186
next
edit "Fortinet-Inbound_Email"
set internet-service-id 1245193
next
edit "Fortinet-LDAP"
set internet-service-id 1245198
next
edit "Fortinet-NTP"
set internet-service-id 1245192
next
edit "[Link]"
set internet-service-id 1245208
next
edit "[Link]"
set internet-service-id 1245199
next
edit "Fortinet-Other"
set internet-service-id 1245184
next
edit "Fortinet-Outbound_Email"
set internet-service-id 1245188
next
edit "Fortinet-RTMP"
set internet-service-id 1245200
next
edit "Fortinet-SSH"
set internet-service-id 1245190
next
edit "Fortinet-Web"
set internet-service-id 1245185
next
edit "FreshBooks-DNS"
set internet-service-id 5046275
next
edit "FreshBooks-FTP"
set internet-service-id 5046279
next
edit "FreshBooks-ICMP"
set internet-service-id 5046274
next
edit "FreshBooks-Inbound_Email"
set internet-service-id 5046281
next
edit "FreshBooks-LDAP"
set internet-service-id 5046286
next
edit "FreshBooks-NTP"
set internet-service-id 5046280
next
edit "[Link]"
set internet-service-id 5046296
next
edit "[Link]"
set internet-service-id 5046287
next
edit "FreshBooks-Other"
set internet-service-id 5046272
next
edit "FreshBooks-Outbound_Email"
set internet-service-id 5046276
next
edit "FreshBooks-RTMP"
set internet-service-id 5046288
next
edit "FreshBooks-SSH"
set internet-service-id 5046278
next
edit "FreshBooks-Web"
set internet-service-id 5046273
next
edit "Frontline-Frontline"
set internet-service-id 13500665
next
edit "Fuze-Fuze"
set internet-service-id 9371802
next
edit "[Link]-CDN"
set internet-service-id 14811273
next
edit "[Link]"
set internet-service-id 14287132
next
edit "Genesys-PureCloud"
set internet-service-id 9109653
next
edit "[Link]"
set internet-service-id 13107441
next
edit "GitHub-GitHub"
set internet-service-id 3604638
next
edit "GlobalSign-OCSP"
set internet-service-id 9502872
next
edit "GoDaddy-DNS"
set internet-service-id 6946819
next
edit "GoDaddy-FTP"
set internet-service-id 6946823
next
edit "[Link]"
set internet-service-id 6946939
next
edit "GoDaddy-ICMP"
set internet-service-id 6946818
next
edit "GoDaddy-Inbound_Email"
set internet-service-id 6946825
next
edit "GoDaddy-LDAP"
set internet-service-id 6946830
next
edit "GoDaddy-NTP"
set internet-service-id 6946824
next
edit "[Link]"
set internet-service-id 6946840
next
edit "[Link]"
set internet-service-id 6946831
next
edit "GoDaddy-Other"
set internet-service-id 6946816
next
edit "GoDaddy-Outbound_Email"
set internet-service-id 6946820
next
edit "GoDaddy-RTMP"
set internet-service-id 6946832
next
edit "GoDaddy-SSH"
set internet-service-id 6946822
next
edit "GoDaddy-Web"
set internet-service-id 6946817
next
edit "GoodData-DNS"
set internet-service-id 5308419
next
edit "GoodData-FTP"
set internet-service-id 5308423
next
edit "GoodData-ICMP"
set internet-service-id 5308418
next
edit "GoodData-Inbound_Email"
set internet-service-id 5308425
next
edit "GoodData-LDAP"
set internet-service-id 5308430
next
edit "GoodData-NTP"
set internet-service-id 5308424
next
edit "[Link]"
set internet-service-id 5308440
next
edit "[Link]"
set internet-service-id 5308431
next
edit "GoodData-Other"
set internet-service-id 5308416
next
edit "GoodData-Outbound_Email"
set internet-service-id 5308420
next
edit "GoodData-RTMP"
set internet-service-id 5308432
next
edit "GoodData-SSH"
set internet-service-id 5308422
next
edit "GoodData-Web"
set internet-service-id 5308417
next
edit "Google-DNS"
set internet-service-id 65539
next
edit "Google-FTP"
set internet-service-id 65543
next
edit "Google-Gmail"
set internet-service-id 65646
next
edit "[Link]"
set internet-service-id 65643
next
edit "[Link]"
set internet-service-id 65641
next
edit "Google-ICMP"
set internet-service-id 65538
next
edit "Google-Inbound_Email"
set internet-service-id 65545
next
edit "Google-LDAP"
set internet-service-id 65550
next
edit "Google-NTP"
set internet-service-id 65544
next
edit "[Link]"
set internet-service-id 65560
next
edit "[Link]"
set internet-service-id 65551
next
edit "Google-Other"
set internet-service-id 65536
next
edit "Google-Outbound_Email"
set internet-service-id 65540
next
edit "Google-RTMP"
set internet-service-id 65552
next
edit "Google-SSH"
set internet-service-id 65542
next
edit "Google-Web"
set internet-service-id 65537
next
edit "HP-Aruba"
set internet-service-id 1900726
next
edit "HP-DNS"
set internet-service-id 1900547
next
edit "HP-FTP"
set internet-service-id 1900551
next
edit "HP-ICMP"
set internet-service-id 1900546
next
edit "HP-Inbound_Email"
set internet-service-id 1900553
next
edit "HP-LDAP"
set internet-service-id 1900558
next
edit "HP-NTP"
set internet-service-id 1900552
next
edit "[Link]"
set internet-service-id 1900568
next
edit "[Link]"
set internet-service-id 1900559
next
edit "HP-Other"
set internet-service-id 1900544
next
edit "HP-Outbound_Email"
set internet-service-id 1900548
next
edit "HP-RTMP"
set internet-service-id 1900560
next
edit "HP-SSH"
set internet-service-id 1900550
next
edit "HP-Web"
set internet-service-id 1900545
next
edit "[Link]"
set internet-service-id 16646464
next
edit "Hopin-Hopin"
set internet-service-id 11993304
next
edit "[Link]"
set internet-service-id 13631739
next
edit "HubSpot-DNS"
set internet-service-id 3735555
next
edit "HubSpot-FTP"
set internet-service-id 3735559
next
edit "HubSpot-ICMP"
set internet-service-id 3735554
next
edit "HubSpot-Inbound_Email"
set internet-service-id 3735561
next
edit "HubSpot-LDAP"
set internet-service-id 3735566
next
edit "HubSpot-NTP"
set internet-service-id 3735560
next
edit "[Link]"
set internet-service-id 3735576
next
edit "[Link]"
set internet-service-id 3735567
next
edit "HubSpot-Other"
set internet-service-id 3735552
next
edit "HubSpot-Outbound_Email"
set internet-service-id 3735556
next
edit "HubSpot-RTMP"
set internet-service-id 3735568
next
edit "HubSpot-SSH"
set internet-service-id 3735558
next
edit "HubSpot-Web"
set internet-service-id 3735553
next
edit "Hulu-DNS"
set internet-service-id 1048579
next
edit "Hulu-FTP"
set internet-service-id 1048583
next
edit "Hulu-ICMP"
set internet-service-id 1048578
next
edit "Hulu-Inbound_Email"
set internet-service-id 1048585
next
edit "Hulu-LDAP"
set internet-service-id 1048590
next
edit "Hulu-NTP"
set internet-service-id 1048584
next
edit "[Link]"
set internet-service-id 1048600
next
edit "[Link]"
set internet-service-id 1048591
next
edit "Hulu-Other"
set internet-service-id 1048576
next
edit "Hulu-Outbound_Email"
set internet-service-id 1048580
next
edit "Hulu-RTMP"
set internet-service-id 1048592
next
edit "Hulu-SSH"
set internet-service-id 1048582
next
edit "Hulu-Web"
set internet-service-id 1048577
next
edit "[Link]"
set internet-service-id 13369590
next
edit "IBM-DNS"
set internet-service-id 2031619
next
edit "IBM-FTP"
set internet-service-id 2031623
next
edit "[Link]"
set internet-service-id 2031748
next
edit "IBM-ICMP"
set internet-service-id 2031618
next
edit "IBM-Inbound_Email"
set internet-service-id 2031625
next
edit "IBM-LDAP"
set internet-service-id 2031630
next
edit "IBM-NTP"
set internet-service-id 2031624
next
edit "[Link]"
set internet-service-id 2031640
next
edit "[Link]"
set internet-service-id 2031631
next
edit "IBM-Other"
set internet-service-id 2031616
next
edit "IBM-Outbound_Email"
set internet-service-id 2031620
next
edit "IBM-RTMP"
set internet-service-id 2031632
next
edit "IBM-SSH"
set internet-service-id 2031622
next
edit "IBM-Web"
set internet-service-id 2031617
next
edit "INAP-INAP"
set internet-service-id 13238515
next
edit "[Link]"
set internet-service-id 16056629
next
edit "ISLOnline-DNS"
set internet-service-id 7864323
next
edit "ISLOnline-FTP"
set internet-service-id 7864327
next
edit "ISLOnline-ICMP"
set internet-service-id 7864322
next
edit "ISLOnline-Inbound_Email"
set internet-service-id 7864329
next
edit "ISLOnline-LDAP"
set internet-service-id 7864334
next
edit "ISLOnline-NTP"
set internet-service-id 7864328
next
edit "[Link]"
set internet-service-id 7864344
next
edit "[Link]"
set internet-service-id 7864335
next
edit "ISLOnline-Other"
set internet-service-id 7864320
next
edit "ISLOnline-Outbound_Email"
set internet-service-id 7864324
next
edit "ISLOnline-RTMP"
set internet-service-id 7864336
next
edit "ISLOnline-SSH"
set internet-service-id 7864326
next
edit "ISLOnline-Web"
set internet-service-id 7864321
next
edit "[Link]"
set internet-service-id 13172978
next
edit "Infoblox-BloxOne"
set internet-service-id 16515390
next
edit "Infomaniak-SwissTransfer"
set internet-service-id 9306265
next
edit "[Link]"
set internet-service-id 17039688
next
edit "InsideSales-DNS"
set internet-service-id 5570563
next
edit "InsideSales-FTP"
set internet-service-id 5570567
next
edit "InsideSales-ICMP"
set internet-service-id 5570562
next
edit "InsideSales-Inbound_Email"
set internet-service-id 5570569
next
edit "InsideSales-LDAP"
set internet-service-id 5570574
next
edit "InsideSales-NTP"
set internet-service-id 5570568
next
edit "[Link]"
set internet-service-id 5570584
next
edit "[Link]"
set internet-service-id 5570575
next
edit "InsideSales-Other"
set internet-service-id 5570560
next
edit "InsideSales-Outbound_Email"
set internet-service-id 5570564
next
edit "InsideSales-RTMP"
set internet-service-id 5570576
next
edit "InsideSales-SSH"
set internet-service-id 5570566
next
edit "InsideSales-Web"
set internet-service-id 5570561
next
edit "Instart-CDN"
set internet-service-id 8061065
next
edit "InterneTTL-Scanner"
set internet-service-id 12124326
next
edit "[Link]-Scanner"
set internet-service-id 16122022
next
edit "Intuit-DNS"
set internet-service-id 4259843
next
edit "Intuit-FTP"
set internet-service-id 4259847
next
edit "Intuit-ICMP"
set internet-service-id 4259842
next
edit "Intuit-Inbound_Email"
set internet-service-id 4259849
next
edit "Intuit-LDAP"
set internet-service-id 4259854
next
edit "Intuit-NTP"
set internet-service-id 4259848
next
edit "[Link]"
set internet-service-id 4259864
next
edit "[Link]"
set internet-service-id 4259855
next
edit "Intuit-Other"
set internet-service-id 4259840
next
edit "Intuit-Outbound_Email"
set internet-service-id 4259844
next
edit "Intuit-RTMP"
set internet-service-id 4259856
next
edit "Intuit-SSH"
set internet-service-id 4259846
next
edit "Intuit-Web"
set internet-service-id 4259841
next
edit "[Link]"
set internet-service-id 11469009
next
edit "[Link]"
set internet-service-id 13959442
next
edit "[Link]"
set internet-service-id 9896101
next
edit "Kaspersky-DNS"
set internet-service-id 1310723
next
edit "Kaspersky-FTP"
set internet-service-id 1310727
next
edit "Kaspersky-ICMP"
set internet-service-id 1310722
next
edit "Kaspersky-Inbound_Email"
set internet-service-id 1310729
next
edit "Kaspersky-LDAP"
set internet-service-id 1310734
next
edit "Kaspersky-NTP"
set internet-service-id 1310728
next
edit "[Link]"
set internet-service-id 1310744
next
edit "[Link]"
set internet-service-id 1310735
next
edit "Kaspersky-Other"
set internet-service-id 1310720
next
edit "Kaspersky-Outbound_Email"
set internet-service-id 1310724
next
edit "Kaspersky-RTMP"
set internet-service-id 1310736
next
edit "Kaspersky-SSH"
set internet-service-id 1310726
next
edit "Kaspersky-Web"
set internet-service-id 1310721
next
edit "[Link]"
set internet-service-id 15401258
next
edit "LeakIX-Scanner"
set internet-service-id 16449702
next
edit "[Link]"
set internet-service-id 7405697
next
edit "LinkedIn-DNS"
set internet-service-id 851971
next
edit "LinkedIn-FTP"
set internet-service-id 851975
next
edit "LinkedIn-ICMP"
set internet-service-id 851970
next
edit "LinkedIn-Inbound_Email"
set internet-service-id 851977
next
edit "LinkedIn-LDAP"
set internet-service-id 851982
next
edit "LinkedIn-NTP"
set internet-service-id 851976
next
edit "[Link]"
set internet-service-id 851992
next
edit "[Link]"
set internet-service-id 851983
next
edit "LinkedIn-Other"
set internet-service-id 851968
next
edit "LinkedIn-Outbound_Email"
set internet-service-id 851972
next
edit "LinkedIn-RTMP"
set internet-service-id 851984
next
edit "LinkedIn-SSH"
set internet-service-id 851974
next
edit "LinkedIn-Web"
set internet-service-id 851969
next
edit "LogMeIn-DNS"
set internet-service-id 1179651
next
edit "LogMeIn-FTP"
set internet-service-id 1179655
next
edit "[Link]"
set internet-service-id 1179767
next
edit "LogMeIn-ICMP"
set internet-service-id 1179650
next
edit "LogMeIn-Inbound_Email"
set internet-service-id 1179657
next
edit "LogMeIn-LDAP"
set internet-service-id 1179662
next
edit "LogMeIn-NTP"
set internet-service-id 1179656
next
edit "[Link]"
set internet-service-id 1179672
next
edit "[Link]"
set internet-service-id 1179663
next
edit "LogMeIn-Other"
set internet-service-id 1179648
next
edit "LogMeIn-Outbound_Email"
set internet-service-id 1179652
next
edit "LogMeIn-RTMP"
set internet-service-id 1179664
next
edit "LogMeIn-SSH"
set internet-service-id 1179654
next
edit "LogMeIn-Web"
set internet-service-id 1179649
next
edit "[Link]"
set internet-service-id 11337935
next
edit "Marketo-DNS"
set internet-service-id 4325379
next
edit "Marketo-FTP"
set internet-service-id 4325383
next
edit "Marketo-ICMP"
set internet-service-id 4325378
next
edit "Marketo-Inbound_Email"
set internet-service-id 4325385
next
edit "Marketo-LDAP"
set internet-service-id 4325390
next
edit "Marketo-NTP"
set internet-service-id 4325384
next
edit "[Link]"
set internet-service-id 4325400
next
edit "[Link]"
set internet-service-id 4325391
next
edit "Marketo-Other"
set internet-service-id 4325376
next
edit "Marketo-Outbound_Email"
set internet-service-id 4325380
next
edit "Marketo-RTMP"
set internet-service-id 4325392
next
edit "Marketo-SSH"
set internet-service-id 4325382
next
edit "Marketo-Web"
set internet-service-id 4325377
next
edit "Matrix42-FastViewer"
set internet-service-id 14876962
next
edit "McAfee-DNS"
set internet-service-id 1376259
next
edit "McAfee-FTP"
set internet-service-id 1376263
next
edit "McAfee-ICMP"
set internet-service-id 1376258
next
edit "McAfee-Inbound_Email"
set internet-service-id 1376265
next
edit "McAfee-LDAP"
set internet-service-id 1376270
next
edit "McAfee-NTP"
set internet-service-id 1376264
next
edit "[Link]"
set internet-service-id 1376280
next
edit "[Link]"
set internet-service-id 1376271
next
edit "McAfee-Other"
set internet-service-id 1376256
next
edit "McAfee-Outbound_Email"
set internet-service-id 1376260
next
edit "McAfee-RTMP"
set internet-service-id 1376272
next
edit "McAfee-SSH"
set internet-service-id 1376262
next
edit "McAfee-Web"
set internet-service-id 1376257
next
edit "MediaFire-DNS"
set internet-service-id 11796483
next
edit "MediaFire-FTP"
set internet-service-id 11796487
next
edit "MediaFire-ICMP"
set internet-service-id 11796482
next
edit "MediaFire-Inbound_Email"
set internet-service-id 11796489
next
edit "MediaFire-LDAP"
set internet-service-id 11796494
next
edit "MediaFire-NTP"
set internet-service-id 11796488
next
edit "[Link]"
set internet-service-id 11796504
next
edit "[Link]"
set internet-service-id 11796495
next
edit "MediaFire-Other"
set internet-service-id 11796480
next
edit "MediaFire-Outbound_Email"
set internet-service-id 11796484
next
edit "MediaFire-RTMP"
set internet-service-id 11796496
next
edit "MediaFire-SSH"
set internet-service-id 11796486
next
edit "MediaFire-Web"
set internet-service-id 11796481
next
edit "Medianova-CDN"
set internet-service-id 15466633
next
edit "Meta-DNS"
set internet-service-id 131075
next
edit "Meta-FTP"
set internet-service-id 131079
next
edit "Meta-ICMP"
set internet-service-id 131074
next
edit "Meta-Inbound_Email"
set internet-service-id 131081
next
edit "Meta-Instagram"
set internet-service-id 131189
next
edit "Meta-LDAP"
set internet-service-id 131086
next
edit "Meta-NTP"
set internet-service-id 131080
next
edit "[Link]"
set internet-service-id 131096
next
edit "[Link]"
set internet-service-id 131087
next
edit "Meta-Other"
set internet-service-id 131072
next
edit "Meta-Outbound_Email"
set internet-service-id 131076
next
edit "Meta-RTMP"
set internet-service-id 131088
next
edit "Meta-SSH"
set internet-service-id 131078
next
edit "Meta-Web"
set internet-service-id 131073
next
edit "Meta-Whatsapp"
set internet-service-id 131184
next
edit "Microsoft-Azure"
set internet-service-id 327786
next
edit "[Link]"
set internet-service-id 327960
next
edit "[Link]"
set internet-service-id 327980
next
edit "[Link]"
set internet-service-id 327961
next
edit "[Link]"
set internet-service-id 327993
next
edit "[Link]"
set internet-service-id 328009
next
edit "[Link]"
set internet-service-id 327958
next
edit "[Link]"
set internet-service-id 327963
next
edit "[Link]"
set internet-service-id 327959
next
edit "[Link]"
set internet-service-id 328007
next
edit "[Link]"
set internet-service-id 327962
next
edit "[Link]"
set internet-service-id 327788
next
edit "Microsoft-DNS"
set internet-service-id 327683
next
edit "Microsoft-Dynamics"
set internet-service-id 327837
next
edit "Microsoft-FTP"
set internet-service-id 327687
next
edit "Microsoft-ICMP"
set internet-service-id 327682
next
edit "Microsoft-Inbound_Email"
set internet-service-id 327689
next
edit "Microsoft-Intune"
set internet-service-id 327886
next
edit "Microsoft-LDAP"
set internet-service-id 327694
next
edit "[Link]"
set internet-service-id 327793
next
edit "Microsoft-NTP"
set internet-service-id 327688
next
edit "[Link]"
set internet-service-id 327704
next
edit "[Link]"
set internet-service-id 327695
next
edit "Microsoft-Office365"
set internet-service-id 327782
next
edit "[Link]"
set internet-service-id 327880
next
edit "[Link]"
set internet-service-id 327903
next
edit "[Link]"
set internet-service-id 327902
next
edit "[Link]"
set internet-service-id 327917
next
edit "Microsoft-Other"
set internet-service-id 327680
next
edit "Microsoft-Outbound_Email"
set internet-service-id 327684
next
edit "Microsoft-Outlook"
set internet-service-id 327791
next
edit "Microsoft-RTMP"
set internet-service-id 327696
next
edit "Microsoft-SSH"
set internet-service-id 327686
next
edit "Microsoft-Skype_Teams"
set internet-service-id 327781
next
edit "[Link]"
set internet-service-id 327992
next
edit "[Link]"
set internet-service-id 327991
next
edit "Microsoft-WNS"
set internet-service-id 327839
next
edit "Microsoft-Web"
set internet-service-id 327681
next
edit "Mimecast-Mimecast"
set internet-service-id 11731157
next
edit "Mozilla-DNS"
set internet-service-id 1769475
next
edit "Mozilla-FTP"
set internet-service-id 1769479
next
edit "Mozilla-ICMP"
set internet-service-id 1769474
next
edit "Mozilla-Inbound_Email"
set internet-service-id 1769481
next
edit "Mozilla-LDAP"
set internet-service-id 1769486
next
edit "Mozilla-NTP"
set internet-service-id 1769480
next
edit "[Link]"
set internet-service-id 1769496
next
edit "[Link]"
set internet-service-id 1769487
next
edit "Mozilla-Other"
set internet-service-id 1769472
next
edit "Mozilla-Outbound_Email"
set internet-service-id 1769476
next
edit "Mozilla-RTMP"
set internet-service-id 1769488
next
edit "Mozilla-SSH"
set internet-service-id 1769478
next
edit "Mozilla-Web"
set internet-service-id 1769473
next
edit "MuleSoft-DNS"
set internet-service-id 4587523
next
edit "MuleSoft-FTP"
set internet-service-id 4587527
next
edit "MuleSoft-ICMP"
set internet-service-id 4587522
next
edit "MuleSoft-Inbound_Email"
set internet-service-id 4587529
next
edit "MuleSoft-LDAP"
set internet-service-id 4587534
next
edit "MuleSoft-NTP"
set internet-service-id 4587528
next
edit "[Link]"
set internet-service-id 4587544
next
edit "[Link]"
set internet-service-id 4587535
next
edit "MuleSoft-Other"
set internet-service-id 4587520
next
edit "MuleSoft-Outbound_Email"
set internet-service-id 4587524
next
edit "MuleSoft-RTMP"
set internet-service-id 4587536
next
edit "MuleSoft-SSH"
set internet-service-id 4587526
next
edit "MuleSoft-Web"
set internet-service-id 4587521
next
edit "Myspace-DNS"
set internet-service-id 2752515
next
edit "Myspace-FTP"
set internet-service-id 2752519
next
edit "Myspace-ICMP"
set internet-service-id 2752514
next
edit "Myspace-Inbound_Email"
set internet-service-id 2752521
next
edit "Myspace-LDAP"
set internet-service-id 2752526
next
edit "Myspace-NTP"
set internet-service-id 2752520
next
edit "[Link]"
set internet-service-id 2752536
next
edit "[Link]"
set internet-service-id 2752527
next
edit "Myspace-Other"
set internet-service-id 2752512
next
edit "Myspace-Outbound_Email"
set internet-service-id 2752516
next
edit "Myspace-RTMP"
set internet-service-id 2752528
next
edit "Myspace-SSH"
set internet-service-id 2752518
next
edit "Myspace-Web"
set internet-service-id 2752513
next
edit "NIST-ITS"
set internet-service-id 11403472
next
edit "Naver-Line"
set internet-service-id 10617015
next
edit "[Link]"
set internet-service-id 15532331
next
edit "NetScout-Scanner"
set internet-service-id 14090406
next
edit "Netflix-DNS"
set internet-service-id 786435
next
edit "Netflix-FTP"
set internet-service-id 786439
next
edit "Netflix-ICMP"
set internet-service-id 786434
next
edit "Netflix-Inbound_Email"
set internet-service-id 786441
next
edit "Netflix-LDAP"
set internet-service-id 786446
next
edit "Netflix-NTP"
set internet-service-id 786440
next
edit "[Link]"
set internet-service-id 786456
next
edit "[Link]"
set internet-service-id 786447
next
edit "Netflix-Other"
set internet-service-id 786432
next
edit "Netflix-Outbound_Email"
set internet-service-id 786436
next
edit "Netflix-RTMP"
set internet-service-id 786448
next
edit "Netflix-SSH"
set internet-service-id 786438
next
edit "Netflix-Web"
set internet-service-id 786433
next
edit "[Link]"
set internet-service-id 12255452
next
edit "[Link]"
set internet-service-id 11272397
next
edit "NewRelic-DNS"
set internet-service-id 4849667
next
edit "NewRelic-FTP"
set internet-service-id 4849671
next
edit "NewRelic-ICMP"
set internet-service-id 4849666
next
edit "NewRelic-Inbound_Email"
set internet-service-id 4849673
next
edit "NewRelic-LDAP"
set internet-service-id 4849678
next
edit "NewRelic-NTP"
set internet-service-id 4849672
next
edit "[Link]"
set internet-service-id 4849688
next
edit "[Link]"
set internet-service-id 4849679
next
edit "NewRelic-Other"
set internet-service-id 4849664
next
edit "NewRelic-Outbound_Email"
set internet-service-id 4849668
next
edit "NewRelic-RTMP"
set internet-service-id 4849680
next
edit "NewRelic-SSH"
set internet-service-id 4849670
next
edit "[Link]"
set internet-service-id 4849970
next
edit "NewRelic-Web"
set internet-service-id 4849665
next
edit "NextDNS-NextDNS"
set internet-service-id 11141324
next
edit "Nice-CXone"
set internet-service-id 16580927
next
edit "[Link]"
set internet-service-id 13435127
next
edit "[Link]"
set internet-service-id 8847507
next
edit "OVHcloud-OVHcloud"
set internet-service-id 13828367
next
edit "[Link]"
set internet-service-id 13697277
next
edit "Okta-DNS"
set internet-service-id 7471107
next
edit "Okta-FTP"
set internet-service-id 7471111
next
edit "Okta-ICMP"
set internet-service-id 7471106
next
edit "Okta-Inbound_Email"
set internet-service-id 7471113
next
edit "Okta-LDAP"
set internet-service-id 7471118
next
edit "Okta-NTP"
set internet-service-id 7471112
next
edit "[Link]"
set internet-service-id 7471128
next
edit "[Link]"
set internet-service-id 7471119
next
edit "Okta-Okta"
set internet-service-id 7471307
next
edit "Okta-Other"
set internet-service-id 7471104
next
edit "Okta-Outbound_Email"
set internet-service-id 7471108
next
edit "Okta-RTMP"
set internet-service-id 7471120
next
edit "Okta-SSH"
set internet-service-id 7471110
next
edit "Okta-Web"
set internet-service-id 7471105
next
edit "OneLogin-OneLogin"
set internet-service-id 16253244
next
edit "[Link]"
set internet-service-id 12517602
next
edit "Oracle-DNS"
set internet-service-id 983043
next
edit "Oracle-FTP"
set internet-service-id 983047
next
edit "Oracle-ICMP"
set internet-service-id 983042
next
edit "Oracle-Inbound_Email"
set internet-service-id 983049
next
edit "Oracle-LDAP"
set internet-service-id 983054
next
edit "Oracle-NTP"
set internet-service-id 983048
next
edit "[Link]"
set internet-service-id 983064
next
edit "[Link]"
set internet-service-id 983055
next
edit "[Link]"
set internet-service-id 983171
next
edit "Oracle-Other"
set internet-service-id 983040
next
edit "Oracle-Outbound_Email"
set internet-service-id 983044
next
edit "Oracle-RTMP"
set internet-service-id 983056
next
edit "Oracle-SSH"
set internet-service-id 983046
next
edit "Oracle-Web"
set internet-service-id 983041
next
edit "[Link]"
set internet-service-id 8716432
next
edit "Pandora-Pandora"
set internet-service-id 11862230
next
edit "PayPal-DNS"
set internet-service-id 524291
next
edit "PayPal-FTP"
set internet-service-id 524295
next
edit "PayPal-ICMP"
set internet-service-id 524290
next
edit "PayPal-Inbound_Email"
set internet-service-id 524297
next
edit "PayPal-LDAP"
set internet-service-id 524302
next
edit "PayPal-NTP"
set internet-service-id 524296
next
edit "[Link]"
set internet-service-id 524312
next
edit "[Link]"
set internet-service-id 524303
next
edit "PayPal-Other"
set internet-service-id 524288
next
edit "PayPal-Outbound_Email"
set internet-service-id 524292
next
edit "PayPal-RTMP"
set internet-service-id 524304
next
edit "PayPal-SSH"
set internet-service-id 524294
next
edit "PayPal-Web"
set internet-service-id 524289
next
edit "Paychex-DNS"
set internet-service-id 4784131
next
edit "Paychex-FTP"
set internet-service-id 4784135
next
edit "Paychex-ICMP"
set internet-service-id 4784130
next
edit "Paychex-Inbound_Email"
set internet-service-id 4784137
next
edit "Paychex-LDAP"
set internet-service-id 4784142
next
edit "Paychex-NTP"
set internet-service-id 4784136
next
edit "[Link]"
set internet-service-id 4784152
next
edit "[Link]"
set internet-service-id 4784143
next
edit "Paychex-Other"
set internet-service-id 4784128
next
edit "Paychex-Outbound_Email"
set internet-service-id 4784132
next
edit "Paychex-RTMP"
set internet-service-id 4784144
next
edit "Paychex-SSH"
set internet-service-id 4784134
next
edit "Paychex-Web"
set internet-service-id 4784129
next
edit "Paylocity-Paylocity"
set internet-service-id 15204646
next
edit "[Link]"
set internet-service-id 16187706
next
edit "[Link]"
set internet-service-id 6619256
next
edit "[Link]"
set internet-service-id 3211457
next
edit "Pingdom-DNS"
set internet-service-id 8192003
next
edit "Pingdom-FTP"
set internet-service-id 8192007
next
edit "Pingdom-ICMP"
set internet-service-id 8192002
next
edit "Pingdom-Inbound_Email"
set internet-service-id 8192009
next
edit "Pingdom-LDAP"
set internet-service-id 8192014
next
edit "Pingdom-NTP"
set internet-service-id 8192008
next
edit "[Link]"
set internet-service-id 8192024
next
edit "[Link]"
set internet-service-id 8192015
next
edit "Pingdom-Other"
set internet-service-id 8192000
next
edit "Pingdom-Outbound_Email"
set internet-service-id 8192004
next
edit "Pingdom-RTMP"
set internet-service-id 8192016
next
edit "Pingdom-SSH"
set internet-service-id 8192006
next
edit "Pingdom-Web"
set internet-service-id 8192001
next
edit "Pinterest-DNS"
set internet-service-id 1114115
next
edit "Pinterest-FTP"
set internet-service-id 1114119
next
edit "Pinterest-ICMP"
set internet-service-id 1114114
next
edit "Pinterest-Inbound_Email"
set internet-service-id 1114121
next
edit "Pinterest-LDAP"
set internet-service-id 1114126
next
edit "Pinterest-NTP"
set internet-service-id 1114120
next
edit "[Link]"
set internet-service-id 1114136
next
edit "[Link]"
set internet-service-id 1114127
next
edit "Pinterest-Other"
set internet-service-id 1114112
next
edit "Pinterest-Outbound_Email"
set internet-service-id 1114116
next
edit "Pinterest-RTMP"
set internet-service-id 1114128
next
edit "Pinterest-SSH"
set internet-service-id 1114118
next
edit "Pinterest-Web"
set internet-service-id 1114113
next
edit "[Link]"
set internet-service-id 12714216
next
edit "[Link]"
set internet-service-id 10944700
next
edit "[Link]"
set internet-service-id 3014850
next
edit "[Link]"
set internet-service-id 10813626
next
edit "[Link]"
set internet-service-id 15270183
next
edit "Quovadisglobal-DNS"
set internet-service-id 8323075
next
edit "Quovadisglobal-FTP"
set internet-service-id 8323079
next
edit "Quovadisglobal-ICMP"
set internet-service-id 8323074
next
edit "Quovadisglobal-Inbound_Email"
set internet-service-id 8323081
next
edit "Quovadisglobal-LDAP"
set internet-service-id 8323086
next
edit "Quovadisglobal-NTP"
set internet-service-id 8323080
next
edit "[Link]"
set internet-service-id 8323096
next
edit "[Link]"
set internet-service-id 8323087
next
edit "Quovadisglobal-Other"
set internet-service-id 8323072
next
edit "Quovadisglobal-Outbound_Email"
set internet-service-id 8323076
next
edit "Quovadisglobal-RTMP"
set internet-service-id 8323088
next
edit "Quovadisglobal-SSH"
set internet-service-id 8323078
next
edit "Quovadisglobal-Web"
set internet-service-id 8323073
next
edit "Rackspace-CDN"
set internet-service-id 7995529
next
edit "Rapid7-DNS"
set internet-service-id 5898243
next
edit "Rapid7-FTP"
set internet-service-id 5898247
next
edit "Rapid7-ICMP"
set internet-service-id 5898242
next
edit "Rapid7-Inbound_Email"
set internet-service-id 5898249
next
edit "Rapid7-LDAP"
set internet-service-id 5898254
next
edit "Rapid7-NTP"
set internet-service-id 5898248
next
edit "[Link]"
set internet-service-id 5898264
next
edit "[Link]"
set internet-service-id 5898255
next
edit "Rapid7-Other"
set internet-service-id 5898240
next
edit "Rapid7-Outbound_Email"
set internet-service-id 5898244
next
edit "Rapid7-RTMP"
set internet-service-id 5898256
next
edit "Rapid7-SSH"
set internet-service-id 5898246
next
edit "Rapid7-Web"
set internet-service-id 5898241
next
edit "RealNetworks-DNS"
set internet-service-id 1638403
next
edit "RealNetworks-FTP"
set internet-service-id 1638407
next
edit "RealNetworks-ICMP"
set internet-service-id 1638402
next
edit "RealNetworks-Inbound_Email"
set internet-service-id 1638409
next
edit "RealNetworks-LDAP"
set internet-service-id 1638414
next
edit "RealNetworks-NTP"
set internet-service-id 1638408
next
edit "[Link]"
set internet-service-id 1638424
next
edit "[Link]"
set internet-service-id 1638415
next
edit "RealNetworks-Other"
set internet-service-id 1638400
next
edit "RealNetworks-Outbound_Email"
set internet-service-id 1638404
next
edit "RealNetworks-RTMP"
set internet-service-id 1638416
next
edit "RealNetworks-SSH"
set internet-service-id 1638406
next
edit "RealNetworks-Web"
set internet-service-id 1638401
next
edit "Recyber-Scanner"
set internet-service-id 14155942
next
edit "[Link]"
set internet-service-id 12058842
next
edit "Redhat-DNS"
set internet-service-id 2359299
next
edit "Redhat-FTP"
set internet-service-id 2359303
next
edit "Redhat-ICMP"
set internet-service-id 2359298
next
edit "Redhat-Inbound_Email"
set internet-service-id 2359305
next
edit "Redhat-LDAP"
set internet-service-id 2359310
next
edit "Redhat-NTP"
set internet-service-id 2359304
next
edit "[Link]"
set internet-service-id 2359320
next
edit "[Link]"
set internet-service-id 2359311
next
edit "Redhat-Other"
set internet-service-id 2359296
next
edit "Redhat-Outbound_Email"
set internet-service-id 2359300
next
edit "Redhat-RTMP"
set internet-service-id 2359312
next
edit "Redhat-SSH"
set internet-service-id 2359302
next
edit "Redhat-Web"
set internet-service-id 2359297
next
edit "[Link]"
set internet-service-id 15794481
next
edit "RingCentral-RingCentral"
set internet-service-id 9765027
next
edit "SAP-DNS"
set internet-service-id 6291459
next
edit "SAP-FTP"
set internet-service-id 6291463
next
edit "SAP-HANA"
set internet-service-id 6291612
next
edit "SAP-ICMP"
set internet-service-id 6291458
next
edit "SAP-Inbound_Email"
set internet-service-id 6291465
next
edit "SAP-LDAP"
set internet-service-id 6291470
next
edit "SAP-NTP"
set internet-service-id 6291464
next
edit "[Link]"
set internet-service-id 6291480
next
edit "[Link]"
set internet-service-id 6291471
next
edit "SAP-Other"
set internet-service-id 6291456
next
edit "SAP-Outbound_Email"
set internet-service-id 6291460
next
edit "SAP-RTMP"
set internet-service-id 6291472
next
edit "[Link]"
set internet-service-id 6291766
next
edit "SAP-SSH"
set internet-service-id 6291462
next
edit "SAP-SuccessFactors"
set internet-service-id 6291618
next
edit "SAP-Web"
set internet-service-id 6291457
next
edit "Salesforce-DNS"
set internet-service-id 655363
next
edit "[Link]"
set internet-service-id 655530
next
edit "Salesforce-FTP"
set internet-service-id 655367
next
edit "Salesforce-ICMP"
set internet-service-id 655362
next
edit "Salesforce-Inbound_Email"
set internet-service-id 655369
next
edit "Salesforce-LDAP"
set internet-service-id 655374
next
edit "Salesforce-NTP"
set internet-service-id 655368
next
edit "[Link]"
set internet-service-id 655384
next
edit "[Link]"
set internet-service-id 655375
next
edit "Salesforce-Other"
set internet-service-id 655360
next
edit "Salesforce-Outbound_Email"
set internet-service-id 655364
next
edit "Salesforce-RTMP"
set internet-service-id 655376
next
edit "Salesforce-SSH"
set internet-service-id 655366
next
edit "Salesforce-Web"
set internet-service-id 655361
next
edit "Sectigo-Sectigo"
set internet-service-id 12583141
next
edit "[Link]"
set internet-service-id 7274623
next
edit "[Link]"
set internet-service-id 13893905
next
edit "ServiceMax-DNS"
set internet-service-id 5636099
next
edit "ServiceMax-FTP"
set internet-service-id 5636103
next
edit "ServiceMax-ICMP"
set internet-service-id 5636098
next
edit "ServiceMax-Inbound_Email"
set internet-service-id 5636105
next
edit "ServiceMax-LDAP"
set internet-service-id 5636110
next
edit "ServiceMax-NTP"
set internet-service-id 5636104
next
edit "[Link]"
set internet-service-id 5636120
next
edit "[Link]"
set internet-service-id 5636111
next
edit "ServiceMax-Other"
set internet-service-id 5636096
next
edit "ServiceMax-Outbound_Email"
set internet-service-id 5636100
next
edit "ServiceMax-RTMP"
set internet-service-id 5636112
next
edit "ServiceMax-SSH"
set internet-service-id 5636102
next
edit "ServiceMax-Web"
set internet-service-id 5636097
next
edit "ServiceNow-DNS"
set internet-service-id 3538947
next
edit "ServiceNow-FTP"
set internet-service-id 3538951
next
edit "ServiceNow-ICMP"
set internet-service-id 3538946
next
edit "ServiceNow-Inbound_Email"
set internet-service-id 3538953
next
edit "ServiceNow-LDAP"
set internet-service-id 3538958
next
edit "ServiceNow-NTP"
set internet-service-id 3538952
next
edit "[Link]"
set internet-service-id 3538968
next
edit "[Link]"
set internet-service-id 3538959
next
edit "ServiceNow-Other"
set internet-service-id 3538944
next
edit "ServiceNow-Outbound_Email"
set internet-service-id 3538948
next
edit "ServiceNow-RTMP"
set internet-service-id 3538960
next
edit "ServiceNow-SSH"
set internet-service-id 3538950
next
edit "ServiceNow-Web"
set internet-service-id 3538945
next
edit "Shadowserver-Scanner"
set internet-service-id 16318630
next
edit "Shodan-Scanner"
set internet-service-id 9961638
next
edit "Shopify-DNS"
set internet-service-id 4521987
next
edit "Shopify-FTP"
set internet-service-id 4521991
next
edit "Shopify-ICMP"
set internet-service-id 4521986
next
edit "Shopify-Inbound_Email"
set internet-service-id 4521993
next
edit "Shopify-LDAP"
set internet-service-id 4521998
next
edit "Shopify-NTP"
set internet-service-id 4521992
next
edit "[Link]"
set internet-service-id 4522008
next
edit "[Link]"
set internet-service-id 4521999
next
edit "Shopify-Other"
set internet-service-id 4521984
next
edit "Shopify-Outbound_Email"
set internet-service-id 4521988
next
edit "Shopify-RTMP"
set internet-service-id 4522000
next
edit "Shopify-SSH"
set internet-service-id 4521990
next
edit "Shopify-Shopify"
set internet-service-id 4522162
next
edit "Shopify-Web"
set internet-service-id 4521985
next
edit "Sinch-Mailgun"
set internet-service-id 16908613
next
edit "SiriusXM-SiriusXM"
set internet-service-id 11927767
next
edit "Skyfii-DNS"
set internet-service-id 8519683
next
edit "Skyfii-FTP"
set internet-service-id 8519687
next
edit "Skyfii-ICMP"
set internet-service-id 8519682
next
edit "Skyfii-Inbound_Email"
set internet-service-id 8519689
next
edit "Skyfii-LDAP"
set internet-service-id 8519694
next
edit "Skyfii-NTP"
set internet-service-id 8519688
next
edit "[Link]"
set internet-service-id 8519704
next
edit "[Link]"
set internet-service-id 8519695
next
edit "Skyfii-Other"
set internet-service-id 8519680
next
edit "Skyfii-Outbound_Email"
set internet-service-id 8519684
next
edit "Skyfii-RTMP"
set internet-service-id 8519696
next
edit "Skyfii-SSH"
set internet-service-id 8519686
next
edit "Skyfii-Web"
set internet-service-id 8519681
next
edit "[Link]"
set internet-service-id 17105227
next
edit "Slack-DNS"
set internet-service-id 6094851
next
edit "Slack-FTP"
set internet-service-id 6094855
next
edit "Slack-ICMP"
set internet-service-id 6094850
next
edit "Slack-Inbound_Email"
set internet-service-id 6094857
next
edit "Slack-LDAP"
set internet-service-id 6094862
next
edit "Slack-NTP"
set internet-service-id 6094856
next
edit "[Link]"
set internet-service-id 6094872
next
edit "[Link]"
set internet-service-id 6094863
next
edit "Slack-Other"
set internet-service-id 6094848
next
edit "Slack-Outbound_Email"
set internet-service-id 6094852
next
edit "Slack-RTMP"
set internet-service-id 6094864
next
edit "Slack-SSH"
set internet-service-id 6094854
next
edit "Slack-Slack"
set internet-service-id 6095024
next
edit "Slack-Web"
set internet-service-id 6094849
next
edit "Snap-Snapchat"
set internet-service-id 6357108
next
edit "[Link]"
set internet-service-id 10289326
next
edit "[Link]"
set internet-service-id 10289379
next
edit "SolarWinds-SpamExperts"
set internet-service-id 10289323
next
edit "[Link]"
set internet-service-id 9633952
next
edit "Sophos-DNS"
set internet-service-id 6488067
next
edit "Sophos-FTP"
set internet-service-id 6488071
next
edit "Sophos-ICMP"
set internet-service-id 6488066
next
edit "Sophos-Inbound_Email"
set internet-service-id 6488073
next
edit "Sophos-LDAP"
set internet-service-id 6488078
next
edit "Sophos-NTP"
set internet-service-id 6488072
next
edit "[Link]"
set internet-service-id 6488088
next
edit "[Link]"
set internet-service-id 6488079
next
edit "Sophos-Other"
set internet-service-id 6488064
next
edit "Sophos-Outbound_Email"
set internet-service-id 6488068
next
edit "Sophos-RTMP"
set internet-service-id 6488080
next
edit "Sophos-SSH"
set internet-service-id 6488070
next
edit "Sophos-Web"
set internet-service-id 6488065
next
edit "SpaceX-Starlink"
set internet-service-id 16974150
next
edit "[Link]"
set internet-service-id 3145920
next
edit "Splashtop-Splashtop"
set internet-service-id 8388751
next
edit "Splunk-DNS"
set internet-service-id 4915203
next
edit "Splunk-FTP"
set internet-service-id 4915207
next
edit "Splunk-ICMP"
set internet-service-id 4915202
next
edit "Splunk-Inbound_Email"
set internet-service-id 4915209
next
edit "Splunk-LDAP"
set internet-service-id 4915214
next
edit "Splunk-NTP"
set internet-service-id 4915208
next
edit "[Link]"
set internet-service-id 4915224
next
edit "[Link]"
set internet-service-id 4915215
next
edit "Splunk-Other"
set internet-service-id 4915200
next
edit "Splunk-Outbound_Email"
set internet-service-id 4915204
next
edit "Splunk-RTMP"
set internet-service-id 4915216
next
edit "Splunk-SSH"
set internet-service-id 4915206
next
edit "Splunk-Web"
set internet-service-id 4915201
next
edit "Spotify-Spotify"
set internet-service-id 11075786
next
edit "StackPath-CDN"
set internet-service-id 15007881
next
edit "[Link]"
set internet-service-id 17170764
next
edit "Stretchoid-Scanner"
set internet-service-id 10879142
next
edit "Stripe-Stripe"
set internet-service-id 14024979
next
edit "SurveyMonkey-DNS"
set internet-service-id 5373955
next
edit "SurveyMonkey-FTP"
set internet-service-id 5373959
next
edit "SurveyMonkey-ICMP"
set internet-service-id 5373954
next
edit "SurveyMonkey-Inbound_Email"
set internet-service-id 5373961
next
edit "SurveyMonkey-LDAP"
set internet-service-id 5373966
next
edit "SurveyMonkey-NTP"
set internet-service-id 5373960
next
edit "[Link]"
set internet-service-id 5373976
next
edit "[Link]"
set internet-service-id 5373967
next
edit "SurveyMonkey-Other"
set internet-service-id 5373952
next
edit "SurveyMonkey-Outbound_Email"
set internet-service-id 5373956
next
edit "SurveyMonkey-RTMP"
set internet-service-id 5373968
next
edit "SurveyMonkey-SSH"
set internet-service-id 5373958
next
edit "SurveyMonkey-Web"
set internet-service-id 5373953
next
edit "Symantec-DNS"
set internet-service-id 1441795
next
edit "Symantec-FTP"
set internet-service-id 1441799
next
edit "Symantec-ICMP"
set internet-service-id 1441794
next
edit "Symantec-Inbound_Email"
set internet-service-id 1441801
next
edit "Symantec-LDAP"
set internet-service-id 1441806
next
edit "Symantec-NTP"
set internet-service-id 1441800
next
edit "[Link]"
set internet-service-id 1441816
next
edit "[Link]"
set internet-service-id 1441807
next
edit "Symantec-Other"
set internet-service-id 1441792
next
edit "Symantec-Outbound_Email"
set internet-service-id 1441796
next
edit "Symantec-RTMP"
set internet-service-id 1441808
next
edit "Symantec-SSH"
set internet-service-id 1441798
next
edit "[Link]"
set internet-service-id 1441922
next
edit "Symantec-Web"
set internet-service-id 1441793
next
edit "Tableau-DNS"
set internet-service-id 5111811
next
edit "Tableau-FTP"
set internet-service-id 5111815
next
edit "Tableau-ICMP"
set internet-service-id 5111810
next
edit "Tableau-Inbound_Email"
set internet-service-id 5111817
next
edit "Tableau-LDAP"
set internet-service-id 5111822
next
edit "Tableau-NTP"
set internet-service-id 5111816
next
edit "[Link]"
set internet-service-id 5111832
next
edit "[Link]"
set internet-service-id 5111823
next
edit "Tableau-Other"
set internet-service-id 5111808
next
edit "Tableau-Outbound_Email"
set internet-service-id 5111812
next
edit "Tableau-RTMP"
set internet-service-id 5111824
next
edit "Tableau-SSH"
set internet-service-id 5111814
next
edit "Tableau-Web"
set internet-service-id 5111809
next
edit "[Link]"
set internet-service-id 13566202
next
edit "TeamViewer-DNS"
set internet-service-id 1835011
next
edit "TeamViewer-FTP"
set internet-service-id 1835015
next
edit "TeamViewer-ICMP"
set internet-service-id 1835010
next
edit "TeamViewer-Inbound_Email"
set internet-service-id 1835017
next
edit "TeamViewer-LDAP"
set internet-service-id 1835022
next
edit "TeamViewer-NTP"
set internet-service-id 1835016
next
edit "[Link]"
set internet-service-id 1835032
next
edit "[Link]"
set internet-service-id 1835023
next
edit "TeamViewer-Other"
set internet-service-id 1835008
next
edit "TeamViewer-Outbound_Email"
set internet-service-id 1835012
next
edit "TeamViewer-RTMP"
set internet-service-id 1835024
next
edit "TeamViewer-SSH"
set internet-service-id 1835014
next
edit "TeamViewer-TeamViewer"
set internet-service-id 1835117
next
edit "TeamViewer-Web"
set internet-service-id 1835009
next
edit "Telegram-Telegram"
set internet-service-id 11010249
next
edit "[Link]"
set internet-service-id 12386528
next
edit "Tencent-DNS"
set internet-service-id 2555907
next
edit "Tencent-FTP"
set internet-service-id 2555911
next
edit "Tencent-ICMP"
set internet-service-id 2555906
next
edit "Tencent-Inbound_Email"
set internet-service-id 2555913
next
edit "Tencent-LDAP"
set internet-service-id 2555918
next
edit "Tencent-NTP"
set internet-service-id 2555912
next
edit "[Link]"
set internet-service-id 2555928
next
edit "[Link]"
set internet-service-id 2555919
next
edit "Tencent-Other"
set internet-service-id 2555904
next
edit "Tencent-Outbound_Email"
set internet-service-id 2555908
next
edit "Tencent-RTMP"
set internet-service-id 2555920
next
edit "Tencent-SSH"
set internet-service-id 2555910
next
edit "[Link]"
set internet-service-id 2556219
next
edit "Tencent-Web"
set internet-service-id 2555905
next
edit "ThreatLocker-ThreatLocker"
set internet-service-id 16712001
next
edit "[Link]"
set internet-service-id 2818243
next
edit "[Link]"
set internet-service-id 2818238
next
edit "TrendMicro-DNS"
set internet-service-id 2490371
next
edit "TrendMicro-FTP"
set internet-service-id 2490375
next
edit "TrendMicro-ICMP"
set internet-service-id 2490370
next
edit "TrendMicro-Inbound_Email"
set internet-service-id 2490377
next
edit "TrendMicro-LDAP"
set internet-service-id 2490382
next
edit "TrendMicro-NTP"
set internet-service-id 2490376
next
edit "[Link]"
set internet-service-id 2490392
next
edit "[Link]"
set internet-service-id 2490383
next
edit "TrendMicro-Other"
set internet-service-id 2490368
next
edit "TrendMicro-Outbound_Email"
set internet-service-id 2490372
next
edit "TrendMicro-RTMP"
set internet-service-id 2490384
next
edit "TrendMicro-SSH"
set internet-service-id 2490374
next
edit "TrendMicro-Web"
set internet-service-id 2490369
next
edit "Truecaller-Truecaller"
set internet-service-id 9437339
next
edit "[Link]"
set internet-service-id 16384317
next
edit "Twilio-DNS"
set internet-service-id 3801091
next
edit "[Link]"
set internet-service-id 3801277
next
edit "Twilio-FTP"
set internet-service-id 3801095
next
edit "Twilio-ICMP"
set internet-service-id 3801090
next
edit "Twilio-Inbound_Email"
set internet-service-id 3801097
next
edit "Twilio-LDAP"
set internet-service-id 3801102
next
edit "Twilio-NTP"
set internet-service-id 3801096
next
edit "[Link]"
set internet-service-id 3801112
next
edit "[Link]"
set internet-service-id 3801103
next
edit "Twilio-Other"
set internet-service-id 3801088
next
edit "Twilio-Outbound_Email"
set internet-service-id 3801092
next
edit "Twilio-RTMP"
set internet-service-id 3801104
next
edit "Twilio-SSH"
set internet-service-id 3801094
next
edit "Twilio-Web"
set internet-service-id 3801089
next
edit "Twitter-DNS"
set internet-service-id 2162691
next
edit "Twitter-FTP"
set internet-service-id 2162695
next
edit "Twitter-ICMP"
set internet-service-id 2162690
next
edit "Twitter-Inbound_Email"
set internet-service-id 2162697
next
edit "Twitter-LDAP"
set internet-service-id 2162702
next
edit "Twitter-NTP"
set internet-service-id 2162696
next
edit "[Link]"
set internet-service-id 2162712
next
edit "[Link]"
set internet-service-id 2162703
next
edit "Twitter-Other"
set internet-service-id 2162688
next
edit "Twitter-Outbound_Email"
set internet-service-id 2162692
next
edit "Twitter-RTMP"
set internet-service-id 2162704
next
edit "Twitter-SSH"
set internet-service-id 2162694
next
edit "Twitter-Web"
set internet-service-id 2162689
next
edit "[Link]-Scanner"
set internet-service-id 15728806
next
edit "Ubiquiti-UniFi"
set internet-service-id 7340160
next
edit "UptimeRobot-DNS"
set internet-service-id 8257539
next
edit "UptimeRobot-FTP"
set internet-service-id 8257543
next
edit "UptimeRobot-ICMP"
set internet-service-id 8257538
next
edit "UptimeRobot-Inbound_Email"
set internet-service-id 8257545
next
edit "UptimeRobot-LDAP"
set internet-service-id 8257550
next
edit "UptimeRobot-NTP"
set internet-service-id 8257544
next
edit "[Link]"
set internet-service-id 8257560
next
edit "[Link]"
set internet-service-id 8257551
next
edit "UptimeRobot-Other"
set internet-service-id 8257536
next
edit "UptimeRobot-Outbound_Email"
set internet-service-id 8257540
next
edit "UptimeRobot-RTMP"
set internet-service-id 8257552
next
edit "UptimeRobot-SSH"
set internet-service-id 8257542
next
edit "[Link]"
set internet-service-id 8257709
next
edit "UptimeRobot-Web"
set internet-service-id 8257537
next
edit "VK-DNS"
set internet-service-id 2424835
next
edit "VK-FTP"
set internet-service-id 2424839
next
edit "VK-ICMP"
set internet-service-id 2424834
next
edit "VK-Inbound_Email"
set internet-service-id 2424841
next
edit "VK-LDAP"
set internet-service-id 2424846
next
edit "VK-NTP"
set internet-service-id 2424840
next
edit "[Link]"
set internet-service-id 2424856
next
edit "[Link]"
set internet-service-id 2424847
next
edit "VK-Other"
set internet-service-id 2424832
next
edit "VK-Outbound_Email"
set internet-service-id 2424836
next
edit "VK-RTMP"
set internet-service-id 2424848
next
edit "VK-SSH"
set internet-service-id 2424838
next
edit "VK-Web"
set internet-service-id 2424833
next
edit "VMware-DNS"
set internet-service-id 1507331
next
edit "VMware-FTP"
set internet-service-id 1507335
next
edit "VMware-ICMP"
set internet-service-id 1507330
next
edit "VMware-Inbound_Email"
set internet-service-id 1507337
next
edit "VMware-LDAP"
set internet-service-id 1507342
next
edit "VMware-NTP"
set internet-service-id 1507336
next
edit "[Link]"
set internet-service-id 1507352
next
edit "[Link]"
set internet-service-id 1507343
next
edit "VMware-Other"
set internet-service-id 1507328
next
edit "VMware-Outbound_Email"
set internet-service-id 1507332
next
edit "VMware-RTMP"
set internet-service-id 1507344
next
edit "VMware-SSH"
set internet-service-id 1507334
next
edit "VMware-Web"
set internet-service-id 1507329
next
edit "[Link]"
set internet-service-id 1507461
next
edit "VNC-DNS"
set internet-service-id 7602179
next
edit "VNC-FTP"
set internet-service-id 7602183
next
edit "VNC-ICMP"
set internet-service-id 7602178
next
edit "VNC-Inbound_Email"
set internet-service-id 7602185
next
edit "VNC-LDAP"
set internet-service-id 7602190
next
edit "VNC-NTP"
set internet-service-id 7602184
next
edit "[Link]"
set internet-service-id 7602200
next
edit "[Link]"
set internet-service-id 7602191
next
edit "VNC-Other"
set internet-service-id 7602176
next
edit "VNC-Outbound_Email"
set internet-service-id 7602180
next
edit "VNC-RTMP"
set internet-service-id 7602192
next
edit "VNC-SSH"
set internet-service-id 7602182
next
edit "VNC-Web"
set internet-service-id 7602177
next
edit "[Link]"
set internet-service-id 12779753
next
edit "[Link]"
set internet-service-id 12189915
next
edit "Valve-Steam"
set internet-service-id 10092711
next
edit "Veracode-DNS"
set internet-service-id 5767171
next
edit "Veracode-FTP"
set internet-service-id 5767175
next
edit "Veracode-ICMP"
set internet-service-id 5767170
next
edit "Veracode-Inbound_Email"
set internet-service-id 5767177
next
edit "Veracode-LDAP"
set internet-service-id 5767182
next
edit "Veracode-NTP"
set internet-service-id 5767176
next
edit "[Link]"
set internet-service-id 5767192
next
edit "[Link]"
set internet-service-id 5767183
next
edit "Veracode-Other"
set internet-service-id 5767168
next
edit "Veracode-Outbound_Email"
set internet-service-id 5767172
next
edit "Veracode-RTMP"
set internet-service-id 5767184
next
edit "Veracode-SSH"
set internet-service-id 5767174
next
edit "Veracode-Web"
set internet-service-id 5767169
next
edit "VeriSign-OCSP"
set internet-service-id 9568408
next
edit "[Link]"
set internet-service-id 15663407
next
edit "Vidyo-VidyoCloud"
set internet-service-id 12452065
next
edit "Vimeo-DNS"
set internet-service-id 2293763
next
edit "Vimeo-FTP"
set internet-service-id 2293767
next
edit "Vimeo-ICMP"
set internet-service-id 2293762
next
edit "Vimeo-Inbound_Email"
set internet-service-id 2293769
next
edit "Vimeo-LDAP"
set internet-service-id 2293774
next
edit "Vimeo-NTP"
set internet-service-id 2293768
next
edit "[Link]"
set internet-service-id 2293784
next
edit "[Link]"
set internet-service-id 2293775
next
edit "Vimeo-Other"
set internet-service-id 2293760
next
edit "Vimeo-Outbound_Email"
set internet-service-id 2293764
next
edit "Vimeo-RTMP"
set internet-service-id 2293776
next
edit "Vimeo-SSH"
set internet-service-id 2293766
next
edit "Vimeo-Web"
set internet-service-id 2293761
next
edit "[Link]"
set internet-service-id 15597869
next
edit "[Link]"
set internet-service-id 15597872
next
edit "[Link]"
set internet-service-id 13762829
next
edit "[Link]"
set internet-service-id 7078013
next
edit "Wetransfer-DNS"
set internet-service-id 7208963
next
edit "Wetransfer-FTP"
set internet-service-id 7208967
next
edit "Wetransfer-ICMP"
set internet-service-id 7208962
next
edit "Wetransfer-Inbound_Email"
set internet-service-id 7208969
next
edit "Wetransfer-LDAP"
set internet-service-id 7208974
next
edit "Wetransfer-NTP"
set internet-service-id 7208968
next
edit "[Link]"
set internet-service-id 7208984
next
edit "[Link]"
set internet-service-id 7208975
next
edit "Wetransfer-Other"
set internet-service-id 7208960
next
edit "Wetransfer-Outbound_Email"
set internet-service-id 7208964
next
edit "Wetransfer-RTMP"
set internet-service-id 7208976
next
edit "Wetransfer-SSH"
set internet-service-id 7208966
next
edit "Wetransfer-Web"
set internet-service-id 7208961
next
edit "Workday-DNS"
set internet-service-id 3670019
next
edit "Workday-FTP"
set internet-service-id 3670023
next
edit "Workday-ICMP"
set internet-service-id 3670018
next
edit "Workday-Inbound_Email"
set internet-service-id 3670025
next
edit "Workday-LDAP"
set internet-service-id 3670030
next
edit "Workday-NTP"
set internet-service-id 3670024
next
edit "[Link]"
set internet-service-id 3670040
next
edit "[Link]"
set internet-service-id 3670031
next
edit "Workday-Other"
set internet-service-id 3670016
next
edit "Workday-Outbound_Email"
set internet-service-id 3670020
next
edit "Workday-RTMP"
set internet-service-id 3670032
next
edit "Workday-SSH"
set internet-service-id 3670022
next
edit "Workday-Web"
set internet-service-id 3670017
next
edit "XING-DNS"
set internet-service-id 9043971
next
edit "XING-FTP"
set internet-service-id 9043975
next
edit "XING-ICMP"
set internet-service-id 9043970
next
edit "XING-Inbound_Email"
set internet-service-id 9043977
next
edit "XING-LDAP"
set internet-service-id 9043982
next
edit "XING-NTP"
set internet-service-id 9043976
next
edit "[Link]"
set internet-service-id 9043992
next
edit "[Link]"
set internet-service-id 9043983
next
edit "XING-Other"
set internet-service-id 9043968
next
edit "XING-Outbound_Email"
set internet-service-id 9043972
next
edit "XING-RTMP"
set internet-service-id 9043984
next
edit "XING-SSH"
set internet-service-id 9043974
next
edit "XING-Web"
set internet-service-id 9043969
next
edit "Xactly-DNS"
set internet-service-id 4194307
next
edit "Xactly-FTP"
set internet-service-id 4194311
next
edit "Xactly-ICMP"
set internet-service-id 4194306
next
edit "Xactly-Inbound_Email"
set internet-service-id 4194313
next
edit "Xactly-LDAP"
set internet-service-id 4194318
next
edit "Xactly-NTP"
set internet-service-id 4194312
next
edit "[Link]"
set internet-service-id 4194328
next
edit "[Link]"
set internet-service-id 4194319
next
edit "Xactly-Other"
set internet-service-id 4194304
next
edit "Xactly-Outbound_Email"
set internet-service-id 4194308
next
edit "Xactly-RTMP"
set internet-service-id 4194320
next
edit "Xactly-SSH"
set internet-service-id 4194310
next
edit "Xactly-Web"
set internet-service-id 4194305
next
edit "Xero-DNS"
set internet-service-id 3997699
next
edit "Xero-FTP"
set internet-service-id 3997703
next
edit "Xero-ICMP"
set internet-service-id 3997698
next
edit "Xero-Inbound_Email"
set internet-service-id 3997705
next
edit "Xero-LDAP"
set internet-service-id 3997710
next
edit "Xero-NTP"
set internet-service-id 3997704
next
edit "[Link]"
set internet-service-id 3997720
next
edit "[Link]"
set internet-service-id 3997711
next
edit "Xero-Other"
set internet-service-id 3997696
next
edit "Xero-Outbound_Email"
set internet-service-id 3997700
next
edit "Xero-RTMP"
set internet-service-id 3997712
next
edit "Xero-SSH"
set internet-service-id 3997702
next
edit "Xero-Web"
set internet-service-id 3997697
next
edit "Yahoo-DNS"
set internet-service-id 262147
next
edit "Yahoo-FTP"
set internet-service-id 262151
next
edit "Yahoo-ICMP"
set internet-service-id 262146
next
edit "Yahoo-Inbound_Email"
set internet-service-id 262153
next
edit "Yahoo-LDAP"
set internet-service-id 262158
next
edit "Yahoo-NTP"
set internet-service-id 262152
next
edit "[Link]"
set internet-service-id 262168
next
edit "[Link]"
set internet-service-id 262159
next
edit "Yahoo-Other"
set internet-service-id 262144
next
edit "Yahoo-Outbound_Email"
set internet-service-id 262148
next
edit "Yahoo-RTMP"
set internet-service-id 262160
next
edit "Yahoo-SSH"
set internet-service-id 262150
next
edit "Yahoo-Web"
set internet-service-id 262145
next
edit "Yandex-DNS"
set internet-service-id 6750211
next
edit "Yandex-FTP"
set internet-service-id 6750215
next
edit "Yandex-ICMP"
set internet-service-id 6750210
next
edit "Yandex-Inbound_Email"
set internet-service-id 6750217
next
edit "Yandex-LDAP"
set internet-service-id 6750222
next
edit "Yandex-NTP"
set internet-service-id 6750216
next
edit "[Link]"
set internet-service-id 6750232
next
edit "[Link]"
set internet-service-id 6750223
next
edit "Yandex-Other"
set internet-service-id 6750208
next
edit "Yandex-Outbound_Email"
set internet-service-id 6750212
next
edit "Yandex-RTMP"
set internet-service-id 6750224
next
edit "Yandex-SSH"
set internet-service-id 6750214
next
edit "Yandex-Web"
set internet-service-id 6750209
next
edit "YouSeeU-Bongo"
set internet-service-id 10158248
next
edit "[Link]"
set internet-service-id 16777538
next
edit "[Link]"
set internet-service-id 10420401
next
edit "Zendesk-DNS"
set internet-service-id 3407875
next
edit "Zendesk-FTP"
set internet-service-id 3407879
next
edit "Zendesk-ICMP"
set internet-service-id 3407874
next
edit "Zendesk-Inbound_Email"
set internet-service-id 3407881
next
edit "Zendesk-LDAP"
set internet-service-id 3407886
next
edit "Zendesk-NTP"
set internet-service-id 3407880
next
edit "[Link]"
set internet-service-id 3407896
next
edit "[Link]"
set internet-service-id 3407887
next
edit "Zendesk-Other"
set internet-service-id 3407872
next
edit "Zendesk-Outbound_Email"
set internet-service-id 3407876
next
edit "Zendesk-RTMP"
set internet-service-id 3407888
next
edit "Zendesk-SSH"
set internet-service-id 3407878
next
edit "Zendesk-Web"
set internet-service-id 3407873
next
edit "[Link]"
set internet-service-id 3408047
next
edit "Zoho-DNS"
set internet-service-id 1703939
next
edit "Zoho-FTP"
set internet-service-id 1703943
next
edit "Zoho-ICMP"
set internet-service-id 1703938
next
edit "Zoho-Inbound_Email"
set internet-service-id 1703945
next
edit "Zoho-LDAP"
set internet-service-id 1703950
next
edit "Zoho-NTP"
set internet-service-id 1703944
next
edit "[Link]"
set internet-service-id 1703960
next
edit "[Link]"
set internet-service-id 1703951
next
edit "Zoho-Other"
set internet-service-id 1703936
next
edit "Zoho-Outbound_Email"
set internet-service-id 1703940
next
edit "Zoho-RTMP"
set internet-service-id 1703952
next
edit "Zoho-SSH"
set internet-service-id 1703942
next
edit "[Link]"
set internet-service-id 1704153
next
edit "Zoho-Web"
set internet-service-id 1703937
next
edit "[Link]"
set internet-service-id 6422646
next
edit "Zoox-DNS"
set internet-service-id 8454147
next
edit "Zoox-FTP"
set internet-service-id 8454151
next
edit "Zoox-ICMP"
set internet-service-id 8454146
next
edit "Zoox-Inbound_Email"
set internet-service-id 8454153
next
edit "Zoox-LDAP"
set internet-service-id 8454158
next
edit "Zoox-NTP"
set internet-service-id 8454152
next
edit "[Link]"
set internet-service-id 8454168
next
edit "[Link]"
set internet-service-id 8454159
next
edit "Zoox-Other"
set internet-service-id 8454144
next
edit "Zoox-Outbound_Email"
set internet-service-id 8454148
next
edit "Zoox-RTMP"
set internet-service-id 8454160
next
edit "Zoox-SSH"
set internet-service-id 8454150
next
edit "Zoox-Web"
set internet-service-id 8454145
next
edit "Zscaler-DNS"
set internet-service-id 6684675
next
edit "Zscaler-FTP"
set internet-service-id 6684679
next
edit "Zscaler-ICMP"
set internet-service-id 6684674
next
edit "Zscaler-Inbound_Email"
set internet-service-id 6684681
next
edit "Zscaler-LDAP"
set internet-service-id 6684686
next
edit "Zscaler-NTP"
set internet-service-id 6684680
next
edit "[Link]"
set internet-service-id 6684696
next
edit "[Link]"
set internet-service-id 6684687
next
edit "Zscaler-Other"
set internet-service-id 6684672
next
edit "Zscaler-Outbound_Email"
set internet-service-id 6684676
next
edit "Zscaler-RTMP"
set internet-service-id 6684688
next
edit "Zscaler-SSH"
set internet-service-id 6684678
next
edit "Zscaler-Web"
set internet-service-id 6684673
next
edit "[Link]"
set internet-service-id 6684793
next
edit "Zuora-DNS"
set internet-service-id 4063235
next
edit "Zuora-FTP"
set internet-service-id 4063239
next
edit "Zuora-ICMP"
set internet-service-id 4063234
next
edit "Zuora-Inbound_Email"
set internet-service-id 4063241
next
edit "Zuora-LDAP"
set internet-service-id 4063246
next
edit "Zuora-NTP"
set internet-service-id 4063240
next
edit "[Link]"
set internet-service-id 4063256
next
edit "[Link]"
set internet-service-id 4063247
next
edit "Zuora-Other"
set internet-service-id 4063232
next
edit "Zuora-Outbound_Email"
set internet-service-id 4063236
next
edit "Zuora-RTMP"
set internet-service-id 4063248
next
edit "Zuora-SSH"
set internet-service-id 4063238
next
edit "Zuora-Web"
set internet-service-id 4063233
next
edit "eBay-DNS"
set internet-service-id 458755
next
edit "eBay-FTP"
set internet-service-id 458759
next
edit "eBay-ICMP"
set internet-service-id 458754
next
edit "eBay-Inbound_Email"
set internet-service-id 458761
next
edit "eBay-LDAP"
set internet-service-id 458766
next
edit "eBay-NTP"
set internet-service-id 458760
next
edit "[Link]"
set internet-service-id 458776
next
edit "[Link]"
set internet-service-id 458767
next
edit "eBay-Other"
set internet-service-id 458752
next
edit "eBay-Outbound_Email"
set internet-service-id 458756
next
edit "eBay-RTMP"
set internet-service-id 458768
next
edit "eBay-SSH"
set internet-service-id 458758
next
edit "eBay-Web"
set internet-service-id 458753
next
edit "[Link]"
set internet-service-id 14352669
next
edit "[Link]-DNS"
set internet-service-id 6815747
next
edit "[Link]-FTP"
set internet-service-id 6815751
next
edit "[Link]-ICMP"
set internet-service-id 6815746
next
edit "[Link]-Inbound_Email"
set internet-service-id 6815753
next
edit "[Link]-LDAP"
set internet-service-id 6815758
next
edit "[Link]-NTP"
set internet-service-id 6815752
next
edit "[Link]"
set internet-service-id 6815768
next
edit "[Link]"
set internet-service-id 6815759
next
edit "[Link]-Other"
set internet-service-id 6815744
next
edit "[Link]-Outbound_Email"
set internet-service-id 6815748
next
edit "[Link]-RTMP"
set internet-service-id 6815760
next
edit "[Link]-SSH"
set internet-service-id 6815750
next
edit "[Link]-Web"
set internet-service-id 6815745
next
edit "[Link]-DNS"
set internet-service-id 2949123
next
edit "[Link]-FTP"
set internet-service-id 2949127
next
edit "[Link]-ICMP"
set internet-service-id 2949122
next
edit "[Link]-Inbound_Email"
set internet-service-id 2949129
next
edit "[Link]-LDAP"
set internet-service-id 2949134
next
edit "[Link]-NTP"
set internet-service-id 2949128
next
edit "[Link]"
set internet-service-id 2949144
next
edit "[Link]"
set internet-service-id 2949135
next
edit "[Link]-Other"
set internet-service-id 2949120
next
edit "[Link]-Outbound_Email"
set internet-service-id 2949124
next
edit "[Link]-RTMP"
set internet-service-id 2949136
next
edit "[Link]-SSH"
set internet-service-id 2949126
next
edit "[Link]-Web"
set internet-service-id 2949121
next
edit "[Link]"
set internet-service-id 14549279
next
end
config endpoint-control fctems
edit 1
next
edit 2
next
edit 3
next
edit 4
next
edit 5
next
edit 6
next
edit 7
next
end
config log tap-device
edit "default-tap-gui"
set status enable
set port 12121
set format json
config filter
set forward-traffic disable
set local-traffic disable
set multicast-traffic disable
set sniffer-traffic disable
set anomaly disable
set voip disable
set ztna-traffic disable
config free-style
edit 1
set category event
set filter "subtype router or VPN"
set filter-type exclude
next
end
end
next
end
config log fortianalyzer setting
set status enable
set server "[Link]"
set upload-option realtime
set serial "FAZ-VMTM21008334"
end
config system email-server
set server "[Link]"
set port 465
set security smtps
end
config system session-helper
edit 1
set name pptp
set protocol 6
set port 1723
next
edit 2
set name h323
set protocol 6
set port 1720
next
edit 3
set name ras
set protocol 17
set port 1719
next
edit 4
set name tns
set protocol 6
set port 1521
next
edit 5
set name tftp
set protocol 17
set port 69
next
edit 6
set name rtsp
set protocol 6
set port 554
next
edit 7
set name rtsp
set protocol 6
set port 7070
next
edit 8
set name rtsp
set protocol 6
set port 8554
next
edit 9
set name ftp
set protocol 6
set port 21
next
edit 10
set name mms
set protocol 6
set port 1863
next
edit 11
set name pmap
set protocol 6
set port 111
next
edit 12
set name pmap
set protocol 17
set port 111
next
edit 13
set name sip
set protocol 17
set port 5060
next
edit 14
set name dns-udp
set protocol 17
set port 53
next
edit 15
set name rsh
set protocol 6
set port 514
next
edit 16
set name rsh
set protocol 6
set port 512
next
edit 17
set name dcerpc
set protocol 6
set port 135
next
edit 18
set name dcerpc
set protocol 17
set port 135
next
edit 19
set name mgcp
set protocol 17
set port 2427
next
edit 20
set name mgcp
set protocol 17
set port 2727
next
end
config system auto-install
set auto-install-config enable
set auto-install-image enable
end
config system ntp
set ntpsync enable
set syncinterval 1
end
config system federated-upgrade
set status disabled
end
config system ike
set dh-multiprocess disable
end
config system ftm-push
set server-cert "Fortinet_Factory"
end
config system np6xlite
edit "np6xlite_0"
next
end
config system automation-trigger
edit "Compromised Host Quarantine"
next
edit "FortiAnalyzer Connection Down"
set event-type event-log
set logid 22902
next
edit "HA Failover"
set event-type ha-failover
next
edit "Incoming Webhook Call"
set event-type incoming-webhook
next
edit "License Expired Notification"
set event-type license-near-expiry
set license-type any
next
edit "Local Cert Expired Notification"
set event-type local-cert-near-expiry
set description "Default automation trigger configuration for when a local
certificate is near expiration."
next
edit "Network Down"
set event-type event-log
set logid 20099
config fields
edit 1
set name "status"
set value "DOWN"
next
end
next
edit "Reboot"
set event-type reboot
next
edit "Security Rating Notification"
set event-type security-rating-summary
next
end
config system automation-action
edit "Backup Config Disk"
set action-type system-actions
set description "Default automation action configuration for backing up the
configuration on disk."
set system-action backup-config
next
edit "Compromised Host Quarantine_quarantine"
set action-type quarantine
next
edit "Compromised Host Quarantine_quarantine-forticlient"
set action-type quarantine-forticlient
next
edit "FortiAnalyzer Connection Down_ios-notification"
set action-type fortiexplorer-notification
next
edit "HA Failover_email"
set action-type email
set email-subject "HA Failover"
next
edit "License Expired Notification_ios-notification"
set action-type fortiexplorer-notification
next
edit "Network Down_email"
set action-type email
set email-subject "Network Down"
next
edit "Reboot FortiGate"
set action-type system-actions
set minimum-interval 300
set description "Default automation action configuration for rebooting this
FortiGate unit."
set system-action reboot
next
edit "Reboot_email"
set action-type email
set email-subject "Reboot"
next
edit "Security Rating Notification_ios-notification"
set action-type fortiexplorer-notification
next
edit "Shutdown FortiGate"
set action-type system-actions
set description "Default automation action configuration for shuting down this
FortiGate unit."
set system-action shutdown
next
end
config system automation-stitch
edit "Compromised Host Quarantine"
set status disable
set trigger "Compromised Host Quarantine"
config actions
edit 1
set action "Compromised Host Quarantine_quarantine"
next
edit 2
set action "Compromised Host Quarantine_quarantine-forticlient"
next
end
next
edit "FortiAnalyzer Connection Down"
set trigger "FortiAnalyzer Connection Down"
config actions
edit 1
set action "FortiAnalyzer Connection Down_ios-notification"
next
end
next
edit "HA Failover"
set status disable
set trigger "HA Failover"
config actions
edit 1
set action "HA Failover_email"
next
end
next
edit "Incoming Webhook Quarantine"
set status disable
set trigger "Incoming Webhook Call"
config actions
edit 1
set action "Compromised Host Quarantine_quarantine"
next
edit 2
set action "Compromised Host Quarantine_quarantine-forticlient"
next
end
next
edit "License Expired Notification"
set trigger "License Expired Notification"
config actions
edit 1
set action "License Expired Notification_ios-notification"
next
end
next
edit "Network Down"
set status disable
set trigger "Network Down"
config actions
edit 1
set action "Network Down_email"
next
end
next
edit "Reboot"
set status disable
set trigger "Reboot"
config actions
edit 1
set action "Reboot_email"
next
end
next
edit "Security Rating Notification"
set trigger "Security Rating Notification"
config actions
edit 1
set action "Security Rating Notification_ios-notification"
next
end
next
end
config vpn certificate local
edit "Fortinet_CA_SSL"
set password ENC
j/aX/fDLnb+i8QOfkKTrAObyYW/bTCy1lQPW47/6F2dmM2Z20Efh7v2CFwpFTwIPR8iDg9qbZl3POpwxCJq
egUD/lDzFY9769XieP2ogyGwzAyb9wuxGKbjMnUntpugN/
HmvpCqpgvtxCBlflEHIi+A+Gm40MhJugyYi3a82q7wp6O8jTAzeqZYEabHXHHU8qk7XFg==
set comments "This is the default CA certificate the SSL Inspection will use when
generating new server certificates."
set private-key "-----BEGIN ENCRYPTED PRIVATE KEY-----
MIIFHDBOBgkqhkiG9w0BBQ0wQTApBgkqhkiG9w0BBQwwHAQI6QV3OQFN2m0CAggA
MAwGCCqGSIb3DQIJBQAwFAYIKoZIhvcNAwcECLb+ygC6yNVaBIIEyDi4ye9kEkw4
pQBSY3pv5jDoWqeWBl1lLoZ1ZjZrbpbJrEgOUroIhosLEJigBFMlAlGGMCPI32uP
aHqsVIL/wDDRgwmZBZxYl1u5G2IgZnNYDtxGQOKfaZlOd3zyDRKeEfLuGcx86jDb
ishCZ1Uv0HO0KAga7dHbvAmWR5KX+aLjTOfzw0EMHw9x8K74GYcPGMCanCLXk03H
gBrhhwG5y8fEa3MCJ6YtRWuMwJZ05RJz+uncKQxWvQX/IIbTWjYPZKLCqgKQRHnw
M9qV3bRNalNR3fdFfG4MazjLSV0LIl6EToj+snpOLUsyoIGph8RVKVs2gpYFaroo
unla8iEbjPHXTCwe3hyn+VIN8Pw1vpdd0gv5tYfZBiG39JER+WH47tirmV6cq3Ut
TTzXf7T2YVrpalVJRx9AAo8qJrq0DaDkSFnFZko1ALfVm37LJtcFQ8kILKG1q4sc
1pBF4l0yOdz80WWQcD51P6WWlOOpsQdoys16/vLsU+YU4KHAx3RhsEd3ERM79Z7Y
LeFuUaeNNQe9PHFLbo5avf8ATLnbcFb09GqX0L8pZtgQqSSQXYK13JXSJMVr3BMO
jUYCWkNCk9b4kqOjCgN20Z3POLucdB9sw9N+ynQxRhtZSVXluGANkAeGiYSBFm2A
OZUmoAPuGixgXUraiapCtmV/ogC5sG0RTu4Hdpl2KS57GWr9ibntp49XNl+zr7az
klELlDoYa8u+LJxtqloXsEDAKuXIWpwiYXcYxDumii44D2wNCsBMaysyAVZDMqKO
qOwwJkd40IcVACb/ax6asKh7nNQMvF4paomY8wPBpQD0f5AF0TdsCHcC4BbJxLu8
m4s1jTL85VfZjU5p+zG4Whf9RAujqIEDEegz9kNIqBkmOUmaYSYCraLxzK0nkuJG
heO3g/Qz8s6vILEPfIryEjYEW6PxlaNee2U/ElqB1oVvGR3kFPLxvIqCoRBJceID
w3OQXvdESGJq/OgzylLCdUsUXvtxDSCbZofNQi5N3wQMeYE0dn53CCzGbexs8Nus
a216sLaJmBW72VwBBDpyLbPXy6UzNbs7ibtku8Q8eM6EgRtfxkY7/x6fkZdUqvFQ
ZIZMe1512fUZvLOPlskiMLZLp6trU895diu6Wb3tfGNsdSCr+OtWIBnEmDYTDcO8
5HZmjkCI3XYCgTlHcrzFyDi37/J0gJoWmbU4EduZGQtEZOsfeNWSAxDyJUQ3sYBj
opih/anqZdnOQ2rWkv4K4bSIW+cxtJ613om7wzQn/hoNDxP9OmZo3pa71/vThvM8
VpEBvm2RRSXBtW0mcXfEwyiCey++LeCk6vMFj+1Mk2TKGZ/aO84F/hViPE631u9M
O9kZaJqBJWnUd3DoNPCD2n74qtFD43uKVIEfdv7gz3c6ZxwmSyULU+RjwykUGCIO
hhFyuVXv91DQQkao9hzh/DQ186MvHcfIxOmGM3+olIfTgNESI+L5qW8k/lrPLM1f
Tr9WJkVstDLqVrzDU36V47BYHHKdsldlSlLMZ3NtzvxgpmzY9Z7pTr2Ylx8UhXj6
sIKo9j4Z9XLjYmA7j0KyQNbHIlF867UcXN9/oGqZGQCqIFdFBTnvMhdJ35g0xMnk
/mR4Zv2ixoRsTv3Rrr5Vug==
-----END ENCRYPTED PRIVATE KEY-----"
set certificate "-----BEGIN CERTIFICATE-----
MIID5jCCAs6gAwIBAgIIBaVXruGdq8cwDQYJKoZIhvcNAQELBQAwgakxCzAJBgNV
BAYTAlVTMRMwEQYDVQQIDApDYWxpZm9ybmlhMRIwEAYDVQQHDAlTdW5ueXZhbGUx
ETAPBgNVBAoMCEZvcnRpbmV0MR4wHAYDVQQLDBVDZXJ0aWZpY2F0ZSBBdXRob3Jp
dHkxGTAXBgNVBAMMEEZHNDBGSVRLMjEwMjkwOTQxIzAhBgkqhkiG9w0BCQEWFHN1
cHBvcnRAZm9ydGluZXQuY29tMB4XDTIzMDUwMzA2Mjg1MVoXDTMzMDUwMzA2Mjg1
MVowgakxCzAJBgNVBAYTAlVTMRMwEQYDVQQIDApDYWxpZm9ybmlhMRIwEAYDVQQH
DAlTdW5ueXZhbGUxETAPBgNVBAoMCEZvcnRpbmV0MR4wHAYDVQQLDBVDZXJ0aWZp
Y2F0ZSBBdXRob3JpdHkxGTAXBgNVBAMMEEZHNDBGSVRLMjEwMjkwOTQxIzAhBgkq
hkiG9w0BCQEWFHN1cHBvcnRAZm9ydGluZXQuY29tMIIBIjANBgkqhkiG9w0BAQEF
AAOCAQ8AMIIBCgKCAQEAqYFJgRCO4HAN2HOPeskC7kSlHISOGQWcE4PPFoB8QVz9
CXvcgCDIRgW9mdyBfHAymVYGFuELYLWom7ulfVAR3hyCwmfsgJISNoCf6vCM6XR0
F+u0K9d+MfseRZXpuMEgtfHVPr4QSpnbWMEHcLU6TZbRzi8Q0YQZ7/WsmBoyznke
hsZKfcUdu5dnwO930KpLDLsoctYbNyexjqvZo+5xbzzUQQdsM+I4YcobY/hNblih
HomiLDOPwfxU0nPOPHfWO9H6oqi6nZ9oz2o3KNtcnmaV1P9MU3YCQVa1qrLo6x2D
aSbACJTqZKk6RS1wITD9PUFrrVLauOjZJI9TBmg9lwIDAQABoxAwDjAMBgNVHRME
BTADAQH/MA0GCSqGSIb3DQEBCwUAA4IBAQAZ7GrSn/3lIVLRNCPHPXiOfaFUe9Gm
O+IhNwFeVb2CMC0pRvl4IX9V/6SZz+IotObGkmQgG4Dd/9/vV0VMieEQhVDFSf+I
DHEVvyPMYDhmEj1WIo8Hfh6Iid3wP3HVaTNzaNpbgF+ebTucemkGU8Qs7EIZF7tO
Mn19WshdntD2DX7U4l+7dRk24jV+A0v7Mbu9nGJYvkdD+mg+1C4DdbPbpdUHao7h
KIsLQY7ZYZ8SQDQL86qUl/TuMGlBq3Pr2wFTnzq++Kob3D6bObormNLoMN5FS45f
fQb9KmGGQcy5KsOqSJLyZH9V06NhMG+64eXy7IQhyPoRQ5f/97Z5WqhX
-----END CERTIFICATE-----"
set range global
set source factory
set last-updated 1683095408
next
edit "Fortinet_CA_Untrusted"
set password ENC
vIFkRcGGYOnQn+4F47pNSE1dcniF9Hyy/URxPew9zUlz9s5uMEOtdofrk2anikhEOOBHkZt2jnPXYA0CsGi
1NWwhUmiQZ2ZznwmmmZTJN2HQ1RGPHlrivYx2u2eyCanJ4/DC5STKC463LfEbJg2AQBMuL/
qtOXTjE6DwrNuTTSu+ZH0MYIiM6kEjAsZC0XNOUmzVKA==
set comments "This is the default CA certificate the SSL Inspection will use when
generating new server certificates."
set private-key "-----BEGIN ENCRYPTED PRIVATE KEY-----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-----END ENCRYPTED PRIVATE KEY-----"
set certificate "-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----"
set range global
set source factory
set last-updated 1683095408
next
edit "Fortinet_GUI_Server"
set password ENC
plO6cvtee8EgeJ1pfasdUn/BCB6KJv3ERyQkYXyVm3OHcvgfpyfiRfge7FBnUf7N692tJEo5Kmj1DFI0Hhb
e6c3/287klYpjWfUFuzLq/i4/Fc2ZuDBvj/Hrenl91uC853/
unzp+Rzr7yVfpex4pFYuuh8W+JdtZpjN30N2Uk6MRSeCt4yKLGP5mXMM/SZaVbDMx7w==
set comments "This is the default CA certificate the SSL Inspection will use when
generating new server certificates."
set private-key "-----BEGIN ENCRYPTED PRIVATE KEY-----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-----END ENCRYPTED PRIVATE KEY-----"
set certificate "-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----"
set range global
set source factory
set last-updated 1683100434
next
edit "Fortinet_SSL"
set password ENC
7XH3nQOar0aDWCdbwxbPL0uD7tFUsMPP+iH/M74OQJc49KS37UpL2lEIZ8AAgY7hkrOYdrStGt0NOpIem6y
yZQKFeTXlIodgqdVaZiu5Z+jtxDuaSVzgLmmB3y3NNqYAqwyvUPAkcwSxG9uS5GqfbifPrQHwu0UsX9ZPdB
gu/gmfR8AGiU35reWuxOxgDMl3TPjM+w==
set comments "This certificate is embedded in the hardware at the factory and is
unique to this unit. "
set private-key "-----BEGIN ENCRYPTED PRIVATE KEY-----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-----END ENCRYPTED PRIVATE KEY-----"
set certificate "-----BEGIN CERTIFICATE-----
MIID4DCCAsigAwIBAgIICchv+Z2u3dUwDQYJKoZIhvcNAQELBQAwgZ0xCzAJBgNV
BAYTAlVTMRMwEQYDVQQIDApDYWxpZm9ybmlhMRIwEAYDVQQHDAlTdW5ueXZhbGUx
ETAPBgNVBAoMCEZvcnRpbmV0MRIwEAYDVQQLDAlGb3J0aUdhdGUxGTAXBgNVBAMM
EEZHNDBGSVRLMjEwMjkwOTQxIzAhBgkqhkiG9w0BCQEWFHN1cHBvcnRAZm9ydGlu
ZXQuY29tMB4XDTIzMDUwMzA2Mjg1M1oXDTI1MDgwNTA2Mjg1M1owgZ0xCzAJBgNV
BAYTAlVTMRMwEQYDVQQIDApDYWxpZm9ybmlhMRIwEAYDVQQHDAlTdW5ueXZhbGUx
ETAPBgNVBAoMCEZvcnRpbmV0MRIwEAYDVQQLDAlGb3J0aUdhdGUxGTAXBgNVBAMM
EEZHNDBGSVRLMjEwMjkwOTQxIzAhBgkqhkiG9w0BCQEWFHN1cHBvcnRAZm9ydGlu
ZXQuY29tMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAqNqOqtxkigeo
OWDwrk7ewm7HYeZtd9IWABAst+OHiomzMF1jXhb+CBpjIMjOVhcZ03ubLLozTqvM
oixNZ/FaV086rvp/D1wzcl1slCecwI1RF9FFLStVNV/XsujyJZCR0EnxrfrYYkx7
gJs1bfMO3yyy7EM4sPkeSLZ32kSoitNgrOn34v2hAb7hOzq5ZNnsBU1RKEIyKz/V
ptHXWZ5GyR6jvpBca4ds9AANyM+aKGusGwfXALSkNeOGExw0waC7h1wc1vFBqkBu
s6LL8boOieArAQzWL5kBEHxamKQRnzeZK+NtN0gCgGA3AfjXcpPDKz0XiBFvLC54
cu7xpWgByQIDAQABoyIwIDAJBgNVHRMEAjAAMBMGA1UdJQQMMAoGCCsGAQUFBwMB
MA0GCSqGSIb3DQEBCwUAA4IBAQAqkwi6b/mJyHpgu90ghLHYjhoz6jcFkDt2/Qtt
TnB2wRpSg4pc3Ob+4g6Zb2mnqXOTXMJBbJXa1jNlJuE0LIxh/XpFPcyT6/ErXSDe
6CC1pu6Hyo4Y66BmrngukBvASyUrqa5PY6wBHZKsCGegalK3GIZvncOpB7NEk5wJ
n11dv0ztujMQezk8Sudrs7YoaxJOQt5XN8hDBkzbaFaclgXM4SaPrJJ4/XhDV5Nm
T8k/uxaA/5FmSKa/EK0S4n4OsHwMgNzWXz5SUvslaDEjadcKf2z3DEpjG9LdfkgL
FcZXVsMDbq8daqy7HRdVX/eLngUxw8JtHe5cgT4+EtZkrZ3H
-----END CERTIFICATE-----"
set range global
set source factory
set last-updated 1683095408
next
edit "Fortinet_SSL_DSA1024"
set password ENC
2zPe35ATkECUEn/D98hCipPAprvaCTn4VXMJ8ax0FqEC6HPV4gb4LAkkBIG+Wswa1RTxlWimpEoRUqoeilb
hZng1CTOfsMrs8VSlKxBJ8BykEJB5QqL7btz2V6T9p09jPxZXgKUJVOwiMBBzMdagHLm3IKTmA7gEbjHSRD
LgFVQqEYB5rDz+ZZ7PvZl9vLQHhj0M2g==
set comments "This certificate is embedded in the hardware at the factory and is
unique to this unit. "
set private-key "-----BEGIN ENCRYPTED PRIVATE KEY-----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-----END ENCRYPTED PRIVATE KEY-----"
set certificate "-----BEGIN CERTIFICATE-----
MIIDnjCCA1ugAwIBAgIIEuwNvC0Gg10wCwYJYIZIAWUDBAMCMIGdMQswCQYDVQQG
EwJVUzETMBEGA1UECAwKQ2FsaWZvcm5pYTESMBAGA1UEBwwJU3Vubnl2YWxlMREw
DwYDVQQKDAhGb3J0aW5ldDESMBAGA1UECwwJRm9ydGlHYXRlMRkwFwYDVQQDDBBG
RzQwRklUSzIxMDI5MDk0MSMwIQYJKoZIhvcNAQkBFhRzdXBwb3J0QGZvcnRpbmV0
LmNvbTAeFw0yMzA1MDMwNjI5MDVaFw0yNTA4MDUwNjI5MDVaMIGdMQswCQYDVQQG
EwJVUzETMBEGA1UECAwKQ2FsaWZvcm5pYTESMBAGA1UEBwwJU3Vubnl2YWxlMREw
DwYDVQQKDAhGb3J0aW5ldDESMBAGA1UECwwJRm9ydGlHYXRlMRkwFwYDVQQDDBBG
RzQwRklUSzIxMDI5MDk0MSMwIQYJKoZIhvcNAQkBFhRzdXBwb3J0QGZvcnRpbmV0
LmNvbTCCAbcwggErBgcqhkjOOAQBMIIBHgKBgQCNqBJ15QJrIGcndevYsFOALwtg
a0ZIGHFOJBQs4VaXMshHUdgZmEHcYd/pLRi2RYkc6Vpm73hWNJgt4DPOGQbfqLDd
gLP4jPk2eGbeRSxnjFRyZugs0cn1SIfn0Rp5U8RPV8Y7gUOcTrnlx1omysFNb1zw
ZkSGK7i3cuqh93TIJwIVAL1QB4CwLYzZznURCeVRWHEvf12bAoGAJ12Xx7qB/ukP
HllPICxQ9PewlzBP3VX/XaPv1VszYPCqjvflVDhGvmBKsv7dhxBAoi0z/tk5ftAA
YeEn5GmF3AOXVodHVfzhRXL4scVNWBspGemOI34J102wJ5t9H50VMHZScYU9Q2AE
kYaIgp2nczTntIX19RGLScx5kjlZNmYDgYUAAoGBAIcgVkxqF1v+zGx52Gqle1Dc
Xqt/8H+hMaVONLBVRKcL7p5sS3uwnTf0Y7U6e5RxxjweoQxCNoQRCEI3MzBKQdnc
aJ91oHe39VAJaam46XhKJtgmgRyLk7r7S/nabU7k806FBWT+WvcHx15goUWuqlsC
Kh4OzdOLG40h0mxq1w8qoyIwIDAJBgNVHRMEAjAAMBMGA1UdJQQMMAoGCCsGAQUF
BwMBMAsGCWCGSAFlAwQDAgMwADAtAhQyJ4t+IcQZQftJVGz5HFYrImFbCgIVAKtJ
sdRdP5vOJHCczYlsc141PH3+
-----END CERTIFICATE-----"
set range global
set source factory
set last-updated 1683095408
next
edit "Fortinet_SSL_DSA2048"
set password ENC
uescBLqFXnZfJxTFAXEsG9k+R/60GAM8SAxVR2KLUN9tGbjEbW1IHQSkZaCBbSo4kEG5kp3sE12z3NVGxYN
yASEr+GJdPDjXH3x5nrSCJMSvSRcqC+Ov6Mc6cZHWjIUMHdooDACMLAneyRSJt63WdjGBs0P+zsfUaLTYnk
9cOfiE+kjvd0jJVJ4tuwibsUpIT9LM9w==
set comments "This certificate is embedded in the hardware at the factory and is
unique to this unit. "
set private-key "-----BEGIN ENCRYPTED PRIVATE KEY-----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-----END ENCRYPTED PRIVATE KEY-----"
set certificate "-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----"
set range global
set source factory
set last-updated 1683095408
next
edit "Fortinet_SSL_ECDSA256"
set password ENC
BbdgqnMW5c44nSRpsmgAoW4+vpCBgaUd67Lz+aItwuS92OQNrbhPwoIldW3/1YjLwpRg+dLHI7xS2geFmCt
p+goMyDlkCUSCrbayVfO5E2Hlx6D6a2ea679f6MZvW0SBp2YUWRUikKqrycNhefHBKa7GSC3+Sw+9LxgEww
OA0QuUl/UM+dMMq/uOhaDrxnAY9ABWYw==
set comments "This certificate is embedded in the hardware at the factory and is
unique to this unit. "
set private-key "-----BEGIN ENCRYPTED PRIVATE KEY-----
MIHjME4GCSqGSIb3DQEFDTBBMCkGCSqGSIb3DQEFDDAcBAijomjOhgGYDgICCAAw
DAYIKoZIhvcNAgkFADAUBggqhkiG9w0DBwQILXW5c0DdDSEEgZArXzO4H3/Y1B9K
5vL+rUXiZq/zyZ16T6fKkuCznZsv/Zk/7O/fL9ob48b4F/U9QHlfQH2fEiONnQ/T
3YnJaajMxi1Q+AOgphK0tigJp8e6hBq3Y1K+qp/RmrljW9LjyrzvtdO1XmhlB4qm
O7RRA9zKRgxBh3iGC+NYzJYSFs0gf54PWOXqk/8nrep92wIal/A=
-----END ENCRYPTED PRIVATE KEY-----"
set certificate "-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----"
set range global
set source factory
set last-updated 1683095408
next
edit "Fortinet_SSL_ECDSA384"
set password ENC
6ad7tih4Qa+pUlVJh5HRynQJqEn/gdpwp135GE708K/GyRqojMqpzhT43LIUk2fe0FKc/
RJcVd7fe12IQVQq8WHGq84g7m742ZgCHj+uDyi6VNfc7RHtwejhrKYJDUjjvJg64ZzN+rAvhReZe3DNLeu7
lhy/C9667uaRGO+cst9SiV6G/9qKMhyyHBuBSjnNCJStSg==
set comments "This certificate is embedded in the hardware at the factory and is
unique to this unit. "
set private-key "-----BEGIN ENCRYPTED PRIVATE KEY-----
MIIBEzBOBgkqhkiG9w0BBQ0wQTApBgkqhkiG9w0BBQwwHAQItH2munO5hlkCAggA
MAwGCCqGSIb3DQIJBQAwFAYIKoZIhvcNAwcECKwdH8oKJbzmBIHAmMw1IqNrzP8u
hN6+YeYLBFzuYuh3Yr+tyYkJbjiJ1VAMkLi/fBjlnK0Mp/FYLgYEaltFQ4Wrk3r9
cN0NozzTnkeUkXetYcC69Eb4zIA/rIa8895pLc9HZPgeDSThGtMS1ol4Lfjnd+DB
+dvz2haqyw67zdkvfH3UWqxknBuCWyfhFXlcGl+g6a5P/5SG1niqMGcjnvObOGC5
bhtybZdgcXUH5PbvunWnC8WmLt+qQ3Hwb3Ki7yEVYUisP5t2DEXW
-----END ENCRYPTED PRIVATE KEY-----"
set certificate "-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----"
set range global
set source factory
set last-updated 1683095408
next
edit "Fortinet_SSL_ECDSA521"
set password ENC
QOsBLQ3ru6wyJLYxO8fRcpknVoJxSjeSOpnjkiLmGh+oujaBpG8E0tjjBqH3k48+wzjDsYIxlZiIoIdcKJn
P1R1tlUgiywlU8IJFjZ6yx+EQ0ZUzILPFYdwmiDBTuCkLRRbuvgwARMPZ4DKWh+Fzusp+X5G0DfnPIOqyl3
sZwZ5t5TltdKZAVeCpeaoimmQ+15E/Kw==
set comments "This certificate is embedded in the hardware at the factory and is
unique to this unit. "
set private-key "-----BEGIN ENCRYPTED PRIVATE KEY-----
MIIBSzBOBgkqhkiG9w0BBQ0wQTApBgkqhkiG9w0BBQwwHAQIkHDQEYenvDYCAggA
MAwGCCqGSIb3DQIJBQAwFAYIKoZIhvcNAwcECJFzYNhgTQyvBIH4IeO/SkmSl1kS
NpQ2SEpXKsw4GNFPx/rOmkjiHHcFmIDlUkx56A5NjDqguagUduCcobiEDu1RuyMH
H5ql2p86SKhULJjeAo8Dp4Nn8y25cBMBdUgRLTsl/EkplkV8eGhr5MerjoKVwlNg
H55GM0a57+4FqEF5Yd4mx+uvfPWDlUMMaN+Kg+Z72mZEk/9oF5hY1JtMZBdV1SOg
423lXdie71vaP+hPhRV/OfB2OopXbD4pb0ePhb/zlNUQzVASpVLTyDPnK4jcuJQj
/sDrBicNQ2PnSyiOJ3BCyBaWxnCHIolScvrk7zz5eHtvT+IxNbci7poF4wHp4jQ=
-----END ENCRYPTED PRIVATE KEY-----"
set certificate "-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----"
set range global
set source factory
set last-updated 1683095408
next
edit "Fortinet_SSL_ED25519"
set password ENC
/GM/pjKwLCuqOYk8ph1hloqlAmpBr6DGJATe2y3flLcZWzAsi8+vQZ1Nws1mmgVJAiEC0cv3mMrhkUcysfe
W6CybEuQqTCdYpmv18/asBnnZiV74Z3iCqIv1CEAMJi5J5jospKJoLW4dJ/
L2tj46sUg7SlNeBWzUIQYn2ubCiLlGvMl/EOCmRcQ4R/ORUO7a9wVx/w==
set comments "This certificate is embedded in the hardware at the factory and is
unique to this unit. "
set private-key "-----BEGIN ENCRYPTED PRIVATE KEY-----
MIGKME4GCSqGSIb3DQEFDTBBMCkGCSqGSIb3DQEFDDAcBAjXAXx/jejq9AICCAAw
DAYIKoZIhvcNAgkFADAUBggqhkiG9w0DBwQI/BtNJhGUkOUEOGdk4lYt31Wo/HFn
odDbksz5HPIfu+f0/l5oOqVjKFvJc3+Pvv/lu0W1jdHXvggmdYtNywr+IjiN
-----END ENCRYPTED PRIVATE KEY-----"
set certificate "-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----"
set range global
set source factory
set last-updated 1683095408
next
edit "Fortinet_SSL_ED448"
set password ENC
8b5+7A2+tdyVp7X4FrcK8KXWGk/iTxoEjo7VFZu4Xn1d3vV1PAtHZYeSg1P1KdNz+KgybMTJgkRPrM3S/
eFYdtJ4HfHvMEm0yCncBfgMbiYshnyuTqUX2BlujR15fuZbJhCzzWYmOMfrL+JnKgjIvc/
Xfly+sZfhjGtcEH3Fih2me989nT45xXGyfiJflp80TRkw0A==
set comments "This certificate is embedded in the hardware at the factory and is
unique to this unit. "
set private-key "-----BEGIN ENCRYPTED PRIVATE KEY-----
MIGiME4GCSqGSIb3DQEFDTBBMCkGCSqGSIb3DQEFDDAcBAi9W/xDJJQwwAICCAAw
DAYIKoZIhvcNAgkFADAUBggqhkiG9w0DBwQIxpnKee+YBMMEUGZbuzy7lyFcfb3a
pF0LhXy3jWoyZrRTtuDbfDBIQVPX6jCSozB4+4AGGlnu2qYeRESVOeokh1Gxuuba
p4Hb7r8Ph2i3Q4C+57pYVqBEAlV9
-----END ENCRYPTED PRIVATE KEY-----"
set certificate "-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----"
set range global
set source factory
set last-updated 1683095408
next
edit "Fortinet_SSL_RSA1024"
set password ENC
l9N9CvscmZbmRXLPmeBdp/HfFgjGm3OCxEQGiZDtWyIEfrGNtGDzu90a7g9FQmVP52UpmFdvQDbiEE/
hMT0vnlWtoYRAJm53zz2TMmALfGbLJqNQ2FufcL7fxP9Okkuu6b4j3+WLCY2JfnzPo1aD9vcXPCtLIZXmaf
kxRbqVKUf0HM1XrGJOwcVWlsaGy1wScrVcqg==
set comments "This certificate is embedded in the hardware at the factory and is
unique to this unit. "
set private-key "-----BEGIN ENCRYPTED PRIVATE KEY-----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-----END ENCRYPTED PRIVATE KEY-----"
set certificate "-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----"
set range global
set source factory
set last-updated 1683095408
next
edit "Fortinet_SSL_RSA2048"
set password ENC
hQfloEO6aOfqgOpk9cZPOakGrOOo1kxsc1CUAzgkn2d3/Eaq4n63e+GkUn/urWdd5lmDuYJ5dYtys69gCCj
zIQNbP6KjNj+uOO3U8/k+S/S+kmzLuTpKq1MV9e/
iPYdPozlj2xF54rRtMzcVc6FUsr8HvffrzsIsEnvSA9oVnjIxoBKMXk75M7yVUReQIZHu4XMYSA==
set comments "This certificate is embedded in the hardware at the factory and is
unique to this unit. "
set private-key "-----BEGIN ENCRYPTED PRIVATE KEY-----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-----END ENCRYPTED PRIVATE KEY-----"
set certificate "-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----"
set range global
set source factory
set last-updated 1683095408
next
edit "Fortinet_SSL_RSA4096"
set password ENC
hlYTp3ECO8vg1NZeqVCq1+5mtAMZFcwxRyc9TnadaQOG/PtNUuqxcSZAmdZaf9nRU6rMBJQYibrfU1sywZw
aaKdVhst3RCz5cyd8YLRlS2B5C9R1RUYyQBglgeoX3fMnfIA35hLcTHvgiR+QwQP01I4raeaaKbgXTBLCNN
zHBDiTtg8eCGXcj64Iid9wmzwJD7lNMg==
set comments "This certificate is embedded in the hardware at the factory and is
unique to this unit. "
set private-key "-----BEGIN ENCRYPTED PRIVATE KEY-----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-----END ENCRYPTED PRIVATE KEY-----"
set certificate "-----BEGIN CERTIFICATE-----
MIIF4DCCA8igAwIBAgIIZ5TFPtxRR2EwDQYJKoZIhvcNAQELBQAwgZ0xCzAJBgNV
BAYTAlVTMRMwEQYDVQQIDApDYWxpZm9ybmlhMRIwEAYDVQQHDAlTdW5ueXZhbGUx
ETAPBgNVBAoMCEZvcnRpbmV0MRIwEAYDVQQLDAlGb3J0aUdhdGUxGTAXBgNVBAMM
EEZHNDBGSVRLMjEwMjkwOTQxIzAhBgkqhkiG9w0BCQEWFHN1cHBvcnRAZm9ydGlu
ZXQuY29tMB4XDTIzMDUwMzA2MjkwNFoXDTI1MDgwNTA2MjkwNFowgZ0xCzAJBgNV
BAYTAlVTMRMwEQYDVQQIDApDYWxpZm9ybmlhMRIwEAYDVQQHDAlTdW5ueXZhbGUx
ETAPBgNVBAoMCEZvcnRpbmV0MRIwEAYDVQQLDAlGb3J0aUdhdGUxGTAXBgNVBAMM
EEZHNDBGSVRLMjEwMjkwOTQxIzAhBgkqhkiG9w0BCQEWFHN1cHBvcnRAZm9ydGlu
ZXQuY29tMIICIjANBgkqhkiG9w0BAQEFAAOCAg8AMIICCgKCAgEAvUpxDQvhvyEB
8P+kyLdvPv18dHNAnTsIw/8Jy+EMaD7dRQdfWm7j0GeUkVPQ1PND12ZcL0YmjlF8
+e2FSyRIKcYoWmi3M7O7hAFuyFfH4U3hAa3o/fnfoHKPvmJ4/JLGUFDr02M7/4NL
zMbc2LaMa1XJ6Dgjo13f77uM+Yl003RulcIUFVFS9usTPoVNfPGg3JHAz+37Nxm3
gKFiSuZrZTbk/We3ywkSy3BtXVJUH2YVcQONw48PJ2XxmAD1evxGVZDNFekcKezu
nCQrDwxU3hdDemRVfFMy9DeNQ7bbeUKKu3cNG7IY2//KNW9s1Z8uQ79HnnBezAEW
w6MW7tELh74cGon8NnCjPTP4AClTWc9EgZ6HKY5PF6XvUPRYxqm8PVpY6FmOJs+m
WJUlZu4pU8PYOSUSkuwKwlkqIuidbL1yiGE9WkFI93/Ors7yRflD4Ze2x1/A9lUp
iuKansHMuPXsuaPsCUYnz4webOL3Fq6KLSCq3Ct0TrmpWzM9zwLK8kQmHYKvg2ej
Ut/pp8hxyL3KVKuLkLG8w/8FUrzUZn1l5DBu6f0ysd8Y0cjwE/VS5xcP0pQZJI2j
Gv2WOOdWWRNvR9yUjQ7aw7jQVKZASxByjxM8euVH9wF+W0l70dNpn+gjWzji7Nub
b0YtPT7KaLG4/wf476cQqaAnnXw7frsCAwEAAaMiMCAwCQYDVR0TBAIwADATBgNV
HSUEDDAKBggrBgEFBQcDATANBgkqhkiG9w0BAQsFAAOCAgEAYuluGXUo88vYUtKf
XC7sLMRwTQOa02Pzt0g+kfa4Vu6hU6i0e1r0fqSDRIL17Q/fFW9pk6PEYPX8iRsX
RZSnTsQZ5aXg0seANJlAIKzWABLsdp79IWl/daKO0eWA0kKNZ31AGeOLtqPEfBar
9wKDq3rqTmBEjf/TyaJ4oDPlhxpTc/12AOQXcQ/8XWAJfdMQBJT9KuraHylo9uAE
9CfY3BJXZ0x76AMWBiQgjjHRLJDNgEUV5Wq+9KkfkVdvg4CTZYrhDcNzZHJhwCrV
U1ruD3IhCRxmj1c4/+9vPJuAE48JmUx8kLiBdPv25Rb4A91xNjvj5KsbqdkWUUlN
Ojt9gu/WecYJHprwKCDqkuLFygq4ahTBVEJn3YgCsTbloH6XFjtvvsh/suG/lxeY
q6spkxq0PaRcULehF/GtedsIRSBLXMAZidU/L4L05p7KBnBpxYi+vs/7cgIbiCw8
6UgZiaEiQBR0jOwh8WFBa4O7JHP5BiNvgP/M7HTViEBOxRhiNRnc+gCHrcKmmIh7
4u4u0PsCPcVRaAy+Msgtsm0n7oAvdR12Cvf8r7ne73flSrNTH89WvGBJ2HDercu1
xAynGlyiccDJ8jmrdW4/Zr7S2lAoew7w4ZfyK77Q1SAexcMo5hYEp+a03/r9lt4W
5InxveD6oHwIfIzfNoSQdo/YOg0=
-----END CERTIFICATE-----"
set range global
set source factory
set last-updated 1683095408
next
end
config user fortitoken
edit "FTKMOB3518B908D8"
set license "FTMTRIAL060D7E16"
next
edit "FTKMOB35B1FD9F8E"
set license "FTMTRIAL060D7E16"
next
end
config user local
edit "guest"
set type password
set passwd ENC
DrGmQXzotGAoDGVm4BQfSFcHORxcErLSKjUcuctN2mq8+Ol5405tjK9a139vyf7RSlVV47nHOphcGm61oSU
gkmkNaG6LgoAApCrgNZ/
7CfKAhsB2pApNVLfNUtZByBtc9LyXETpAZJd8sESTjUm49/+141GR3fHnobi6TfePGBB3HCCYvxw47fccK7
pjcescPPFv2w==
next
end
config user group
edit "Guest-group"
set member "guest"
next
edit "SSO_Guest_Users"
next
end
config system replacemsg-group
edit "[Link]"
set comment "This is quarantine notification replacement message for quarantine
VLAN interface"
set group-type auth
config auth
edit "auth-disclaimer-page-1"
set buffer "<!DOCTYPE html>
<html lang=\"en\">
<head>
<meta charset=\"UTF-8\">
<meta http-equiv=\"X-UA-Compatible\" content=\"IE=8; IE=EDGE\">
<meta name=\"viewport\" content=\"width=device-width, initial-scale=1\">
<style type=\"text/css\">
body {
height: 100%;
font-family: Helvetica, Arial, sans-serif;
color: #6a6a6a;
margin: 0;
display: flex;
align-items: center;
justify-content: center;
}
input[type=date], input[type=email], input[type=number],
input[type=password], input[type=search], input[type=tel], input[type=text],
input[type=time], input[type=url], select, textarea {
color: #262626;
vertical-align: baseline;
margin: .2em;
border-style: solid;
border-width: 1px;
border-color: #a9a9a9;
background-color: #fff;
box-sizing: border-box;
padding: 2px .5em;
appearance: none;
border-radius: 0;
}
input:focus {
border-color: #646464;
box-shadow: 0 0 1px 0 #a2a2a2;
outline: 0;
}
button {
padding: .5em 1em;
border: 1px solid;
border-radius: 3px;
min-width: 6em;
font-weight: 400;
font-size: .8em;
cursor: pointer;
}
[Link] {
color: #fff;
background-color: rgb(47, 113, 178);
border-color: rgb(34, 103, 173);
}
.message-container {
height: 500px;
width: 600px;
padding: 0;
margin: 10px;
}
.logo {
background: url(%%IMAGE:logo_v3_fguard_app%%) no-repeat left
center;
height: 267px;
object-fit: contain;
}
table {
background-color: #fff;
border-spacing: 0;
margin: 1em;
}
table > tbody > tr > td:first-of-type:not([colspan]) {
white-space: nowrap;
color: rgba(0,0,0,.5);
}
table > tbody > tr > td:first-of-type {
vertical-align: top;
}
table > tbody > tr > td {
padding: .3em .3em;
}
.field {
display: table-row;
}
.field > :first-child {
display: table-cell;
width: 20%;
}
.[Link] > :first-child {
display: inline;
}
.field > :not(:first-child) {
width: auto;
max-width: 100%;
display: inline-flex;
align-items: baseline;
virtical-align: top;
box-sizing: border-box;
margin: .3em;
}
.field > :not(:first-child) > input {
width: 230px;
}
.form-footer {
display: inline-flex;
justify-content: flex-start;
}
.form-footer > * {
margin: 1em;
}
.text-scrollable {
overflow: auto;
height: 150px;
border: 1px solid rgb(200, 200, 200);
padding: 5px;
font-size: 1em;
}
.text-centered {
text-align: center;
}
.text-container {
margin: 1em 1.5em;
}
.flex-container {
display: flex;
}
.[Link] {
flex-direction: column;
}
</style>
<title>Firewall Quarantine Notification</title>
</head>
<body><div class=\"message-container\">
<div class=\"logo\"></div>
<h1>Quarantine Notification</h1>
<form action=\"%%DISCLAIMER_ACT%%\" method=\"%%DISCLAIMER_METHOD%%\">
<input type=\"hidden\" name=\"%%REDIRID%%\" value=\"%%PROTURI%%\">
<input type=\"hidden\" name=\"%%MAGICID%%\" value=\"%%MAGICVAL%%\">
<input type=\"hidden\" name=\"%%ANSWERID%%\" value=\"%%DECLINEVAL%%\">
<p>Your network access has been restricted due to the detection of
potentially malicious traffic. Please contact your network administrator for
further information.</p>
<p><b>Acknowledge your quarantine for limited network access.</b></p>
<div class=\"form-footer\">
<button class=\"primary\" type=\"submit\" onclick=\"sb(\'%%AGREEVAL%
%\')\">Accept</button>
<button type=\"button\"
onclick=\"sb(\'%%DECLINEVAL%%\')\">Decline</button>
</div>
</form>
<script>function sb(val) { [Link][0].%%ANSWERID%%.value = val;
[Link][0].submit(); }</script>
</div></body>
</html>
"
set header http
set format html
next
edit "auth-disclaimer-page-2"
set buffer ''
set header http
set format html
next
edit "auth-disclaimer-page-3"
set buffer ''
set header http
set format html
next
edit "auth-reject-page"
set buffer "<!DOCTYPE html>
<html lang=\"en\">
<head>
<meta charset=\"UTF-8\">
<meta http-equiv=\"X-UA-Compatible\" content=\"IE=8; IE=EDGE\">
<meta name=\"viewport\" content=\"width=device-width, initial-scale=1\">
<style type=\"text/css\">
body {
height: 100%;
font-family: Helvetica, Arial, sans-serif;
color: #6a6a6a;
margin: 0;
display: flex;
align-items: center;
justify-content: center;
}
input[type=date], input[type=email], input[type=number],
input[type=password], input[type=search], input[type=tel], input[type=text],
input[type=time], input[type=url], select, textarea {
color: #262626;
vertical-align: baseline;
margin: .2em;
border-style: solid;
border-width: 1px;
border-color: #a9a9a9;
background-color: #fff;
box-sizing: border-box;
padding: 2px .5em;
appearance: none;
border-radius: 0;
}
input:focus {
border-color: #646464;
box-shadow: 0 0 1px 0 #a2a2a2;
outline: 0;
}
button {
padding: .5em 1em;
border: 1px solid;
border-radius: 3px;
min-width: 6em;
font-weight: 400;
font-size: .8em;
cursor: pointer;
}
[Link] {
color: #fff;
background-color: rgb(47, 113, 178);
border-color: rgb(34, 103, 173);
}
.message-container {
height: 500px;
width: 600px;
padding: 0;
margin: 10px;
}
.logo {
background: url(%%IMAGE:logo_v3_fguard_app%%) no-repeat left
center;
height: 267px;
object-fit: contain;
}
table {
background-color: #fff;
border-spacing: 0;
margin: 1em;
}
table > tbody > tr > td:first-of-type:not([colspan]) {
white-space: nowrap;
color: rgba(0,0,0,.5);
}
table > tbody > tr > td:first-of-type {
vertical-align: top;
}
table > tbody > tr > td {
padding: .3em .3em;
}
.field {
display: table-row;
}
.field > :first-child {
display: table-cell;
width: 20%;
}
.[Link] > :first-child {
display: inline;
}
.field > :not(:first-child) {
width: auto;
max-width: 100%;
display: inline-flex;
align-items: baseline;
virtical-align: top;
box-sizing: border-box;
margin: .3em;
}
.field > :not(:first-child) > input {
width: 230px;
}
.form-footer {
display: inline-flex;
justify-content: flex-start;
}
.form-footer > * {
margin: 1em;
}
.text-scrollable {
overflow: auto;
height: 150px;
border: 1px solid rgb(200, 200, 200);
padding: 5px;
font-size: 1em;
}
.text-centered {
text-align: center;
}
.text-container {
margin: 1em 1.5em;
}
.flex-container {
display: flex;
}
.[Link] {
flex-direction: column;
}
</style>
<title>Firewall Quarantine Declined</title>
</head>
<body><div class=\"message-container\">
<div class=\"logo\"></div>
<h1>Quarantine Terms Not Acknowledged</h1>
<form action=\"/\" method=\"post\">
<input type=\"hidden\" name=\"%%REDIRID%%\" value=\"%%PROTURI%%\">
<input type=\"hidden\" name=\"%%MAGICID%%\" value=\"%%MAGICVAL%%\">
<p>By failing to acknowledge the Terms of Quarantine, your access may be
more severely restricted.</p>
<div>
<button class=\"primary\" type=\"submit\">Return to Quarantine
Terms</button>
</div>
</form>
</div></body>
</html>
"
set header http
set format html
next
end
next
end
config system object-tagging
edit "default"
next
end
config wireless-controller vap
edit "SISINDIA"
set ssid "SISINDIA"
set passphrase ENC
vt3lrA6tSSYy1oa0WDqULSwBEP4QDMC6BQVAPFwRjF0wnaT+1wMGMdLRg5BlImGlCiSpOAtZhXaT4m4K0HS
uZUsYiktrnFC2uNSXHFQjCm2c7nIqqnFEI5jJcmmdVbjmmvxMXBel3toYNmwEXel7hAaDe2HFmGxQ6rypup
AWqN7SGZFHomgocTjoyV01sHhds+6SUQ==
set schedule "always"
next
end
config webfilter ftgd-local-cat
edit "custom1"
set id 140
next
edit "custom2"
set id 141
next
end
config webfilter urlfilter
edit 1
set name "Auto-webfilter-urlfilter_il0crih0j"
config entries
edit 1
set url ".*bit.*"
set type regex
set action block
next
edit 2
set url ".*pirate*"
set type regex
set action block
next
edit 3
set url ".*porn.*"
set type regex
set action block
next
edit 4
set url ".*sex.*"
set type regex
set action block
next
edit 5
set url ".*torrent.*"
set type regex
set action block
next
edit 6
set url ".*youtube.*"
set type regex
set action block
next
edit 7
set url "[Link]"
set action allow
next
edit 8
set url "[Link]/CSATLIVE"
set action allow
next
edit 9
set url "[Link]"
set action allow
next
edit 10
set url "[Link]"
set action allow
next
edit 11
set url "[Link]"
set action allow
next
edit 12
set url "[Link]/[Link]"
set action allow
next
edit 13
set url "[Link]/[Link]"
set action allow
next
edit 14
set url ".*[Link].*"
set type regex
set action allow
next
edit 15
set url ".*[Link].*"
set type regex
set action allow
next
edit 16
set url ".*CSATLIVE.*"
set type regex
set action allow
next
edit 17
set url ".*cloudflare.*"
set type regex
set action allow
next
edit 18
set url ".*cquel.*"
set type regex
set action allow
next
edit 19
set url ".*[Link].*"
set type regex
set action allow
next
edit 20
set url ".*hdfc.*"
set type regex
set action allow
next
edit 21
set url ".*hindusthansamachar.*"
set type regex
set action allow
next
edit 22
set url ".*linkedin.*"
set type regex
set action allow
next
edit 23
set url ".*naukri.*"
set type regex
set action allow
next
edit 24
set url ".*[Link].*"
set type regex
set action allow
next
edit 25
set url ".*salesmaxx.*"
set type regex
set action allow
next
edit 26
set url ".*sisac2021.*"
set type regex
set action allow
next
edit 27
set url ".*sisersys.*"
set type regex
set action allow
next
edit 28
set url ".*trsurl.*"
set type regex
set action allow
next
edit 29
set url ".*vimeo.*"
set type regex
set action allow
next
edit 30
set url "[Link]
set type regex
next
edit 31
set url "[Link]
set type regex
next
edit 32
set url "[Link]
set type regex
next
edit 33
set url "[Link]
set type regex
next
edit 34
set url "[Link]
set type regex
next
edit 35
set url "[Link]
set type regex
next
edit 36
set url "[Link]
set type regex
next
edit 37
set url "[Link]
set type regex
next
edit 38
set url "[Link]
set type regex
next
edit 39
set url "[Link]
set type regex
next
edit 40
set url "[Link]
set type regex
next
edit 41
set url "[Link]
set type regex
next
edit 42
set url "[Link]
set type regex
next
edit 43
set url "[Link]"
set type regex
next
edit 44
set url "[Link]
set type regex
next
edit 45
set url "[Link]
set type regex
next
edit 46
set url "[Link]
set type regex
next
edit 47
set url "[Link]"
next
edit 48
set url "[Link]"
next
end
next
end
config dnsfilter profile
edit "default"
set comment "Default dns filtering."
set block-botnet enable
config ftgd-dns
config filters
edit 1
set category 2
next
edit 2
set category 7
next
edit 3
set category 8
next
edit 4
set category 9
next
edit 5
set category 11
next
edit 6
set category 12
next
edit 7
set category 13
next
edit 8
set category 14
next
edit 9
set category 15
next
edit 10
set category 16
next
edit 11
next
edit 12
set category 57
next
edit 13
set category 63
next
edit 14
set category 64
next
edit 15
set category 65
next
edit 16
set category 66
next
edit 17
set category 67
next
edit 18
set category 26
set action block
next
edit 19
set category 61
set action block
next
edit 20
set category 86
set action block
next
edit 21
set category 88
set action block
next
edit 22
set category 90
set action block
next
edit 23
set category 91
set action block
next
end
end
next
end
config webfilter profile
edit "default"
set comment "Default web filtering."
config ftgd-wf
unset options
config filters
edit 1
set action block
next
edit 2
set category 2
set action block
next
edit 3
set category 7
set action block
next
edit 4
set category 8
set action block
next
edit 5
set category 9
set action block
next
edit 6
set category 11
set action block
next
edit 7
set category 12
set action block
next
edit 8
set category 13
set action block
next
edit 9
set category 14
set action block
next
edit 10
set category 15
set action block
next
edit 11
set category 16
set action block
next
edit 12
set category 26
set action block
next
edit 13
set category 57
set action block
next
edit 14
set category 61
set action block
next
edit 15
set category 63
set action block
next
edit 16
set category 64
set action block
next
edit 17
set category 65
set action block
next
edit 18
set category 66
set action block
next
edit 19
set category 67
set action block
next
edit 20
set category 86
set action block
next
edit 21
set category 88
set action block
next
edit 22
set category 90
set action block
next
edit 23
set category 91
set action block
next
end
end
next
edit "sniffer-profile"
set comment "Monitor web traffic."
config ftgd-wf
config filters
edit 1
next
edit 2
set category 1
next
edit 3
set category 2
next
edit 4
set category 3
next
edit 5
set category 4
next
edit 6
set category 5
next
edit 7
set category 6
next
edit 8
set category 7
next
edit 9
set category 8
next
edit 10
set category 9
next
edit 11
set category 11
next
edit 12
set category 12
next
edit 13
set category 13
next
edit 14
set category 14
next
edit 15
set category 15
next
edit 16
set category 16
next
edit 17
set category 17
next
edit 18
set category 18
next
edit 19
set category 19
next
edit 20
set category 20
next
edit 21
set category 23
next
edit 22
set category 24
next
edit 23
set category 25
next
edit 24
set category 26
next
edit 25
set category 28
next
edit 26
set category 29
next
edit 27
set category 30
next
edit 28
set category 31
next
edit 29
set category 33
next
edit 30
set category 34
next
edit 31
set category 35
next
edit 32
set category 36
next
edit 33
set category 37
next
edit 34
set category 38
next
edit 35
set category 39
next
edit 36
set category 40
next
edit 37
set category 41
next
edit 38
set category 42
next
edit 39
set category 43
next
edit 40
set category 44
next
edit 41
set category 46
next
edit 42
set category 47
next
edit 43
set category 48
next
edit 44
set category 49
next
edit 45
set category 50
next
edit 46
set category 51
next
edit 47
set category 52
next
edit 48
set category 53
next
edit 49
set category 54
next
edit 50
set category 55
next
edit 51
set category 56
next
edit 52
set category 57
next
edit 53
set category 58
next
edit 54
set category 59
next
edit 55
set category 61
next
edit 56
set category 62
next
edit 57
set category 63
next
edit 58
set category 64
next
edit 59
set category 65
next
edit 60
set category 66
next
edit 61
set category 67
next
edit 62
set category 68
next
edit 63
set category 69
next
edit 64
set category 70
next
edit 65
set category 71
next
edit 66
set category 72
next
edit 67
set category 75
next
edit 68
set category 76
next
edit 69
set category 77
next
edit 70
set category 78
next
edit 71
set category 79
next
edit 72
set category 80
next
edit 73
set category 81
next
edit 74
set category 82
next
edit 75
set category 83
next
edit 76
set category 84
next
edit 77
set category 85
next
edit 78
set category 86
next
edit 79
set category 87
next
edit 80
set category 88
next
edit 81
set category 89
next
edit 82
set category 90
next
edit 83
set category 91
next
edit 84
set category 92
next
edit 85
set category 93
next
edit 86
set category 94
next
edit 87
set category 95
next
end
end
next
edit "wifi-default"
set comment "Default configuration for offloading WiFi traffic."
set options block-invalid-url
config ftgd-wf
unset options
config filters
edit 1
next
edit 2
set category 2
set action block
next
edit 3
set category 7
set action block
next
edit 4
set category 8
set action block
next
edit 5
set category 9
set action block
next
edit 6
set category 11
set action block
next
edit 7
set category 12
set action block
next
edit 8
set category 13
set action block
next
edit 9
set category 14
set action block
next
edit 10
set category 15
set action block
next
edit 11
set category 16
set action block
next
edit 12
set category 26
set action block
next
edit 13
set category 57
set action block
next
edit 14
set category 61
set action block
next
edit 15
set category 63
set action block
next
edit 16
set category 64
set action block
next
edit 17
set category 65
set action block
next
edit 18
set category 66
set action block
next
edit 19
set category 67
set action block
next
edit 20
set category 86
set action block
next
edit 21
set category 88
set action block
next
edit 22
set category 90
set action block
next
edit 23
set category 91
set action block
next
end
end
next
edit "monitor-all"
set comment "Monitor and log all visited URLs, flow-based."
set log-all-url enable
set web-content-log disable
set web-filter-command-block-log disable
set web-filter-cookie-log disable
set web-url-log disable
set web-invalid-domain-log disable
set web-ftgd-err-log disable
config ftgd-wf
unset options
config filters
edit 1
set category 1
next
edit 2
set category 3
next
edit 3
set category 4
next
edit 4
set category 5
next
edit 5
set category 6
next
edit 6
set category 12
next
edit 7
set category 59
next
edit 8
set category 62
next
edit 9
set category 83
next
edit 10
set category 2
next
edit 11
set category 7
next
edit 12
set category 8
next
edit 13
set category 9
next
edit 14
set category 11
next
edit 15
set category 13
next
edit 16
set category 14
next
edit 17
set category 15
next
edit 18
set category 16
next
edit 19
set category 57
next
edit 20
set category 63
next
edit 21
set category 64
next
edit 22
set category 65
next
edit 23
set category 66
next
edit 24
set category 67
next
edit 25
set category 19
next
edit 26
set category 24
next
edit 27
set category 25
next
edit 28
set category 72
next
edit 29
set category 75
next
edit 30
set category 76
next
edit 31
set category 26
next
edit 32
set category 61
next
edit 33
set category 86
next
edit 34
set category 17
next
edit 35
set category 18
next
edit 36
set category 20
next
edit 37
set category 23
next
edit 38
set category 28
next
edit 39
set category 29
next
edit 40
set category 30
next
edit 41
set category 33
next
edit 42
set category 34
next
edit 43
set category 35
next
edit 44
set category 36
next
edit 45
set category 37
next
edit 46
set category 38
next
edit 47
set category 39
next
edit 48
set category 40
next
edit 49
set category 42
next
edit 50
set category 44
next
edit 51
set category 46
next
edit 52
set category 47
next
edit 53
set category 48
next
edit 54
set category 54
next
edit 55
set category 55
next
edit 56
set category 58
next
edit 57
set category 68
next
edit 58
set category 69
next
edit 59
set category 70
next
edit 60
set category 71
next
edit 61
set category 77
next
edit 62
set category 78
next
edit 63
set category 79
next
edit 64
set category 80
next
edit 65
set category 82
next
edit 66
set category 85
next
edit 67
set category 87
next
edit 68
set category 31
next
edit 69
set category 41
next
edit 70
set category 43
next
edit 71
set category 49
next
edit 72
set category 50
next
edit 73
set category 51
next
edit 74
set category 52
next
edit 75
set category 53
next
edit 76
set category 56
next
edit 77
set category 81
next
edit 78
set category 84
next
edit 79
next
edit 80
set category 88
next
edit 81
set category 89
next
edit 82
set category 90
next
edit 83
set category 91
next
edit 84
set category 92
next
edit 85
set category 93
next
edit 86
set category 94
next
edit 87
set category 95
next
end
end
next
edit "URL_Policy"
config web
set urlfilter-table 1
end
config ftgd-wf
unset options
config filters
edit 1
set category 1
set action block
next
edit 2
set category 2
set action block
next
edit 3
set category 3
set action block
next
edit 4
set category 4
next
edit 5
set category 5
next
edit 6
set category 6
next
edit 7
set category 7
set action block
next
edit 8
set category 8
set action block
next
edit 9
set category 9
set action block
next
edit 11
set category 11
set action block
next
edit 12
set category 12
next
edit 13
set category 13
set action block
next
edit 14
set category 14
set action block
next
edit 15
set category 15
set action block
next
edit 16
set category 16
set action block
next
edit 17
set category 17
set action block
next
edit 19
set category 19
set action block
next
edit 20
set category 20
set action block
next
edit 25
set category 25
set action block
next
edit 26
set category 26
set action block
next
edit 28
set category 28
set action block
next
edit 29
set category 29
set action block
next
edit 36
set category 36
set action block
next
edit 37
set category 37
set action block
next
edit 57
set category 57
set action block
next
edit 59
set category 59
set action block
next
edit 61
set category 61
set action block
next
edit 62
set category 62
next
edit 63
set category 63
set action block
next
edit 64
set category 64
set action block
next
edit 65
set category 65
set action block
next
edit 66
set category 66
set action block
next
edit 67
set category 67
set action block
next
edit 72
set category 72
set action block
next
edit 83
set category 83
set action block
next
edit 86
set category 86
set action block
next
edit 88
set category 88
set action block
next
edit 89
set category 89
set action block
next
edit 90
set category 90
set action block
next
edit 91
set category 91
set action block
next
edit 96
set category 96
set action block
next
edit 98
set category 98
set action block
next
edit 99
set category 99
set action block
next
edit 140
set category 140
set action block
next
edit 141
set category 141
set action block
next
end
end
next
end
config switch-controller traffic-policy
edit "quarantine"
set description "Rate control for quarantined traffic"
set guaranteed-bandwidth 163840
set guaranteed-burst 8192
set maximum-burst 163840
set id 1
set cos-queue 0
next
edit "sniffer"
set description "Rate control for sniffer mirrored traffic"
set guaranteed-bandwidth 50000
set guaranteed-burst 8192
set maximum-burst 163840
set id 2
set cos-queue 0
next
end
config firewall address
edit "EMS_ALL_UNKNOWN_CLIENTS"
set uuid d69caae0-e987-51ed-ec03-247ea7f83f9b
set type dynamic
set sub-type ems-tag
set dirty clean
next
edit "EMS_ALL_UNMANAGEABLE_CLIENTS"
set uuid d6935cb0-e987-51ed-b6b2-1d9f9dd2135f
set type dynamic
set sub-type ems-tag
set dirty clean
next
edit "FABRIC_DEVICE"
set uuid f3106e0c-e97b-51ed-1188-f9569cd4ca78
set comment "IPv4 addresses of Fabric Devices."
next
edit "FCTEMS_ALL_FORTICLOUD_SERVERS"
set uuid e5eb9bce-e98b-51ed-0d91-d6f8ab805272
set type dynamic
set sub-type ems-tag
set dirty clean
next
edit "FIREWALL_AUTH_PORTAL_ADDRESS"
set uuid f31064a2-e97b-51ed-316a-0f7ec1659d62
next
edit "SSLVPN_TUNNEL_ADDR1"
set uuid f312870a-e97b-51ed-7f78-011d3dd04913
set type iprange
set start-ip [Link]
set end-ip [Link]
next
edit "all"
set uuid b57f2cb2-0e44-51ed-1497-d0d1fa4b5619
next
edit "[Link]"
set uuid bc17567a-6be2-51ed-4468-5489cc499b73
set type fqdn
set fqdn "[Link]"
next
edit "[Link]"
set uuid d20b47de-6be2-51ed-7571-4aee948535d0
set type fqdn
set fqdn "[Link]"
next
edit "[Link]"
set uuid 6655118c-6b24-51ed-4698-cf4d517eae6e
set type fqdn
set fqdn "[Link]"
next
edit "[Link]"
set uuid c8e5bd24-6be2-51ed-b8e0-96713a897f98
set type fqdn
set fqdn "[Link]"
next
edit "[Link]"
set uuid aecfe50e-6be2-51ed-3b6f-665b69114abb
set type fqdn
set fqdn "[Link]"
next
edit "[Link]"
set uuid f2fe40ce-e97b-51ed-936a-fd9628afd0f8
set type fqdn
set fqdn "[Link]"
next
edit "lan"
set uuid f867bb26-e97b-51ed-0da0-754664f2645b
set type interface-subnet
set subnet [Link] [Link]
set interface "lan"
next
edit "[Link]"
set uuid f2fe10c2-e97b-51ed-4b1c-ce0d9bd7826b
set type fqdn
set fqdn "[Link]"
next
edit "[Link]"
set uuid f2fdf678-e97b-51ed-55ce-ec1a4fedcc0d
set type fqdn
set fqdn "[Link]"
next
edit "[Link]"
set uuid f2fe28d2-e97b-51ed-44ab-8b4472046550
set type fqdn
set fqdn "[Link]"
next
edit "[Link]"
set uuid d8738682-6b23-51ed-7204-11267c9dad46
set type fqdn
set fqdn "[Link]"
next
edit "[Link]"
set uuid e76fc74a-6b23-51ed-ead9-defd07cc9616
set type fqdn
set fqdn "[Link]"
next
edit "none"
set uuid f2fdd832-e97b-51ed-6a76-eaa8d0df66bb
set subnet [Link] [Link]
next
edit "[Link]"
set uuid 4c8eb342-6bf2-51ed-1f19-ecea4ac8321b
set type fqdn
set fqdn "[Link]"
next
edit "[Link]"
set uuid 4f21550c-6b24-51ed-924b-38b3eff1d85c
set type fqdn
set fqdn "[Link]"
next
edit "[Link]"
set uuid 455305f6-699e-51ee-b3a0-dce427e0e51f
set type fqdn
set fqdn "[Link]"
next
edit "[Link]"
set uuid 5ed476aa-6b24-51ed-dcd8-ec40dc3bcdd3
set type fqdn
set fqdn "[Link]"
next
edit "[Link]"
set uuid f2fe70a8-e97b-51ed-3796-f9d06baa087a
set type fqdn
set fqdn "*.[Link]"
next
edit "[Link]"
set uuid f2fe58b6-e97b-51ed-ce2b-45c2c6bb28a6
set type fqdn
set fqdn "*.[Link]"
next
end
config firewall address6
edit "SSLVPN_TUNNEL_IPv6_ADDR1"
set uuid f31297f4-e97b-51ed-a513-92f5954ce775
set ip6 [Link]/120
next
edit "all"
set uuid f2ff02b6-e97b-51ed-ec9a-81effb8c9a09
next
edit "none"
set uuid f2ff17ce-e97b-51ed-3e7b-9703d938b754
set ip6 ::/128
next
end
config firewall addrgrp
edit "G Suite"
set uuid f2fe8cd2-e97b-51ed-4750-58f529dbfd27
set member "[Link]" "[Link]"
next
edit "Microsoft Office 365"
set uuid f2febf9a-e97b-51ed-8446-6f16b820f1c5
set member "[Link]" "[Link]" "[Link]"
next
end
config firewall wildcard-fqdn custom
edit "Adobe Login"
set uuid f4d18320-e97b-51ed-6e24-43bf31e6a0bb
set wildcard-fqdn "*.[Link]"
next
edit "Gotomeeting"
set uuid f4d1e608-e97b-51ed-861d-01d5d7272f21
set wildcard-fqdn "*.[Link]"
next
edit "Windows update 2"
set uuid f4d21a92-e97b-51ed-8ba4-87fce076b674
set wildcard-fqdn "*.[Link]"
next
edit "adobe"
set uuid f4d17bbe-e97b-51ed-40eb-f47302f28a54
set wildcard-fqdn "*.[Link]"
next
edit "android"
set uuid f4d18a14-e97b-51ed-bbe7-aa12a9792f2b
set wildcard-fqdn "*.[Link]"
next
edit "apple"
set uuid f4d19108-e97b-51ed-5dc3-098e84797cfe
set wildcard-fqdn "*.[Link]"
next
edit "appstore"
set uuid f4d19806-e97b-51ed-0022-a633e90511fa
set wildcard-fqdn "*.[Link]"
next
edit "[Link]"
set uuid f4d19f04-e97b-51ed-b8c0-7f5b6c40f445
set wildcard-fqdn "*.[Link]"
next
edit "[Link]"
set uuid f4d23f4a-e97b-51ed-d076-04fc92435b09
set wildcard-fqdn "*[Link]"
next
edit "cdn-apple"
set uuid 0277fc2e-e987-51ed-4856-c93d4d03ea47
set wildcard-fqdn "*.[Link]"
next
edit "citrix"
set uuid f4d1a602-e97b-51ed-7fcb-6b7511da60dd
set wildcard-fqdn "*.[Link]"
next
edit "[Link]"
set uuid f4d1ad00-e97b-51ed-8b0b-461d97bcc77e
set wildcard-fqdn "*.[Link]"
next
edit "eease"
set uuid f4d1b3fe-e97b-51ed-842b-36a7840c9230
set wildcard-fqdn "*.[Link]"
next
edit "firefox update server"
set uuid f4d1bb10-e97b-51ed-8195-397313d4b6cf
set wildcard-fqdn "aus*.[Link]"
next
edit "fortinet"
set uuid f4d1c27c-e97b-51ed-5389-580b6d8ef270
set wildcard-fqdn "*.[Link]"
next
edit "google-drive"
set uuid f4d1d0aa-e97b-51ed-5746-2a3a22a69a0e
set wildcard-fqdn "*[Link]"
next
edit "google-play"
set uuid f4d22942-e97b-51ed-18bc-dfc0e8bd249d
set wildcard-fqdn "*[Link]"
next
edit "google-play2"
set uuid f4d1d7c6-e97b-51ed-7914-21bab4e99fcd
set wildcard-fqdn "*.[Link]"
next
edit "google-play3"
set uuid f4d1deec-e97b-51ed-76f6-bc0bec74fc2c
set wildcard-fqdn "*.[Link]"
next
edit "[Link]"
set uuid f4d1c998-e97b-51ed-22f2-b6e3bf259942
set wildcard-fqdn "*.[Link]"
next
edit "icloud"
set uuid f4d1ef5e-e97b-51ed-b13a-05494af0c6ad
set wildcard-fqdn "*.[Link]"
next
edit "itunes"
set uuid f4d1f6de-e97b-51ed-6385-768d2b1b02fc
set wildcard-fqdn "*[Link]"
next
edit "[Link]"
set uuid f4d22208-e97b-51ed-1d1b-acb566509c2c
set wildcard-fqdn "*.[Link]"
next
edit "microsoft"
set uuid f4d1fe04-e97b-51ed-e460-c0a3e72d728f
set wildcard-fqdn "*.[Link]"
next
edit "mzstatic-apple"
set uuid 02780142-e987-51ed-58c8-6ac7efdae24e
set wildcard-fqdn "*.[Link]"
next
edit "skype"
set uuid f4d2052a-e97b-51ed-37a2-f3df8619e1f4
set wildcard-fqdn "*.[Link]"
next
edit "[Link]"
set uuid f4d20c50-e97b-51ed-766c-e82d3e5e2faf
set wildcard-fqdn "*.[Link]"
next
edit "[Link]"
set uuid f4d237ac-e97b-51ed-6736-9d3e25df745f
set wildcard-fqdn "*[Link]"
next
edit "[Link]"
set uuid f4d2307c-e97b-51ed-e58e-6cf95a9c6b01
set wildcard-fqdn "*[Link]"
next
edit "verisign"
set uuid f4d2136c-e97b-51ed-59fe-0ee5634a34bb
set wildcard-fqdn "*.[Link]"
next
end
config firewall ssl-ssh-profile
edit "certificate-inspection"
set comment "Read-only SSL handshake inspection profile."
config https
set ports 443
set status certificate-inspection
end
config ftps
set status disable
end
config imaps
set status disable
end
config pop3s
set status disable
end
config smtps
set status disable
end
config ssh
set ports 22
set status disable
end
config dot
set status disable
end
next
edit "custom-deep-inspection"
set comment "Customizable deep inspection profile."
config https
set ports 443
set status deep-inspection
set unsupported-ssl-version allow
end
config ftps
set ports 990
set status deep-inspection
set unsupported-ssl-version allow
end
config imaps
set ports 993
set status deep-inspection
set unsupported-ssl-version allow
end
config pop3s
set ports 995
set status deep-inspection
set unsupported-ssl-version allow
end
config smtps
set ports 465
set status deep-inspection
set unsupported-ssl-version allow
end
config ssh
set ports 22
set status disable
end
config ssl-exempt
edit 1
set fortiguard-category 31
next
edit 2
set fortiguard-category 33
next
edit 3
set type wildcard-fqdn
set wildcard-fqdn "adobe"
next
edit 4
set type wildcard-fqdn
set wildcard-fqdn "Adobe Login"
next
edit 5
set type wildcard-fqdn
set wildcard-fqdn "android"
next
edit 6
set type wildcard-fqdn
set wildcard-fqdn "apple"
next
edit 7
set type wildcard-fqdn
set wildcard-fqdn "appstore"
next
edit 8
set type wildcard-fqdn
set wildcard-fqdn "[Link]"
next
edit 9
set type wildcard-fqdn
set wildcard-fqdn "citrix"
next
edit 10
set type wildcard-fqdn
set wildcard-fqdn "[Link]"
next
edit 11
set type wildcard-fqdn
set wildcard-fqdn "eease"
next
edit 12
set type wildcard-fqdn
set wildcard-fqdn "firefox update server"
next
edit 13
set type wildcard-fqdn
set wildcard-fqdn "fortinet"
next
edit 14
set type wildcard-fqdn
set wildcard-fqdn "[Link]"
next
edit 15
set type wildcard-fqdn
set wildcard-fqdn "google-drive"
next
edit 16
set type wildcard-fqdn
set wildcard-fqdn "google-play2"
next
edit 17
set type wildcard-fqdn
set wildcard-fqdn "google-play3"
next
edit 18
set type wildcard-fqdn
set wildcard-fqdn "Gotomeeting"
next
edit 19
set type wildcard-fqdn
set wildcard-fqdn "icloud"
next
edit 20
set type wildcard-fqdn
set wildcard-fqdn "itunes"
next
edit 21
set type wildcard-fqdn
set wildcard-fqdn "microsoft"
next
edit 22
set type wildcard-fqdn
set wildcard-fqdn "skype"
next
edit 23
set type wildcard-fqdn
set wildcard-fqdn "[Link]"
next
edit 24
set type wildcard-fqdn
set wildcard-fqdn "verisign"
next
edit 25
set type wildcard-fqdn
set wildcard-fqdn "Windows update 2"
next
edit 26
set type wildcard-fqdn
set wildcard-fqdn "[Link]"
next
edit 27
set type wildcard-fqdn
set wildcard-fqdn "google-play"
next
edit 28
set type wildcard-fqdn
set wildcard-fqdn "[Link]"
next
edit 29
set type wildcard-fqdn
set wildcard-fqdn "[Link]"
next
edit 30
set type wildcard-fqdn
set wildcard-fqdn "[Link]"
next
edit 31
set type wildcard-fqdn
set wildcard-fqdn "cdn-apple"
next
edit 32
set type wildcard-fqdn
set wildcard-fqdn "mzstatic-apple"
next
end
config dot
set status disable
end
next
edit "deep-inspection"
set comment "Read-only deep inspection profile."
config https
set ports 443
set status deep-inspection
set unsupported-ssl-version allow
end
config ftps
set ports 990
set status deep-inspection
set unsupported-ssl-version allow
end
config imaps
set ports 993
set status deep-inspection
set unsupported-ssl-version allow
end
config pop3s
set ports 995
set status deep-inspection
set unsupported-ssl-version allow
end
config smtps
set ports 465
set status deep-inspection
set unsupported-ssl-version allow
end
config ssh
set ports 22
set status disable
end
config ssl-exempt
edit 1
set fortiguard-category 31
next
edit 2
set fortiguard-category 33
next
edit 3
set type wildcard-fqdn
set wildcard-fqdn "adobe"
next
edit 4
set type wildcard-fqdn
set wildcard-fqdn "Adobe Login"
next
edit 5
set type wildcard-fqdn
set wildcard-fqdn "android"
next
edit 6
set type wildcard-fqdn
set wildcard-fqdn "apple"
next
edit 7
set type wildcard-fqdn
set wildcard-fqdn "appstore"
next
edit 8
set type wildcard-fqdn
set wildcard-fqdn "[Link]"
next
edit 9
set type wildcard-fqdn
set wildcard-fqdn "citrix"
next
edit 10
set type wildcard-fqdn
set wildcard-fqdn "[Link]"
next
edit 11
set type wildcard-fqdn
set wildcard-fqdn "eease"
next
edit 12
set type wildcard-fqdn
set wildcard-fqdn "firefox update server"
next
edit 13
set type wildcard-fqdn
set wildcard-fqdn "fortinet"
next
edit 14
set type wildcard-fqdn
set wildcard-fqdn "[Link]"
next
edit 15
set type wildcard-fqdn
set wildcard-fqdn "google-drive"
next
edit 16
set type wildcard-fqdn
set wildcard-fqdn "google-play2"
next
edit 17
set type wildcard-fqdn
set wildcard-fqdn "google-play3"
next
edit 18
set type wildcard-fqdn
set wildcard-fqdn "Gotomeeting"
next
edit 19
set type wildcard-fqdn
set wildcard-fqdn "icloud"
next
edit 20
set type wildcard-fqdn
set wildcard-fqdn "itunes"
next
edit 21
set type wildcard-fqdn
set wildcard-fqdn "microsoft"
next
edit 22
set type wildcard-fqdn
set wildcard-fqdn "skype"
next
edit 23
set type wildcard-fqdn
set wildcard-fqdn "[Link]"
next
edit 24
set type wildcard-fqdn
set wildcard-fqdn "verisign"
next
edit 25
set type wildcard-fqdn
set wildcard-fqdn "Windows update 2"
next
edit 26
set type wildcard-fqdn
set wildcard-fqdn "[Link]"
next
edit 27
set type wildcard-fqdn
set wildcard-fqdn "google-play"
next
edit 28
set type wildcard-fqdn
set wildcard-fqdn "[Link]"
next
edit 29
set type wildcard-fqdn
set wildcard-fqdn "[Link]"
next
edit 30
set type wildcard-fqdn
set wildcard-fqdn "[Link]"
next
edit 31
set type wildcard-fqdn
set wildcard-fqdn "cdn-apple"
next
edit 32
set type wildcard-fqdn
set wildcard-fqdn "mzstatic-apple"
next
end
config dot
set status disable
end
next
edit "no-inspection"
set comment "Read-only profile that does no inspection."
config https
set status disable
end
config ftps
set status disable
end
config imaps
set status disable
end
config pop3s
set status disable
end
config smtps
set status disable
end
config ssh
set ports 22
set status disable
end
config dot
set status disable
end
next
end
config system settings
set h323-direct-model enable
end
config firewall multicast-address
edit "Bonjour"
set start-ip [Link]
set end-ip [Link]
next
edit "EIGRP"
set start-ip [Link]
set end-ip [Link]
next
edit "OSPF"
set start-ip [Link]
set end-ip [Link]
next
edit "all"
set start-ip [Link]
set end-ip [Link]
next
edit "all_hosts"
set start-ip [Link]
set end-ip [Link]
next
edit "all_routers"
set start-ip [Link]
set end-ip [Link]
next
end
config firewall multicast-address6
edit "all"
set ip6 ff00::/8
next
end
config firewall service category
edit "General"
set comment "General services."
next
edit "Web Access"
set comment "Web access."
next
edit "File Access"
set comment "File access."
next
edit "Email"
set comment "Email services."
next
edit "Network Services"
set comment "Network services."
next
edit "Authentication"
set comment "Authentication service."
next
edit "Remote Access"
set comment "Remote access."
next
edit "Tunneling"
set comment "Tunneling service."
next
edit "VoIP, Messaging & Other Applications"
set comment "VoIP, messaging, and other applications."
next
edit "Web Proxy"
set comment "Explicit web proxy."
next
end
config ips sensor
edit "all_default"
set comment "All predefined signatures with default setting."
config entries
edit 1
next
end
next
edit "all_default_pass"
set comment "All predefined signatures with PASS action."
config entries
edit 1
set action pass
next
end
next
edit "default"
set comment "Prevent critical attacks."
config entries
edit 1
set severity medium high critical
next
end
next
edit "high_security"
set comment "Blocks all Critical/High/Medium and some Low severity vulnerabilities"
set block-malicious-url enable
config entries
edit 1
set severity medium high critical
set status enable
set action block
next
edit 2
set severity low
next
end
next
edit "protect_client"
set comment "Protect against client-side vulnerabilities."
config entries
edit 1
set location client
next
end
next
edit "protect_email_server"
set comment "Protect against email server-side vulnerabilities."
config entries
edit 1
set location server
set protocol SMTP POP3 IMAP
next
end
next
edit "protect_http_server"
set comment "Protect against HTTP server-side vulnerabilities."
config entries
edit 1
set location server
set protocol HTTP
next
end
next
edit "sniffer-profile"
set comment "Monitor IPS attacks."
config entries
edit 1
set severity medium high critical
next
end
next
edit "wifi-default"
set comment "Default configuration for offloading WiFi traffic."
config entries
edit 1
set severity medium high critical
next
end
next
end
config firewall shaper traffic-shaper
edit "guarantee-100kbps"
set guaranteed-bandwidth 100
set maximum-bandwidth 1048576
set per-policy enable
next
edit "high-priority"
set maximum-bandwidth 1048576
set per-policy enable
next
edit "low-priority"
set maximum-bandwidth 1048576
set priority low
set per-policy enable
next
edit "medium-priority"
set maximum-bandwidth 1048576
set priority medium
set per-policy enable
next
edit "shared-1M-pipe"
set maximum-bandwidth 1024
next
end
config application list
edit "block-high-risk"
config entries
edit 1
set category 2 6
next
edit 2
set action pass
next
end
next
edit "default"
set comment "Monitor all applications."
config entries
edit 1
set action pass
next
end
next
edit "sniffer-profile"
set comment "Monitor all applications."
unset options
config entries
edit 1
set action pass
next
end
next
edit "wifi-default"
set comment "Default configuration for offloading WiFi traffic."
set deep-app-inspection disable
config entries
edit 1
set action pass
set log disable
next
end
next
end
config dlp data-type
edit "credit-card"
set pattern "\\b([2-6]{1}\\d{3})[- ]?(\\d{4})[- ]?(\\d{2})[- ]?(\\d{2})[- ]?(\\
d{2,4})\\b"
set verify "built-in"
set look-back 20
set transform "\\b\\1[- ]?\\2[- ]?\\3[- ]?\\4[- ]?\\5\\b"
next
edit "hex"
set pattern "built-in"
next
edit "keyword"
set pattern "built-in"
next
edit "mip-label"
set pattern "^[[:xdigit:]]{8}-[[:xdigit:]]{4}-[[:xdigit:]]{4}-[[:xdigit:]]{4}-
[[:xdigit:]]{12}$"
set transform "built-in"
next
edit "regex"
set pattern "built-in"
next
edit "ssn-us"
set pattern "\\b(\\d{3})-(\\d{2})-(\\d{4})\\b"
set verify "(?<!-)\\b(?!666|000|9\\d{2})\\d{3}-(?!00)\\d{2}-(?!0{4})\\d{4}\\b(?!-)"
set look-back 12
set transform "\\b\\1-\\2-\\3\\b"
next
end
config dlp dictionary
edit "SSN-Sensor-r1d"
set uuid b01b2356-e987-51ed-32f6-f96d7f086a5b
config entries
edit 1
set type "regex"
set pattern "WebEx"
next
end
next
edit "def-cc-dict"
set uuid b01aaeee-e987-51ed-9353-9374eb1dcc58
config entries
edit 1
set type "credit-card"
next
end
next
edit "def-ssn-dict"
set uuid b01bebb0-e987-51ed-80dc-8a223d5c813c
config entries
edit 1
set type "ssn-us"
next
end
next
end
config dlp filepattern
edit 1
set name "builtin-patterns"
config entries
edit "*.bat"
next
edit "*.com"
next
edit "*.dll"
next
edit "*.doc"
next
edit "*.exe"
next
edit "*.gz"
next
edit "*.hta"
next
edit "*.ppt"
next
edit "*.rar"
next
edit "*.scr"
next
edit "*.tar"
next
edit "*.tgz"
next
edit "*.vb?"
next
edit "*.wps"
next
edit "*.xl?"
next
edit "*.zip"
next
edit "*.pif"
next
edit "*.cpl"
next
end
next
edit 2
set name "all_executables"
config entries
edit "bat"
set filter-type type
set file-type bat
next
edit "exe"
set filter-type type
set file-type exe
next
edit "elf"
set filter-type type
set file-type elf
next
edit "hta"
set filter-type type
set file-type hta
next
end
next
end
config dlp sensitivity
edit "Critical"
next
edit "Private"
next
edit "Warning"
next
end
config dlp sensor
edit "SSN-Sensor-r1s"
config entries
edit 1
set dictionary "SSN-Sensor-r1d"
next
end
next
edit "def-cc-sensor"
config entries
edit 1
set dictionary "def-cc-dict"
next
end
next
edit "def-ssn-sensor"
config entries
edit 1
set dictionary "def-ssn-dict"
next
end
next
end
config dlp profile
edit "Content_Archive"
set full-archive-proto smtp pop3 imap http-get http-post ftp nntp
set summary-proto smtp pop3 imap http-get http-post ftp nntp
next
edit "Content_Summary"
set summary-proto smtp pop3 imap http-get http-post ftp nntp
next
edit "Credit-Card"
config rule
edit 1
set name "Credit-Card-Filter"
set severity high
set proto smtp pop3 imap http-get http-post
set filter-by sensor
set sensor "def-cc-sensor"
set action log-only
next
edit 2
set name "Credit-Card-Filter"
set severity high
set type message
set proto smtp pop3 imap http-post
set filter-by sensor
set sensor "def-cc-sensor"
set action log-only
next
end
next
edit "Large-File"
config rule
edit 1
set name "Large-File-Filter"
set proto smtp pop3 imap http-get http-post
set file-size 5120
set action log-only
next
end
next
edit "SSN-Sensor"
set comment "Match SSN numbers but NOT WebEx invite emails."
config rule
edit 1
set name "SSN-Sensor-Filter"
set severity high
set type message
set proto smtp pop3 imap
set filter-by sensor
set sensor "SSN-Sensor-r1s"
next
edit 2
set name "SSN-Sensor-Filter"
set severity high
set type message
set proto smtp pop3 imap
set filter-by sensor
set sensor "def-ssn-sensor"
set action log-only
next
edit 3
set name "SSN-Sensor-Filter"
set severity high
set proto smtp pop3 imap http-get http-post ftp
set filter-by sensor
set sensor "def-ssn-sensor"
set action log-only
next
end
next
edit "default"
set comment "Default profile."
next
edit "sniffer-profile"
set comment "Log a summary of email and web traffic."
set summary-proto smtp pop3 imap http-get http-post
next
end
config log threat-weight
config web
edit 1
set category 26
set level high
next
edit 2
set category 61
set level high
next
edit 3
set category 86
set level high
next
edit 4
set category 1
set level medium
next
edit 5
set category 3
set level medium
next
edit 6
set category 4
set level medium
next
edit 7
set category 5
set level medium
next
edit 8
set category 6
set level medium
next
edit 9
set category 12
set level medium
next
edit 10
set category 59
set level medium
next
edit 11
set category 62
set level medium
next
edit 12
set category 83
set level medium
next
edit 13
set category 72
next
edit 14
set category 14
next
edit 15
set category 96
set level medium
next
end
config application
edit 1
set category 2
next
edit 2
set category 6
set level medium
next
end
end
config voip profile
edit "default"
set comment "Default VoIP profile."
next
edit "strict"
config sip
set malformed-request-line discard
set malformed-header-via discard
set malformed-header-from discard
set malformed-header-to discard
set malformed-header-call-id discard
set malformed-header-cseq discard
set malformed-header-rack discard
set malformed-header-rseq discard
set malformed-header-contact discard
set malformed-header-record-route discard
set malformed-header-route discard
set malformed-header-expires discard
set malformed-header-content-type discard
set malformed-header-content-length discard
set malformed-header-max-forwards discard
set malformed-header-allow discard
set malformed-header-p-asserted-identity discard
set malformed-header-sdp-v discard
set malformed-header-sdp-o discard
set malformed-header-sdp-s discard
set malformed-header-sdp-i discard
set malformed-header-sdp-c discard
set malformed-header-sdp-b discard
set malformed-header-sdp-z discard
set malformed-header-sdp-k discard
set malformed-header-sdp-a discard
set malformed-header-sdp-t discard
set malformed-header-sdp-r discard
set malformed-header-sdp-m discard
end
next
end
config vpn ssl web host-check-software
edit "AVG-Internet-Security-AV"
set guid "17DDD097-36FF-435F-9E1B-52D74245D6BF"
next
edit "AVG-Internet-Security-AV-Vista-Win7"
set guid "0C939084-9E57-CBDB-EA61-0B0C7F62AF82"
next
edit "AVG-Internet-Security-FW"
set type fw
set guid "8DECF618-9569-4340-B34A-D78D28969B66"
next
edit "AVG-Internet-Security-FW-Vista-Win7"
set type fw
set guid "34A811A1-D438-CA83-C13E-A23981B1E8F9"
next
edit "CA-Anti-Virus"
set guid "17CFD1EA-56CF-40B5-A06B-BD3A27397C93"
next
edit "CA-Internet-Security-AV"
set guid "6B98D35F-BB76-41C0-876B-A50645ED099A"
next
edit "CA-Internet-Security-AV-Vista-Win7"
set guid "3EED0195-0A4B-4EF3-CC4F-4F401BDC245F"
next
edit "CA-Internet-Security-FW"
set type fw
set guid "38102F93-1B6E-4922-90E1-A35D8DC6DAA3"
next
edit "CA-Internet-Security-FW-Vista-Win7"
set type fw
set guid "06D680B0-4024-4FAB-E710-E675E50F6324"
next
edit "CA-Personal-Firewall"
set type fw
set guid "14CB4B80-8E52-45EA-905E-67C1267B4160"
next
edit "ESET-Smart-Security-AV"
set guid "19259FAE-8396-A113-46DB-15B0E7DFA289"
next
edit "ESET-Smart-Security-FW"
set type fw
set guid "211E1E8B-C9F9-A04B-6D84-BC85190CE5F2"
next
edit "F-Secure-Internet-Security-AV"
set guid "E7512ED5-4245-4B4D-AF3A-382D3F313F15"
next
edit "F-Secure-Internet-Security-AV-Vista-Win7"
set guid "15414183-282E-D62C-CA37-EF24860A2F17"
next
edit "F-Secure-Internet-Security-FW"
set type fw
set guid "D4747503-0346-49EB-9262-997542F79BF4"
next
edit "F-Secure-Internet-Security-FW-Vista-Win7"
set type fw
set guid "2D7AC0A6-6241-D774-E168-461178D9686C"
next
edit "FortiClient-AV"
set guid "1A0271D5-3D4F-46DB-0C2C-AB37BA90D9F7"
next
edit "FortiClient-AV-Vista"
set guid "385618A6-2256-708E-3FB9-7E98B93F91F9"
next
edit "FortiClient-FW"
set type fw
set guid "528CB157-D384-4593-AAAA-E42DFF111CED"
next
edit "FortiClient-FW-Vista"
set type fw
set guid "006D9983-6839-71D6-14E6-D7AD47ECD682"
next
edit "FortiClient5-AV"
set guid "5EEDDB8C-C27A-6714-3657-DBD811D1F1B7"
next
edit "Kaspersky-AV"
set guid "2C4D4BC6-0793-4956-A9F9-E252435469C0"
next
edit "Kaspersky-AV-Vista-Win7"
set guid "AE1D740B-8F0F-D137-211D-873D44B3F4AE"
next
edit "Kaspersky-FW"
set type fw
set guid "2C4D4BC6-0793-4956-A9F9-E252435469C0"
next
edit "Kaspersky-FW-Vista-Win7"
set type fw
set guid "9626F52E-C560-D06F-0A42-2E08BA60B3D5"
next
edit "McAfee-Internet-Security-Suite-AV"
set guid "84B5EE75-6421-4CDE-A33A-DD43BA9FAD83"
next
edit "McAfee-Internet-Security-Suite-AV-Vista-Win7"
set guid "86355677-4064-3EA7-ABB3-1B136EB04637"
next
edit "McAfee-Internet-Security-Suite-FW"
set type fw
set guid "94894B63-8C7F-4050-BDA4-813CA00DA3E8"
next
edit "McAfee-Internet-Security-Suite-FW-Vista-Win7"
set type fw
set guid "BE0ED752-0A0B-3FFF-80EC-B2269063014C"
next
edit "McAfee-Virus-Scan-Enterprise"
set guid "918A2B0B-2C60-4016-A4AB-E868DEABF7F0"
next
edit "Norton-360-2.0-AV"
set guid "A5F1BC7C-EA33-4247-961C-0217208396C4"
next
edit "Norton-360-2.0-FW"
set type fw
set guid "371C0A40-5A0C-4AD2-A6E5-69C02037FBF3"
next
edit "Norton-360-3.0-AV"
set guid "E10A9785-9598-4754-B552-92431C1C35F8"
next
edit "Norton-360-3.0-FW"
set type fw
set guid "7C21A4C9-F61F-4AC4-B722-A6E19C16F220"
next
edit "Norton-Internet-Security-AV"
set guid "E10A9785-9598-4754-B552-92431C1C35F8"
next
edit "Norton-Internet-Security-AV-Vista-Win7"
set guid "88C95A36-8C3B-2F2C-1B8B-30FCCFDC4855"
next
edit "Norton-Internet-Security-FW"
set type fw
set guid "7C21A4C9-F61F-4AC4-B722-A6E19C16F220"
next
edit "Norton-Internet-Security-FW-Vista-Win7"
set type fw
set guid "B0F2DB13-C654-2E74-30D4-99C9310F0F2E"
next
edit "Panda-Antivirus+Firewall-2008-AV"
set guid "EEE2D94A-D4C1-421A-AB2C-2CE8FE51747A"
next
edit "Panda-Antivirus+Firewall-2008-FW"
set type fw
set guid "7B090DC0-8905-4BAF-8040-FD98A41C8FB8"
next
edit "Panda-Internet-Security-2006~2007-FW"
set type fw
set guid "4570FB70-5C9E-47E9-B16C-A3A6A06C4BF0"
next
edit "Panda-Internet-Security-2008~2009-FW"
set type fw
set guid "7B090DC0-8905-4BAF-8040-FD98A41C8FB8"
next
edit "Panda-Internet-Security-AV"
set guid "4570FB70-5C9E-47E9-B16C-A3A6A06C4BF0"
next
edit "Sophos-Anti-Virus"
set guid "3F13C776-3CBE-4DE9-8BF6-09E5183CA2BD"
next
edit "Sophos-Enpoint-Secuirty-and-Control-AV-Vista-Win7"
set guid "479CCF92-4960-B3E0-7373-BF453B467D2C"
next
edit "Sophos-Enpoint-Secuirty-and-Control-FW"
set type fw
set guid "0786E95E-326A-4524-9691-41EF88FB52EA"
next
edit "Sophos-Enpoint-Secuirty-and-Control-FW-Vista-Win7"
set type fw
set guid "7FA74EB7-030F-B2B8-582C-1670C5953A57"
next
edit "Symantec-Endpoint-Protection-AV"
set guid "FB06448E-52B8-493A-90F3-E43226D3305C"
next
edit "Symantec-Endpoint-Protection-AV-Vista-Win7"
set guid "88C95A36-8C3B-2F2C-1B8B-30FCCFDC4855"
next
edit "Symantec-Endpoint-Protection-FW"
set type fw
set guid "BE898FE3-CD0B-4014-85A9-03DB9923DDB6"
next
edit "Symantec-Endpoint-Protection-FW-Vista-Win7"
set type fw
set guid "B0F2DB13-C654-2E74-30D4-99C9310F0F2E"
next
edit "Trend-Micro-AV"
set guid "7D2296BC-32CC-4519-917E-52E652474AF5"
next
edit "Trend-Micro-AV-Vista-Win7"
set guid "48929DFC-7A52-A34F-8351-C4DBEDBD9C50"
next
edit "Trend-Micro-FW"
set type fw
set guid "3E790E9E-6A5D-4303-A7F9-185EC20F3EB6"
next
edit "Trend-Micro-FW-Vista-Win7"
set type fw
set guid "70A91CD9-303D-A217-A80E-6DEE136EDB2B"
next
edit "ZoneAlarm-AV"
set guid "5D467B10-818C-4CAB-9FF7-6893B5B8F3CF"
next
edit "ZoneAlarm-AV-Vista-Win7"
set guid "D61596DF-D219-341C-49B3-AD30538CBC5B"
next
edit "ZoneAlarm-FW"
set type fw
set guid "829BDA32-94B3-44F4-8446-F8FCFF809F8B"
next
edit "ZoneAlarm-FW-Vista-Win7"
set type fw
set guid "EE2E17FA-9876-3544-62EC-0405AD5FFB20"
next
end
config vpn ssl web portal
edit "full-access"
set tunnel-mode enable
set ipv6-tunnel-mode enable
set web-mode enable
set ip-pools "SSLVPN_TUNNEL_ADDR1"
set ipv6-pools "SSLVPN_TUNNEL_IPv6_ADDR1"
next
edit "tunnel-access"
set tunnel-mode enable
set ipv6-tunnel-mode enable
set ip-pools "SSLVPN_TUNNEL_ADDR1"
set ipv6-pools "SSLVPN_TUNNEL_IPv6_ADDR1"
next
edit "web-access"
set web-mode enable
next
end
config user setting
set auth-cert "Fortinet_Factory"
end
config vpn ssl settings
set servercert "Fortinet_Factory"
set port 443
end
config firewall service custom
edit "DNS"
set category "Network Services"
set tcp-portrange 53
set udp-portrange 53
next
edit "HTTP"
set category "Web Access"
set tcp-portrange 80
next
edit "HTTPS"
set category "Web Access"
set tcp-portrange 443
next
edit "IMAP"
set category "Email"
set tcp-portrange 143
next
edit "IMAPS"
set category "Email"
set tcp-portrange 993
next
edit "LDAP"
set category "Authentication"
set tcp-portrange 389
next
edit "DCE-RPC"
set category "Remote Access"
set tcp-portrange 135
set udp-portrange 135
next
edit "POP3"
set category "Email"
set tcp-portrange 110
next
edit "POP3S"
set category "Email"
set tcp-portrange 995
next
edit "SAMBA"
set category "File Access"
set tcp-portrange 139
next
edit "SMTP"
set category "Email"
set tcp-portrange 25
next
edit "SMTPS"
set category "Email"
set tcp-portrange 465
next
edit "KERBEROS"
set category "Authentication"
set tcp-portrange 88 464
set udp-portrange 88 464
next
edit "LDAP_UDP"
set category "Authentication"
set udp-portrange 389
next
edit "SMB"
set category "File Access"
set tcp-portrange 445
next
edit "FTP"
set category "File Access"
set tcp-portrange 21
next
edit "FTP_GET"
set category "File Access"
set tcp-portrange 21
next
edit "FTP_PUT"
set category "File Access"
set tcp-portrange 21
next
edit "ALL"
set category "General"
set protocol IP
next
edit "ALL_TCP"
set category "General"
set tcp-portrange 1-65535
next
edit "ALL_UDP"
set category "General"
set udp-portrange 1-65535
next
edit "ALL_ICMP"
set category "General"
set protocol ICMP
unset icmptype
next
edit "ALL_ICMP6"
set category "General"
set protocol ICMP6
unset icmptype
next
edit "GRE"
set category "Tunneling"
set protocol IP
set protocol-number 47
next
edit "AH"
set category "Tunneling"
set protocol IP
set protocol-number 51
next
edit "ESP"
set category "Tunneling"
set protocol IP
set protocol-number 50
next
edit "AOL"
set tcp-portrange 5190-5194
next
edit "BGP"
set category "Network Services"
set tcp-portrange 179
next
edit "DHCP"
set category "Network Services"
set udp-portrange 67-68
next
edit "FINGER"
set tcp-portrange 79
next
edit "GOPHER"
set tcp-portrange 70
next
edit "H323"
set category "VoIP, Messaging & Other Applications"
set tcp-portrange 1720 1503
set udp-portrange 1719
next
edit "IKE"
set category "Tunneling"
set udp-portrange 500 4500
next
edit "Internet-Locator-Service"
set tcp-portrange 389
next
edit "IRC"
set category "VoIP, Messaging & Other Applications"
set tcp-portrange 6660-6669
next
edit "L2TP"
set category "Tunneling"
set tcp-portrange 1701
set udp-portrange 1701
next
edit "NetMeeting"
set tcp-portrange 1720
next
edit "NFS"
set category "File Access"
set tcp-portrange 111 2049
set udp-portrange 111 2049
next
edit "NNTP"
set tcp-portrange 119
next
edit "NTP"
set category "Network Services"
set tcp-portrange 123
set udp-portrange 123
next
edit "OSPF"
set category "Network Services"
set protocol IP
set protocol-number 89
next
edit "PC-Anywhere"
set category "Remote Access"
set tcp-portrange 5631
set udp-portrange 5632
next
edit "PING"
set category "Network Services"
set protocol ICMP
set icmptype 8
unset icmpcode
next
edit "TIMESTAMP"
set protocol ICMP
set icmptype 13
unset icmpcode
next
edit "INFO_REQUEST"
set protocol ICMP
set icmptype 15
unset icmpcode
next
edit "INFO_ADDRESS"
set protocol ICMP
set icmptype 17
unset icmpcode
next
edit "ONC-RPC"
set category "Remote Access"
set tcp-portrange 111
set udp-portrange 111
next
edit "PPTP"
set category "Tunneling"
set tcp-portrange 1723
next
edit "QUAKE"
set udp-portrange 26000 27000 27910 27960
next
edit "RAUDIO"
set udp-portrange 7070
next
edit "REXEC"
set tcp-portrange 512
next
edit "RIP"
set category "Network Services"
set udp-portrange 520
next
edit "RLOGIN"
set tcp-portrange 513:512-1023
next
edit "RSH"
set tcp-portrange 514:512-1023
next
edit "SCCP"
set category "VoIP, Messaging & Other Applications"
set tcp-portrange 2000
next
edit "SIP"
set category "VoIP, Messaging & Other Applications"
set tcp-portrange 5060
set udp-portrange 5060
next
edit "SIP-MSNmessenger"
set category "VoIP, Messaging & Other Applications"
set tcp-portrange 1863
next
edit "SNMP"
set category "Network Services"
set tcp-portrange 161-162
set udp-portrange 161-162
next
edit "SSH"
set category "Remote Access"
set tcp-portrange 22
next
edit "SYSLOG"
set category "Network Services"
set udp-portrange 514
next
edit "TALK"
set udp-portrange 517-518
next
edit "TELNET"
set category "Remote Access"
set tcp-portrange 23
next
edit "TFTP"
set category "File Access"
set udp-portrange 69
next
edit "MGCP"
set udp-portrange 2427 2727
next
edit "UUCP"
set tcp-portrange 540
next
edit "VDOLIVE"
set tcp-portrange 7000-7010
next
edit "WAIS"
set tcp-portrange 210
next
edit "WINFRAME"
set tcp-portrange 1494 2598
next
edit "X-WINDOWS"
set category "Remote Access"
set tcp-portrange 6000-6063
next
edit "PING6"
set protocol ICMP6
set icmptype 128
unset icmpcode
next
edit "MS-SQL"
set category "VoIP, Messaging & Other Applications"
set tcp-portrange 1433 1434
next
edit "MYSQL"
set category "VoIP, Messaging & Other Applications"
set tcp-portrange 3306
next
edit "RDP"
set category "Remote Access"
set tcp-portrange 3389
next
edit "VNC"
set category "Remote Access"
set tcp-portrange 5900
next
edit "DHCP6"
set category "Network Services"
set udp-portrange 546 547
next
edit "SQUID"
set category "Tunneling"
set tcp-portrange 3128
next
edit "SOCKS"
set category "Tunneling"
set tcp-portrange 1080
set udp-portrange 1080
next
edit "WINS"
set category "Remote Access"
set tcp-portrange 1512
set udp-portrange 1512
next
edit "RADIUS"
set category "Authentication"
set udp-portrange 1812 1813
next
edit "RADIUS-OLD"
set udp-portrange 1645 1646
next
edit "CVSPSERVER"
set tcp-portrange 2401
set udp-portrange 2401
next
edit "AFS3"
set category "File Access"
set tcp-portrange 7000-7009
set udp-portrange 7000-7009
next
edit "TRACEROUTE"
set category "Network Services"
set udp-portrange 33434-33535
next
edit "RTSP"
set category "VoIP, Messaging & Other Applications"
set tcp-portrange 554 7070 8554
set udp-portrange 554
next
edit "MMS"
set tcp-portrange 1755
set udp-portrange 1024-5000
next
edit "NONE"
set tcp-portrange 0
next
edit "webproxy"
set proxy enable
set category "Web Proxy"
set protocol ALL
set tcp-portrange 0-65535:0-65535
next
end
config firewall service group
edit "Email Access"
set member "DNS" "IMAP" "IMAPS" "POP3" "POP3S" "SMTP" "SMTPS"
next
edit "Web Access"
set member "DNS" "HTTP" "HTTPS"
next
edit "Windows AD"
set member "DCE-RPC" "DNS" "KERBEROS" "LDAP" "LDAP_UDP" "SAMBA" "SMB"
next
edit "Exchange Server"
set member "DCE-RPC" "DNS" "HTTPS"
next
end
config webfilter search-engine
edit "baidu"
set hostname ".*\\.baidu\\.com"
set url "^\\/s?\\?"
set query "wd="
next
edit "baidu2"
set hostname ".*\\.baidu\\.com"
set url "^\\/(ns|q|m|i|v)\\?"
set query "word="
next
edit "baidu3"
set hostname "tieba\\.baidu\\.com"
set url "^\\/f\\?"
set query "kw="
next
edit "bing"
set hostname ".*\\.bing\\..*"
set url "^(\\/images|\\/videos)?(\\/search|\\/async|\\/asyncv2)\\?"
set query "q="
set safesearch header
next
edit "google"
set hostname ".*\\.google\\..*"
set url "^\\/((custom|search|images|videosearch|webhp)\\?)"
set query "q="
set safesearch url
set safesearch-str "&safe=active"
next
edit "google-translate-1"
set hostname "translate\\.google\\..*"
set url "^\\/translate"
set query "u="
set safesearch translate
set safesearch-str "regex::(?:\\?|&)u=([^&]+)::\\1"
next
edit "google-translate-2"
set hostname ".*\\.translate\\.goog"
set url "^\\/"
set safesearch translate
set safesearch-str "case::google-translate"
next
edit "twitter"
set hostname "twitter\\.com"
set url "^\\/i\\/api\\/graphql\\/.*\\/UserByScreenName"
set query "variables="
set safesearch translate
set safesearch-str "regex::%22screen_name%22:%22([A-Za-z0-9_]{4,15})
%22::[Link]/\\1"
next
edit "vimeo"
set hostname ".*vimeo.*"
set url "^\\/search\\?"
set query "q="
set safesearch header
next
edit "yahoo"
set hostname ".*\\.yahoo\\..*"
set url "^\\/search(\\/video|\\/images){0,1}(\\?|;)"
set query "p="
set safesearch url
set safesearch-str "&vm=r"
next
edit "yandex"
set hostname "yandex\\..*"
set url "^\\/((yand|images\\/|video\\/)(search)|search\\/)\\?"
set query "text="
set safesearch url
set safesearch-str "&family=yes"
next
edit "youtube"
set hostname ".*youtube.*"
set safesearch header
next
edit "yt-channel"
set url "[Link]/channel"
set safesearch yt-channel
next
edit "yt-pattern"
set url "[Link]/channel/"
set safesearch yt-pattern
next
edit "yt-scan-1"
set url "[Link]/user/"
set safesearch yt-scan
next
edit "yt-scan-2"
set url "[Link]/youtubei/v1/browse"
set safesearch yt-scan
next
edit "yt-scan-3"
set url "[Link]/youtubei/v1/player"
set safesearch yt-scan
next
edit "yt-scan-4"
set url "[Link]/youtubei/v1/navigator"
set safesearch yt-scan
next
edit "yt-video"
set url "[Link]/watch"
set safesearch yt-video
next
end
config emailfilter profile
edit "default"
set comment "Malware and phishing URL filtering."
next
edit "sniffer-profile"
set comment "Malware and phishing URL monitoring."
next
end
config vpn ipsec phase1-interface
edit "H1ILL_T1"
set interface "wan"
set ike-version 2
set dpd on-idle
set comments "VPN: H1ILL_T1 [Created by IPSEC Template]"
set proposal aes256-sha256
set peertype any
set localid "Branch44"
set remote-gw [Link]
set idle-timeout enable
set net-device enable
set auto-discovery-receiver enable
set psksecret ENC
qNCYM9faPZKF6m4un4S2wEPkKu4+JIVFtDbtouryVLzRWu/TWPAbQDCCWRE8FiW1NdeLuTRw2Ac/
G0soxLhG/cepzgAlg1nppCIAOqv41phsu7W93DJmqSE60II4rFw3H89tlHwmNsbwWBMV92CwahxT/
ipykJ7vQTn7adYsO8XR5J74jRYGqu51Zrpw9KrrIHwnfg==
set network-overlay enable
set network-id 1
set auto-discovery-shortcuts dependent
next
edit "H1ILL_T1_XC"
set interface "wan"
set ike-version 2
set dpd on-idle
set comments "VPN: H1ILL_T1_XC [Created by IPSEC Template]"
set proposal aes256-sha256
set peertype any
set localid "Branch44"
set remote-gw [Link]
set idle-timeout enable
set net-device enable
set auto-discovery-receiver enable
set psksecret ENC
o0Vg2wiZYEHLpYyyDEsw0ffyL64TGVJ1SUdKMSpEV4hAvWm672QW1r/1WjA6PtYdKPCsTNF5c7ALBlllUKR
NATEJ8DqJoILIsVllD/
TxWVmODBVlrz+HI5KdqacooRo+0Z3MoHoGdHpUEGjzlK7sPTTxDXB20Xb1mENwbh3Stlw+D+rEw+9YlMdSk
J68tDbWbHCk9Q==
set network-overlay enable
set network-id 4
set auto-discovery-shortcuts dependent
next
edit "CASHILL1_T1"
set interface "wan"
set ike-version 2
set dpd on-idle
set comments "VPN: CASHILL1_T1 [Created by IPSEC Template]"
set proposal aes256-sha256
set peertype any
set mode-cfg enable
set localid "Branch44"
set remote-gw [Link]
set idle-timeout enable
set net-device enable
set auto-discovery-receiver enable
set psksecret ENC
e0NWHhAfeQsv/eZLEvDbHS/907Gqo/FOs8xqhiBR9NWcyAmVNH6aNOvwBXvmm/0SApGwdO7S+xtLbVyipoF
4JRXVTDXhMmuqaOUJgjz1T7eHNAPuXSESvZ02TPQGg5PlYXEzJbUvnyuoslIb3EhupSwFPGJzmQMS5jIH3z
p43JjAJAPyMnU6A9YuOp483+CS2eStrw==
set network-overlay enable
set network-id 5
set auto-discovery-shortcuts dependent
next
edit "CASHILL1_T1_XC"
set interface "wan"
set ike-version 2
set dpd on-idle
set comments "VPN: CASHILL1_T1_XC [Created by IPSEC Template]"
set proposal aes256-sha256
set peertype any
set mode-cfg enable
set localid "Branch44"
set remote-gw [Link]
set idle-timeout enable
set net-device enable
set auto-discovery-receiver enable
set psksecret ENC
YM9Z/NuHdT2+s1+pAq6NEQXZ2WbltVQDjt1iYJjB20vgfi6Re+Bkz8NxNRx0WEq7R/
OKTQBCILV1X5V3naYrez+uPRLflxlr1PAVnSOngTun4LKxUXqOIKNhrWPPCcl9w0ej+udhV4iibRJeN6wNI
K6Hh38UcXfNS47jBue7wgNFpk/EVEBQK9PR+L3qkpqc5lj2nA==
set network-overlay enable
set network-id 8
set auto-discovery-shortcuts dependent
next
edit "H2ILL_T2"
set interface "wwan"
set ike-version 2
set dpd on-idle
set comments "VPN: H2ILL_T2 [Created by IPSEC Template]"
set proposal aes256-sha256
set peertype any
set localid "Branch44"
set remote-gw [Link]
set idle-timeout enable
set net-device enable
set auto-discovery-receiver enable
set psksecret ENC
H0SihIOVd9gtIrk55gt+CShp7zZ7RiirzOpT9id8ywL+W04kKi2kJm1+bpoRP686AxqJhgCWiSUUcWUbbD6
L9AvMVhgoMNylyLuh9XIkabvMWHfEgQpy+KWbmhqxquB8hLnSazTQR/
0vVniWHjo1RCJ61zqm+PMqEV2JYqQP/TTrSxzfLIDagpCPsvl+uLFoY3zedQ==
set network-overlay enable
set network-id 2
set auto-discovery-shortcuts dependent
next
edit "H2ILL_T2_XC"
set interface "wwan"
set ike-version 2
set dpd on-idle
set comments "VPN: H2ILL_T2_XC [Created by IPSEC Template]"
set proposal aes256-sha256
set peertype any
set localid "Branch44"
set remote-gw [Link]
set idle-timeout enable
set net-device enable
set auto-discovery-receiver enable
set psksecret ENC
C2R1jjCE0+mV8qkCeYHIoM6k7S5fFCxbcZNzUaHYWXphfbir1HYxkVstwFYhvG6To8azTEz8gP/
JPozq98QYY4CEx5MwxQgHgPnIPtv+ORl4bKBLq4Bxpq3ScufYXruNd7KooNfCe9MjAQCKPhO8HUR7Wx8nDh
FKkQdhKYvqC0dhBZWkAioXTwuLBPDnrPje4V+N/g==
set network-overlay enable
set network-id 3
set auto-discovery-shortcuts dependent
next
edit "CASHILL2_T2"
set interface "wwan"
set ike-version 2
set dpd on-idle
set comments "VPN: CASHILL2_T2 [Created by IPSEC Template]"
set proposal aes256-sha256
set peertype any
set mode-cfg enable
set localid "Branch44"
set remote-gw [Link]
set idle-timeout enable
set net-device enable
set auto-discovery-receiver enable
set psksecret ENC
rC9QSI1UwUrJGwWc5Pymyux3NT6K6WkwRcw6uuvFf2vksphrSA54w7MpQwNNl6Unto5UCKTsSJEUGm06jNG
IZTmBnJETnuIMHUPiuvIEAUn5rtl9qomtTN6+YEYuCVv5Ybp5w2jSme646F4DoVp7WfnhGmup58KGQmnpds
FvqV6uNuznsuDwFbaWLBpNePtbzvXa+A==
set network-overlay enable
set network-id 6
set auto-discovery-shortcuts dependent
next
edit "CASHILL2_T2_XC"
set interface "wwan"
set ike-version 2
set dpd on-idle
set comments "VPN: CASHILL2_T2_XC [Created by IPSEC Template]"
set proposal aes256-sha256
set peertype any
set mode-cfg enable
set localid "Branch44"
set remote-gw [Link]
set idle-timeout enable
set net-device enable
set auto-discovery-receiver enable
set psksecret ENC
78R3s4ijno1+U7Ec0S5brbWaCE4k/XaVXSnTuXmQmzUPqm3Fs73/f/QQEThpTOPp9uSbfITBcE6THEeLuqv
2HCGyYWX8/
S8JGHP0zvMjxtzFoWKt6wr3UhpNEB3w2tKwHcgsXlT0i5HAYAqI5me+tpmQHMjODqHAOUgwhGwf54lgreHz
zTNijN8Mo62NAkij9zNbUQ==
set network-overlay enable
set network-id 7
set auto-discovery-shortcuts dependent
next
end
config system dhcp server
edit 1
set lease-time 43200
set dns-server1 [Link]
set dns-server2 [Link]
set default-gateway [Link]
set netmask [Link]
set interface "lan"
config ip-range
edit 1
set start-ip [Link]
set end-ip [Link]
next
end
next
edit 2
set lease-time 43200
set dns-service default
set default-gateway [Link]
set netmask [Link]
set interface "lan3"
set timezone-option default
config ip-range
edit 1
set start-ip [Link]
set end-ip [Link]
next
end
next
edit 3
set lease-time 43200
set dns-service default
set default-gateway [Link]
set netmask [Link]
set interface "SISINDIA"
config ip-range
edit 1
set start-ip [Link]
set end-ip [Link]
next
end
next
end
config vpn ipsec phase2-interface
edit "CASHILL1_T1"
set phase1name "CASHILL1_T1"
set proposal aes256-sha256
set auto-negotiate enable
set comments "VPN: CASHILL1_T1 [Created by IPSEC Template]"
next
edit "CASHILL1_T1_XC"
set phase1name "CASHILL1_T1_XC"
set proposal aes256-sha256
set auto-negotiate enable
set comments "VPN: CASHILL1_T1_XC [Created by IPSEC Template]"
next
edit "CASHILL2_T2"
set phase1name "CASHILL2_T2"
set proposal aes256-sha256
set auto-negotiate enable
set comments "VPN: CASHILL2_T2 [Created by IPSEC Template]"
next
edit "CASHILL2_T2_XC"
set phase1name "CASHILL2_T2_XC"
set proposal aes256-sha256
set auto-negotiate enable
set comments "VPN: CASHILL2_T2_XC [Created by IPSEC Template]"
next
edit "H1ILL_T1"
set phase1name "H1ILL_T1"
set proposal aes256-sha256
set auto-negotiate enable
set comments "VPN: H1ILL_T1 [Created by IPSEC Template]"
next
edit "H1ILL_T1_XC"
set phase1name "H1ILL_T1_XC"
set proposal aes256-sha256
set auto-negotiate enable
set comments "VPN: H1ILL_T1_XC [Created by IPSEC Template]"
next
edit "H2ILL_T2"
set phase1name "H2ILL_T2"
set proposal aes256-sha256
set auto-negotiate enable
set comments "VPN: H2ILL_T2 [Created by IPSEC Template]"
next
edit "H2ILL_T2_XC"
set phase1name "H2ILL_T2_XC"
set proposal aes256-sha256
set auto-negotiate enable
set comments "VPN: H2ILL_T2_XC [Created by IPSEC Template]"
next
end
config icap profile
edit "default"
config icap-headers
edit 1
set name "X-Authenticated-User"
set content "$user"
next
edit 2
set name "X-Authenticated-Groups"
set content "$local_grp"
next
end
next
end
config antivirus settings
set grayware enable
set machine-learning-detection enable
end
config antivirus profile
edit "default"
set comment "Scan files and block viruses."
set outbreak-prevention-archive-scan disable
set external-blocklist-enable-all enable
config http
set av-scan block
end
config ftp
set av-scan block
end
config imap
set executables virus
set av-scan block
end
config pop3
set executables virus
set av-scan block
end
config smtp
set executables virus
set av-scan block
end
next
edit "sniffer-profile"
set comment "Scan files and monitor viruses."
set outbreak-prevention-archive-scan disable
set external-blocklist-enable-all enable
config http
set av-scan block
end
config ftp
set av-scan block
end
config imap
set executables virus
set av-scan block
end
config pop3
set executables virus
set av-scan block
end
config smtp
set executables virus
set av-scan block
end
next
edit "wifi-default"
set comment "Default configuration for offloading WiFi traffic."
set outbreak-prevention-archive-scan disable
set external-blocklist-enable-all enable
config http
set av-scan block
end
config ftp
set av-scan block
end
config imap
set executables virus
set av-scan block
end
config pop3
set executables virus
set av-scan block
end
config smtp
set executables virus
set av-scan block
end
next
end
config file-filter profile
edit "default"
set comment "File type inspection."
next
edit "sniffer-profile"
set comment "File type inspection."
next
end
config firewall schedule recurring
edit "always"
set day sunday monday tuesday wednesday thursday friday saturday
next
edit "default-darrp-optimize"
set start 01:00
set end 01:30
set day sunday monday tuesday wednesday thursday friday saturday
next
edit "none"
next
end
config firewall profile-protocol-options
edit "default"
set comment "All default services."
config http
set ports 80
unset options
unset post-lang
end
config ftp
set ports 21
set options splice
end
config imap
set ports 143
set options fragmail
end
config pop3
set ports 110
set options fragmail
end
config smtp
set ports 25
set options fragmail splice
end
config nntp
set ports 119
set options splice
end
config dns
set ports 53
end
config mapi
set ports 135
set options fragmail
end
config cifs
set ports 445
end
next
end
config waf profile
edit "default"
config signature
set disabled-signature 80080005 80200001 60030001 60120001 80080003 90410001
90410002
config main-class 20000000
end
config main-class 30000000
set status enable
set action block
set severity high
end
config main-class 40000000
end
config main-class 50000000
set status enable
set action block
set severity high
end
config main-class 60000000
end
config main-class 70000000
set status enable
set action block
set severity high
end
config main-class 80000000
set status enable
set severity low
end
config main-class 90000000
set status enable
set action block
set severity high
end
config main-class 100000000
set action block
set severity high
end
config main-class 110000000
set status enable
set severity high
end
end
config constraint
config header-length
set status enable
set log enable
set severity low
end
config content-length
set status enable
set log enable
set severity low
end
config param-length
set status enable
set log enable
set severity low
end
config line-length
set status enable
set log enable
set severity low
end
config url-param-length
set status enable
set log enable
set severity low
end
config version
set log enable
end
config method
set action block
set log enable
end
config hostname
set action block
set log enable
end
config malformed
set log enable
end
config max-cookie
set status enable
set log enable
set severity low
end
config max-header-line
set status enable
set log enable
set severity low
end
config max-url-param
set status enable
set log enable
set severity low
end
config max-range-segment
set status enable
set log enable
set severity high
end
end
next
end
config firewall proxy-address
edit "IPv4-address"
set uuid a6e8cab8-e987-51ed-0681-c0bdc95deb71
set type host-regex
set host-regex "^([0-9]|[1-9][0-9]|1[0-9]{2}|2[0-4][0-9]|25[0-5])(\\.([0-9]|[1-9]
[0-9]|1[0-9]{2}|2[0-4][0-9]|25[0-5])){3}$"
next
edit "IPv6-address"
set uuid a6e8d0b2-e987-51ed-7757-ed90d4bce5ba
set type host-regex
set host-regex "^\\[(([0-9a-f]{0,4}:){1,7}[0-9a-f]{1,4})\\]$"
next
end
config system sdwan
set status enable
set load-balance-mode measured-volume-based
config zone
edit "virtual-wan-link"
next
edit "SASE"
next
edit "DIA_ZONE"
next
end
config members
edit 3
set interface "H1ILL_T1"
set volume-ratio 50
next
edit 4
set interface "H2ILL_T2"
set volume-ratio 50
next
edit 1
set interface "wan"
set zone "DIA_ZONE"
next
edit 2
set interface "wwan"
set zone "DIA_ZONE"
next
edit 5
set interface "H1ILL_T1_XC"
set volume-ratio 50
next
edit 6
set interface "H2ILL_T2_XC"
set volume-ratio 50
next
edit 7
set interface "CASHILL1_T1"
set volume-ratio 50
next
edit 8
set interface "CASHILL2_T2"
set volume-ratio 50
next
edit 9
set interface "CASHILL1_T1_XC"
set volume-ratio 50
next
edit 10
set interface "CASHILL2_T2_XC"
set volume-ratio 50
next
end
config health-check
edit "CASH_DC_OLSLA"
set server "[Link]"
set update-cascade-interface disable
set update-static-route disable
set sla-fail-log-period 1
set sla-pass-log-period 2
set members 10 9 8 7
config sla
edit 1
set link-cost-factor latency packet-loss
set latency-threshold 90
set packetloss-threshold 5
next
end
next
edit "DC_OLSLA"
set server "[Link]"
set update-cascade-interface disable
set update-static-route disable
set sla-fail-log-period 1
set sla-pass-log-period 2
set members 6 5 4 3
config sla
edit 1
set link-cost-factor latency packet-loss
set latency-threshold 90
set packetloss-threshold 5
next
end
next
edit "UL_ILL_SLA"
set server "[Link]" "[Link]"
set update-cascade-interface disable
set sla-fail-log-period 1
set sla-pass-log-period 2
set members 2 1
config sla
edit 1
set link-cost-factor latency packet-loss
set latency-threshold 90
set packetloss-threshold 5
next
end
next
end
config service
edit 1
set name "Rule_to_DC"
set mode load-balance
set dst "all"
set src "all"
set priority-members 3 4 5 6
config sla
edit "DC_OLSLA"
set id 1
next
end
next
edit 2
set name "ETENDER_RULE"
set dst "[Link]" "[Link]" "[Link]"
"[Link]" "[Link]" "[Link]"
"[Link]" "[Link]" "[Link]" "[Link]"
"[Link]"
set src "all"
set priority-members 1 2
next
edit 3
set name "Rule_to_CASHDC"
set mode load-balance
set dst "all"
set src "all"
set priority-members 7 8 9 10
config sla
edit "CASH_DC_OLSLA"
set id 1
next
end
next
end
end
config firewall policy
edit 20
set name "WLAN_LAN_INTER_COMM"
set uuid c27bd242-405e-51ee-ab1e-58b123174d0b
set action accept
set srcintf "lan"
set dstintf "SISINDIA"
set srcaddr "all"
set dstaddr "all"
set schedule "always"
set service "ALL"
set logtraffic all
next
edit 21
set name "LAN_WLAN_INTER_COMM"
set uuid c2825a18-405e-51ee-2eac-5f3bf131129c
set action accept
set srcintf "SISINDIA"
set dstintf "lan"
set srcaddr "all"
set dstaddr "all"
set schedule "always"
set service "ALL"
set logtraffic all
next
edit 7
set name "SMB-BLOCK"
set uuid 532ec4fa-faf7-51ed-ca4d-a62c5274459f
set srcintf "any"
set dstintf "any"
set srcaddr "all"
set dstaddr "all"
set schedule "always"
set service "SMB"
set logtraffic all
next
edit 2
set name "LAN-TO-ADVPN"
set uuid 4b57ed56-b43e-51ed-f931-249bece884a0
set action accept
set srcintf "lan" "lan3" "SISINDIA"
set dstintf "virtual-wan-link"
set srcaddr "all"
set dstaddr "all"
set schedule "always"
set service "ALL"
set logtraffic all
next
edit 3
set name "ADVPN-TO-LAN"
set uuid 4b58aa7a-b43e-51ed-e58a-82fdd0d98881
set action accept
set srcintf "virtual-wan-link"
set dstintf "lan" "lan3" "SISINDIA"
set srcaddr "all"
set dstaddr "all"
set schedule "always"
set service "ALL"
set logtraffic all
next
edit 4
set name "LAN-TO-LAN3"
set uuid 4b591e24-b43e-51ed-476a-de9af963371d
set action accept
set srcintf "lan"
set dstintf "lan3"
set srcaddr "all"
set dstaddr "all"
set schedule "always"
set service "ALL"
set logtraffic all
next
edit 5
set name "LAN3-TO-LAN"
set uuid 4b598ce2-b43e-51ed-96f0-41ca3031b674
set action accept
set srcintf "lan3"
set dstintf "lan"
set srcaddr "all"
set dstaddr "all"
set schedule "always"
set service "ALL"
set logtraffic all
next
edit 6
set name "LAN-TO-DIAZONE"
set uuid 4b59fc9a-b43e-51ed-dffb-84b6849a5970
set action accept
set srcintf "lan" "lan3" "SISINDIA"
set dstintf "DIA_ZONE"
set nat enable
set srcaddr "all"
set dstaddr "all"
set schedule "always"
set service "ALL"
set utm-status enable
set logtraffic all
set ssl-ssh-profile "certificate-inspection"
set webfilter-profile "URL_Policy"
set ips-sensor "default"
next
end
config firewall DoS-policy
edit 1
set interface "fortilink"
set srcaddr "all"
set dstaddr "all"
set service "SMB"
set name "DOS-SMB-445-FORTILINK"
config anomaly
edit "icmp_dst_session"
set status enable
set log enable
set action block
set threshold 1000
next
edit "icmp_flood"
set status enable
set log enable
set action block
set threshold 250
next
edit "icmp_src_session"
set status enable
set log enable
set action block
set threshold 300
next
edit "icmp_sweep"
set status enable
set log enable
set action block
set threshold 100
next
edit "ip_dst_session"
set threshold 5000
next
edit "ip_src_session"
set threshold 5000
next
edit "sctp_dst_session"
set threshold 5000
next
edit "sctp_flood"
set threshold 2000
next
edit "sctp_scan"
set threshold 1000
next
edit "sctp_src_session"
set threshold 5000
next
edit "tcp_dst_session"
set status enable
set log enable
set action block
set threshold 5000
next
edit "tcp_port_scan"
set status enable
set log enable
set action block
set threshold 1000
next
edit "tcp_src_session"
set status enable
set log enable
set action block
set threshold 5000
next
edit "tcp_syn_flood"
set status enable
set log enable
set action block
set threshold 2000
next
edit "udp_dst_session"
set status enable
set log enable
set action block
set threshold 5000
next
edit "udp_flood"
set status enable
set log enable
set action block
set threshold 2000
next
edit "udp_scan"
set status enable
set log enable
set action block
set threshold 2000
next
edit "udp_src_session"
set status enable
set log enable
set action block
set threshold 5000
next
end
next
edit 2
set comments " (Copy of DOS-SMB-445)"
set interface "wan"
set srcaddr "all"
set dstaddr "all"
set service "SMB"
set name "DOS-SMB-445-WAN"
config anomaly
edit "icmp_dst_session"
set status enable
set log enable
set action block
set threshold 1000
next
edit "icmp_flood"
set status enable
set log enable
set action block
set threshold 250
next
edit "icmp_src_session"
set status enable
set log enable
set action block
set threshold 300
next
edit "icmp_sweep"
set status enable
set log enable
set action block
set threshold 100
next
edit "ip_dst_session"
set threshold 5000
next
edit "ip_src_session"
set threshold 5000
next
edit "sctp_dst_session"
set threshold 5000
next
edit "sctp_flood"
set threshold 2000
next
edit "sctp_scan"
set threshold 1000
next
edit "sctp_src_session"
set threshold 5000
next
edit "tcp_dst_session"
set status enable
set log enable
set action block
set threshold 5000
next
edit "tcp_port_scan"
set status enable
set log enable
set action block
set threshold 1000
next
edit "tcp_src_session"
set status enable
set log enable
set action block
set threshold 5000
next
edit "tcp_syn_flood"
set status enable
set log enable
set action block
set threshold 2000
next
edit "udp_dst_session"
set status enable
set log enable
set action block
set threshold 5000
next
edit "udp_flood"
set status enable
set log enable
set action block
set threshold 2000
next
edit "udp_scan"
set status enable
set log enable
set action block
set threshold 2000
next
edit "udp_src_session"
set status enable
set log enable
set action block
set threshold 5000
next
end
next
end
config web-proxy global
set proxy-fqdn "[Link]"
end
config wireless-controller setting
set darrp-optimize-schedules "default-darrp-optimize"
end
config wireless-controller arrp-profile
edit "arrp-default"
next
end
config wireless-controller wids-profile
edit "default"
set comment "Default WIDS profile."
set ap-scan enable
set ap-bgscan-intv 1
set ap-bgscan-duration 20
set ap-bgscan-idle 0
set wireless-bridge enable
set deauth-broadcast enable
set null-ssid-probe-resp enable
set long-duration-attack enable
set invalid-mac-oui enable
set weak-wep-iv enable
set auth-frame-flood enable
set assoc-frame-flood enable
set spoofed-deauth enable
set asleap-attack enable
set eapol-start-flood enable
set eapol-logoff-flood enable
set eapol-succ-flood enable
set eapol-fail-flood enable
set eapol-pre-succ-flood enable
set eapol-pre-fail-flood enable
next
edit "default-wids-apscan-enabled"
set ap-scan enable
set ap-bgscan-intv 1
set ap-bgscan-duration 20
set ap-bgscan-idle 0
next
end
config wireless-controller ble-profile
edit "fortiap-discovery"
set advertising ibeacon eddystone-uid eddystone-url
set ibeacon-uuid "wtp-uuid"
next
end
config switch-controller security-policy 802-1X
edit "802-1X-policy-default"
set user-group "SSO_Guest_Users"
set mac-auth-bypass disable
set open-auth disable
set eap-passthru enable
set guest-vlan disable
set auth-fail-vlan disable
set framevid-apply enable
set radius-timeout-overwrite disable
set eap-auto-untagged-vlans enable
set authserver-timeout-vlan disable
next
end
config switch-controller security-policy local-access
edit "default"
set mgmt-allowaccess https ping ssh
set internal-allowaccess https ping ssh
next
end
config switch-controller lldp-profile
edit "default"
set med-tlvs inventory-management network-policy location-identification
set auto-isl disable
config med-network-policy
edit "guest-voice"
next
edit "guest-voice-signaling"
next
edit "softphone-voice"
next
edit "streaming-video"
next
edit "video-conferencing"
next
edit "video-signaling"
next
edit "voice"
next
edit "voice-signaling"
next
end
config med-location-service
edit "address-civic"
next
edit "coordinates"
next
edit "elin-number"
next
end
next
edit "default-auto-isl"
next
edit "default-auto-mclag-icl"
set auto-mclag-icl enable
next
end
config switch-controller qos dot1p-map
edit "voice-dot1p"
set priority-0 queue-4
set priority-1 queue-4
set priority-2 queue-3
set priority-3 queue-2
set priority-4 queue-3
set priority-5 queue-1
set priority-6 queue-2
set priority-7 queue-2
next
end
config switch-controller qos ip-dscp-map
edit "voice-dscp"
config map
edit "1"
set cos-queue 1
set value "46"
next
edit "2"
set cos-queue 2
set value "24,26,48,56"
next
edit "5"
set cos-queue 3
set value "34"
next
end
next
end
config switch-controller qos queue-policy
edit "default"
set schedule round-robin
set rate-by kbps
config cos-queue
edit "queue-0"
next
edit "queue-1"
next
edit "queue-2"
next
edit "queue-3"
next
edit "queue-4"
next
edit "queue-5"
next
edit "queue-6"
next
edit "queue-7"
next
end
next
edit "voice-egress"
set schedule weighted
set rate-by kbps
config cos-queue
edit "queue-0"
next
edit "queue-1"
set weight 0
next
edit "queue-2"
set weight 6
next
edit "queue-3"
set weight 37
next
edit "queue-4"
set weight 12
next
edit "queue-5"
next
edit "queue-6"
next
edit "queue-7"
next
end
next
end
config switch-controller qos qos-policy
edit "default"
next
edit "voice-qos"
set trust-dot1p-map "voice-dot1p"
set trust-ip-dscp-map "voice-dscp"
set queue-policy "voice-egress"
next
end
config switch-controller storm-control-policy
edit "auto-config"
set description "storm control policy for fortilink-isl-icl port"
set storm-control-mode disabled
next
edit "default"
set description "default storm control on all port"
next
end
config switch-controller auto-config policy
edit "default"
next
edit "default-icl"
set poe-status disable
set igmp-flood-report enable
set igmp-flood-traffic enable
next
edit "pse"
next
end
config switch-controller initial-config template
edit "_default"
set vlanid 1
next
edit "nac_segment"
set vlanid 4088
set dhcp-server enable
next
edit "onboarding"
set vlanid 4089
next
edit "quarantine"
set vlanid 4093
set dhcp-server enable
next
edit "rspan"
set vlanid 4092
set dhcp-server enable
next
edit "video"
set vlanid 4090
next
edit "voice"
set vlanid 4091
next
end
config switch-controller switch-profile
edit "default"
next
end
config switch-controller ptp settings
set mode disable
end
config switch-controller ptp policy
edit "default"
set status enable
next
end
config switch-controller dsl policy
edit "default"
set type Proscend
set us-bitswap enable
set ds-bitswap enable
set profile auto-30a
set cs A43 B43 A43C
set pause-frame enable
set cpe-aele enable
set cpe-aele-mode ELE_MIN
set append_padding enable
next
end
config wireless-controller wtp-profile
edit "FAP221E-default"
set handoff-sta-thresh 55
config radio-1
set band 802.11n,g-only
end
config radio-2
set band 802.11ac
end
next
end
config wireless-controller wtp
edit "FP221ETF22003734"
set admin enable
set wtp-profile "FAP221E-default"
set uuid ded0ff32-e98b-51ed-65a8-67cb6bc01e64
next
end
config switch-controller remote-log
edit "syslogd"
next
edit "syslogd2"
next
end
config log memory setting
set status enable
end
config log null-device setting
set status disable
end
config router access-list
edit "BO_LAN_SUBNET"
config rule
edit 1
set prefix [Link] [Link]
next
edit 2
set prefix [Link] [Link]
next
edit 3
set prefix [Link] [Link]
next
edit 4
set prefix [Link] [Link]
next
end
next
edit "CASHILL_JIO_OL_OUT"
config rule
edit 1
set prefix [Link] [Link]
next
end
next
edit "CASHILL_JIO_XC_OL_OUT"
config rule
edit 1
set prefix [Link] [Link]
next
end
next
edit "CASHILL_TCL_OL_OUT"
config rule
edit 1
set prefix [Link] [Link]
next
end
next
edit "CASHILL_TCL_XC_OL_OUT"
config rule
edit 1
set prefix [Link] [Link]
next
end
next
edit "H1ILL_JIO_OL_OUT"
config rule
edit 1
set prefix [Link] [Link]
next
end
next
edit "H1ILL_JIO_XC_OL_OUT"
config rule
edit 1
set prefix [Link] [Link]
next
end
next
edit "H1ILL_TCL_OL_OUT"
config rule
edit 1
set prefix [Link] [Link]
next
end
next
edit "H1ILL_TCL_XC_OL_OUT"
config rule
edit 1
set prefix [Link] [Link]
next
end
next
end
config router route-map
edit "BTD_H1ILL1_TUNNEL_OUT"
config rule
edit 1
set match-ip-address "BO_LAN_SUBNET"
next
edit 2
set match-ip-nexthop "H1ILL_TCL_OL_OUT"
next
end
next
edit "BTD_H1ILL2_XC_TUNNEL_OUT"
config rule
edit 1
set match-ip-address "BO_LAN_SUBNET"
next
edit 2
set match-ip-nexthop "H1ILL_JIO_XC_OL_OUT"
next
end
next
edit "BTD_LTE&BB&PPPOE_H1ILL2_TUNNEL_OUT"
config rule
edit 1
set match-ip-address "BO_LAN_SUBNET"
next
edit 2
set match-ip-nexthop "H1ILL_JIO_OL_OUT"
next
end
next
edit "BTD_LTE&BB_H1ILL1_XC_TUNNEL_OUT"
config rule
edit 1
set match-ip-address "BO_LAN_SUBNET"
next
edit 2
set match-ip-nexthop "H1ILL_TCL_XC_OL_OUT"
next
end
next
edit "BTH_ILL1_TUNNEL_OUT"
config rule
edit 1
set match-ip-address "BO_LAN_SUBNET"
next
edit 2
set match-ip-nexthop "CASHILL_TCL_OL_OUT"
next
end
next
edit "BTH_ILL2_TUNNELL_OUT"
config rule
edit 1
set match-ip-address "BO_LAN_SUBNET"
next
edit 2
set match-ip-nexthop "CASHILL_JIO_OL_OUT"
next
end
next
edit "BTH_LTE&BB_CASHILL2_XC_TUNNEL_OUT"
config rule
edit 1
set match-ip-address "BO_LAN_SUBNET"
next
edit 2
set match-ip-nexthop "CASHILL_JIO_XC_OL_OUT"
next
end
next
edit "BTH_LTE_BB_CASHILL1_XC_TUNNEL_OUT"
config rule
edit 1
set match-ip-address "BO_LAN_SUBNET"
next
edit 2
set match-ip-nexthop "CASHILL_TCL_XC_OL_OUT"
next
end
next
end
config router rip
config redistribute "bgp"
end
config redistribute "connected"
end
config redistribute "isis"
end
config redistribute "ospf"
end
config redistribute "static"
end
end
config router ripng
config redistribute "bgp"
end
config redistribute "connected"
end
config redistribute "isis"
end
config redistribute "ospf"
end
config redistribute "static"
end
end
config router static
edit 1
set distance 1
set sdwan-zone "DIA_ZONE"
next
end
config router ospf
config redistribute "bgp"
end
config redistribute "connected"
end
config redistribute "isis"
end
config redistribute "rip"
end
config redistribute "static"
end
end
config router ospf6
config redistribute "bgp"
end
config redistribute "connected"
end
config redistribute "isis"
end
config redistribute "rip"
end
config redistribute "static"
end
end
config router bgp
set as 65001
set ibgp-multipath enable
set additional-path enable
config neighbor
edit "[Link]"
set link-down-failover enable
set soft-reconfiguration enable
set remote-as 65001
set route-map-out "BTD_H1ILL1_TUNNEL_OUT"
set additional-path receive
next
edit "[Link]"
set link-down-failover enable
set soft-reconfiguration enable
set remote-as 65001
set route-map-out "BTD_LTE&BB&PPPOE_H1ILL2_TUNNEL_OUT"
set additional-path receive
next
edit "[Link]"
set link-down-failover enable
set soft-reconfiguration enable
set remote-as 65001
set route-map-out "BTD_LTE&BB_H1ILL1_XC_TUNNEL_OUT"
set additional-path receive
next
edit "[Link]"
set link-down-failover enable
set soft-reconfiguration enable
set remote-as 65001
set route-map-out "BTD_H1ILL2_XC_TUNNEL_OUT"
set additional-path receive
next
edit "[Link]"
set link-down-failover enable
set soft-reconfiguration enable
set remote-as 65001
set route-map-out "BTH_ILL1_TUNNEL_OUT"
set additional-path receive
next
edit "[Link]"
set link-down-failover enable
set soft-reconfiguration enable
set remote-as 65001
set route-map-out "BTH_ILL2_TUNNELL_OUT"
set additional-path receive
next
edit "[Link]"
set link-down-failover enable
set soft-reconfiguration enable
set remote-as 65001
set route-map-out "BTH_LTE_BB_CASHILL1_XC_TUNNEL_OUT"
set additional-path receive
next
edit "[Link]"
set link-down-failover enable
set soft-reconfiguration enable
set remote-as 65001
set route-map-out "BTH_LTE&BB_CASHILL2_XC_TUNNEL_OUT"
set additional-path receive
next
end
config network
edit 1
set prefix [Link] [Link]
next
edit 2
set prefix [Link] [Link]
next
edit 3
set prefix [Link] [Link]
next
edit 4
set prefix [Link] [Link]
next
end
config redistribute "connected"
end
config redistribute "isis"
end
config redistribute "ospf"
end
config redistribute "rip"
end
config redistribute "static"
end
config redistribute6 "connected"
end
config redistribute6 "isis"
end
config redistribute6 "ospf"
end
config redistribute6 "rip"
end
config redistribute6 "static"
end
end
config router isis
config redistribute "bgp"
end
config redistribute "connected"
end
config redistribute "ospf"
end
config redistribute "rip"
end
config redistribute "static"
end
config redistribute6 "bgp"
end
config redistribute6 "connected"
end
config redistribute6 "ospf"
end
config redistribute6 "rip"
end
config redistribute6 "static"
end
end
config firewall ssh local-key
edit "Fortinet_SSH_DSA1024"
set password ENC
AAAAoMnAzTEb/jF2pLROCxN0in5AkC5/0z6u8lPARTzXyGaTDG5lFnGfYY8zKjTDRfkmp02jUhylRPpCn3L
MlTGONVxTX/
TPfGmkoB1DAdJ7BSlCfOldBhzf56G69e2FIYscp8SjDp+S2BFdIZcY81JoNpOww2ZT9d3kNWxZcGB5Uy01s
23nGXogpe42M6lM57xykA==
set private-key "-----BEGIN OPENSSH PRIVATE KEY-----
b3BlbnNzaC1rZXktdjEAAAAACmFlczI1Ni1jdHIAAAAGYmNyeXB0AAAAGAAAABBqNRa5lX
XPkXeJevRE90qHAAAAEAAAAAEAAAGxAAAAB3NzaC1kc3MAAACBAIRoL3j1zv0EClaU6qW6
on/l+uJlyVfye9Epo2WRkDWHXJrKtTMuYCOakFOa3SgL+JxgvYMPrCSuaxbJnC6GvMR7us
rpKBoQ9Tku4K7gqmc5I3nTB7r1iIr1TW++3jrYcCMt14UXrkjo5armEZ8A1OUVUmRKWYhC
Q4FT02vpby2JAAAAFQDcMqWtV+bHxLQDWgajXvYo6fagowAAAIAd3ASSK5wPjPnFk4NT65
g+7lXywAH0c9V+ES+F30bCu0+1BWIU1U2VZHLH3n3c6ksXzp+9+XgbKcBz3EzKwrim3Eqn
5WmdLeqE62sV3LJAsBg0QjJv/SG8iXOlmAmfdPopi8kxxg72NjN59CW+WYrjMNpzYPp3eI
wkE/XYe3ENHAAAAIBEM5TwRbt4ETp8cfPJazpHRMqWy/pvd0D7i9NIlYba2NPcgaJte5Zg
YuMiBVvnz4dJqHqBlWJLlN0oE1PubPwYAUflCzT8rdoyJmEOgsxTdYrK7KYtLRUqh2Fjje
JhamdJ+l57WpDIKMieLlTEP5oqEe0dWZpY6ZUMbVX3JwDPyAAAAeBCohJjbd5InVHtTCoH
UeD8eKLOV9Eba7p0GCPVTDe7orxlRCqqSQZf5npU28zEUH7hL4gKr2aTw+lARVhuPCS7xf
qt8SN67/D4dReFKJkCNP72Ud4DijTF9mNOAyOoQ6nU6U8eQA7A/zT/M3Ir3PD+6fiPiJVA
lOTR6tAbv9c2TZL9T3ETJ8hHkaj3eebH24j8+K6gPqVDkqUJ16qQ1ugKykzxbsAb/btUhD
jaZYB/38DjkzquFEk2KGKQ7iBmpZvNxdiDHIdu4fTEpQOeGsj1ToG4raTWHwIwuhRHQgmo
sLK2JlQ1dsGAiLUhWZhlQwQAdCapVcg24YUhrVrYobIcr7EOra+VNF25bAQs+1ft/Iy3sF
5NzKFTRAw/E99z/JUiELOtyl0BqIt4OBC5XCIsMpCw79oLhmaAIKU/RFw0nXt8oX9h439z
urDsXJJtXHvcsZYWaq9nW2s0j2ipyKYPOf7oy9CUXZ4QmtQBXfLBL42tdUWT+G8jN969le
pEs+4kGZoj7q7rQt/OLhoqHEUlysi6acbTscAvbl778n2jWcZnf1B8JHZoZwCyyGCxyObu
XQ0OHxtnp1YL+cDK+Kb8jyBZnBNvpJIvmV3njY9PTFegL10+YnRugx1Lk55Jq+4=
-----END OPENSSH PRIVATE KEY-----
"
set public-key "ssh-dss
AAAAB3NzaC1kc3MAAACBAIRoL3j1zv0EClaU6qW6on/l+uJlyVfye9Epo2WRkDWHXJrKtTMuYCOakFOa3Sg
L+JxgvYMPrCSuaxbJnC6GvMR7usrpKBoQ9Tku4K7gqmc5I3nTB7r1iIr1TW+
+3jrYcCMt14UXrkjo5armEZ8A1OUVUmRKWYhCQ4FT02vpby2JAAAAFQDcMqWtV+bHxLQDWgajXvYo6fagow
AAAIAd3ASSK5wPjPnFk4NT65g+7lXywAH0c9V+ES+F30bCu0+1BWIU1U2VZHLH3n3c6ksXzp+9+XgbKcBz3
EzKwrim3Eqn5WmdLeqE62sV3LJAsBg0QjJv/
SG8iXOlmAmfdPopi8kxxg72NjN59CW+WYrjMNpzYPp3eIwkE/
XYe3ENHAAAAIBEM5TwRbt4ETp8cfPJazpHRMqWy/
pvd0D7i9NIlYba2NPcgaJte5ZgYuMiBVvnz4dJqHqBlWJLlN0oE1PubPwYAUflCzT8rdoyJmEOgsxTdYrK7
KYtLRUqh2FjjeJhamdJ+l57WpDIKMieLlTEP5oqEe0dWZpY6ZUMbVX3JwDPyA=="
set source built-in
next
edit "Fortinet_SSH_ECDSA256"
set password ENC
AAAAoMaLEept+wzMvDNwxi68nRQlVpvr3LlymUbYVB/j8uULft5wPOULIB25YjrO12dR28x7Jo7jPCCo257
cd1g0KItyR/uxQ8smMJ83MBE9rG9OQNLCwBsbff8lEhIZ9TVDIdpEguqgt5qX5Rtu4/
H0vEAdP5fjRWg2j1KkBh8OwTUCK/Z8EV3Ddol49yQF/Nm9xg==
set private-key "-----BEGIN OPENSSH PRIVATE KEY-----
b3BlbnNzaC1rZXktdjEAAAAACmFlczI1Ni1jdHIAAAAGYmNyeXB0AAAAGAAAABD9lsuTz+
tmGJHwUC9audmZAAAAEAAAAAEAAABoAAAAE2VjZHNhLXNoYTItbmlzdHAyNTYAAAAIbmlz
dHAyNTYAAABBBKE8CzcPArZtoWFB77Rpzx4cDzrKmIHetHQdwVY+FDLCncf1MX5GuyXwMu
tSLpPwiKoaKtKAijsjiVXdYHB8JFQAAACgMOyaCAUubFEVDUWKv7EhNxFoHkYJpgTK2AOH
75KbotSYwfN7PrDAtbo4G9d4gFmY39oG0BzHTbp57vxEtNkf22fEcOqhc9/c6+pt8A5kHO
9uSObPZOWuxVdbsqT/Ujs78/ExHOzp5tNUEUSrgyiOvDjzpYZVrc9jdjmgWJ9lwbgXygtd
AJjyIjboWrqgMvPDyn5qezuJPH8fgUOSMlT39w==
-----END OPENSSH PRIVATE KEY-----
"
set public-key "ecdsa-sha2-nistp256
AAAAE2VjZHNhLXNoYTItbmlzdHAyNTYAAAAIbmlzdHAyNTYAAABBBKE8CzcPArZtoWFB77Rpzx4cDzrKmIH
etHQdwVY+FDLCncf1MX5GuyXwMutSLpPwiKoaKtKAijsjiVXdYHB8JFQ="
set source built-in
next
edit "Fortinet_SSH_ECDSA384"
set password ENC
AAAAoJciwrbv/UlCFRa4BdsDt9m59GgQ1D7cafzYtGIimveRtVtFM/fOAUVirX37YFjHBkTSn2KhaAsIW+f
2gGhBx2m/dMtOdKJpj/O2gprHHBmBfPO3n3uh/6RHIlAHuvTBQ2Knhip1XUHBgOQzYkSy/
R1XEv9Ulmdxmdb/F0OR4tC6hoFn3+1LofEhSmIdfpr8TA==
set private-key "-----BEGIN OPENSSH PRIVATE KEY-----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-----END OPENSSH PRIVATE KEY-----
"
set public-key "ecdsa-sha2-nistp384
AAAAE2VjZHNhLXNoYTItbmlzdHAzODQAAAAIbmlzdHAzODQAAABhBK15TecZRPli/vGthIf/
j8VH1xiV+Qi5MmJos2CCYI20Oa5bEhYSV16z1EStfHmvoXrxnig6sL8RRbQ5ZgYBafTNHbqceqiQIXvChMK
RQElWp71mKd4PPwEA78Nw2u+jVg=="
set source built-in
next
edit "Fortinet_SSH_ECDSA521"
set password ENC
AAAAoLNtgKhD6hVXknAESR+nzxrhnE4/+EuAS//gtmx2vQlXrMOTnCM8lgqLZMc99CYIyAK65OdrGKtBpTm
usx4vfKZMrCKQMxxRx3TgtCM/
EscEJzw76YH2IEqzsdK0mQ3mOAakMN1fbn2oKm9RnrnnQ+4Rt7uCcQororO5Uenzrl1ScJtDAo0WJay4hsc
fkQpXsw==
set private-key "-----BEGIN OPENSSH PRIVATE KEY-----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-----END OPENSSH PRIVATE KEY-----
"
set public-key "ecdsa-sha2-nistp521
AAAAE2VjZHNhLXNoYTItbmlzdHA1MjEAAAAIbmlzdHA1MjEAAACFBAGYguFvyb58rxkEY+iH1viPJjSf8Sb
f7YlPEsx3UucEq0zBIvUta9Ghkf0DcftpTtnx1Zg9Mpgm/uLLyhR/
frSwZAHyVSnOYZoeg7ijBW4FywWk1mngj76RWPKgMe8sgKq3HAupdceWonSX+2HEABDGgQWv/
z987nHzMscTVJ8sTuuGXA=="
set source built-in
next
edit "Fortinet_SSH_ED25519"
set password ENC
fZicoA7NEBD5VRsRtue/LLEcYEXUjfKkwuDlAsROPuGvriFTqSvz4DBpOkmquOBQNkZsEnKFfiHezI2vu9t
/vua/2NZ0aOaqbJn/BvQ8quS/0kobQZ8R9saRcHSrURMpvco11Fci9/
D+fMS1vt1JBOGCLLtZ2Mi8z75R+E/Bjawwp4XQ+I3kRw+lR+JB7ndF4S16TQ==
set private-key "-----BEGIN OPENSSH PRIVATE KEY-----
b3BlbnNzaC1rZXktdjEAAAAACmFlczI1Ni1jdHIAAAAGYmNyeXB0AAAAGAAAABCI/yMPFs
xKPLAYuSf+AsXlAAAAEAAAAAEAAAAzAAAAC3NzaC1lZDI1NTE5AAAAIEuvt6OdVZw84AYO
nMIdMi4zHxHA6VQgl4OH/6xgzKbkAAAAkGAM89t4LsW8faZA7IO0wclfcflg5wCTOMTZp2
RFG5/rqDEj8s5M4/Ul/cmqf6+CgbEHCCyCnGFYjL9OcbJGvpZMs/Y2kkFTU8bO/FUAReDw
nfmd2tZ6hhCrVJZnoqVNC/VTkOakX7DZxnIAk/PvenuutrmS2uUllD8K+LnqqZIIAmU9ry
5YvqCPEu9dE2cyzQ==
-----END OPENSSH PRIVATE KEY-----
"
set public-key "ssh-ed25519
AAAAC3NzaC1lZDI1NTE5AAAAIEuvt6OdVZw84AYOnMIdMi4zHxHA6VQgl4OH/6xgzKbk"
set source built-in
next
edit "Fortinet_SSH_RSA2048"
set password ENC
AAAAoHoxNTuv3smNGRluKIjfFKL/csKZ9tNmfLrpa/nAUNLa/IqTH3uzjOO28czVZQIyMvPWzDRK+tb6QNE
rBYhyFrRis0oEC8jPIlYlaS9is3BrUvjSGI8vko24SEaBH+oPKh6ORZAkEpTfCGidmCshcX0erYH7VmVeMJ
Uz2JDTvoKXwIIxlz8afIi3DlThL6SUag==
set private-key "-----BEGIN OPENSSH PRIVATE KEY-----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-----END OPENSSH PRIVATE KEY-----
"
set public-key "ssh-rsa
AAAAB3NzaC1yc2EAAAADAQABAAABAQCvTIe+5yCUjaMM02aflP1QvIW4TXu3TKHqjOmF2EQt67atDTWVs0+
YvhRRPcuf1IaURkSXiD9Hp6w4I2EKg7rATr6vZdFxRQIUUQjO1o7ZEcKmsmdMTGgFXqyqmpECqcwfE8453K
BTTWHJ7NZOzyXLBy84RH7i6QAFI2Kf9kze1yNjegxzjlSb3zc8wlAXz+nvgNNf+NAE0MhN7gMX+lTe52CMi
SY3Xs+5bQ4oCqJJRk1yJLAgVC4o7jxqPhKTQKPmCid28SABLBspMpACT45k4+WKddeRdDurCzWhly9oTQev
o2OO/HiPGh/EaSmiXPjSuUc5ViLo3GaA4Pd/0iMF"
set source built-in
next
end
config firewall ssh local-ca
edit "Fortinet_SSH_CA"
set password ENC
AAAAoKg0VVkS/kKkSwi2UTWvjAtlz4pW1ZXyMf+TQKXVima+p5bUkJ32mLnjKNPXKArSRaX1LTRXEqJG8Rj
RAnNPQrOzl9cVfVTUaoybV4nZ0qGqOFdRE5DiYCVf0HHyHjh7D/qnwJrXvviu+CXkF64Yhu+ML/
TMfZaSsvJz0wK64/ahtNw0D1lpx9N0dceFajSHPA==
set private-key "-----BEGIN OPENSSH PRIVATE KEY-----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-----END OPENSSH PRIVATE KEY-----
"
set public-key "ssh-rsa
AAAAB3NzaC1yc2EAAAADAQABAAABAQDMuY/AhjmtD0CnKFGa3o55nKsqrBuHqP6g9dr8F5GsiWCIkQgfw3c
ZGftoWt7doxER27avTpBOsGlPydD+JJVXg1YsO3+StnxH0v6FHHEXk3lxUFUMsUX79EeOJyRfGaBOfDneE6
Pw03zLYEdDzpPo38vn/
JxluqgXc36lSUKKPAbfeiNNdoZBk1zHvhSFCsUWyeZw6O4kNTvF2dHVV1a7PECrMidJntoChNe7G+2on8ek
STvPn0Z3/7zZxeeFtlTd1bLdXFW3yKI1X1bujOeE4Ac+cpx9DuUNcxLvzkdyS2uLRNb3+Pe94qSHsnHwkFC
VRBsBTnX+CBxt5RJIo47Z"
set source built-in
next
edit "Fortinet_SSH_CA_Untrusted"
set password ENC
AAAAoNXIhrQr2wPJx5OR4K7CCudheyuB31nx3ozRPLTQiXHmoxEMA49ILuuLpkKFs4qaNLQWYzcuLDFvO+E
u7j/
hQMEGb28e5vbVbp7XLhPjPWnBlNAi8qG2Dps0aNBvfIUGtqyPK1+qD3saYizvfK81CBPNCrpZYlS3nnqgB6
aiSZX8/KVMuzvB+7iiYaz212IGsw==
set private-key "-----BEGIN OPENSSH PRIVATE KEY-----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-----END OPENSSH PRIVATE KEY-----
"
set public-key "ssh-rsa
AAAAB3NzaC1yc2EAAAADAQABAAABAQC/4v4MFWWnNuRLzIgws1MP7JvnRNdQnZdFLBggQdMUPViOciiOd/
YMDZ8YSKFYd3wBEFW01iSlbsBpvQesfgc3kwJIk6MmvWhLuvUW6zkp1c7oTXIJpI/
aOwgR2VuH3V3hYwz28ZixGxdmDbWQtBVr1fLEvtsul0NmyaXLzKagpH9J2VcneVFX6g6ExcFoAQs8hav1pf
FNxihNhEdPgvFi3cUx0hh0EXemSepbV0kjpwojDL0Ezqx7+VAfD6dEryxbDLJO2jgnM++F6/
SEchlO9J9bjPZvtfpHYkz21V84Z2dzG9Ife2GkXyMrue2I5ZfBXs0vHJRAykSXzxL0rCzZ"
set source built-in
next
end
config firewall ssh setting
set caname "Fortinet_SSH_CA"
set untrusted-caname "Fortinet_SSH_CA_Untrusted"
set hostkey-rsa2048 "Fortinet_SSH_RSA2048"
set hostkey-dsa1024 "Fortinet_SSH_DSA1024"
set hostkey-ecdsa256 "Fortinet_SSH_ECDSA256"
set hostkey-ecdsa384 "Fortinet_SSH_ECDSA384"
set hostkey-ecdsa521 "Fortinet_SSH_ECDSA521"
set hostkey-ed25519 "Fortinet_SSH_ED25519"
end

You might also like