VLAN Subnet Flags
A flag may be turned off by prefixing with "!".
Flag | Description |
---|---|
heartbeat |
Allows the failover peers to probe one another over the subnet. At least one subnet must have a Heartbeat flag enabled. |
VLAN Subnet Services
Services may be turned off by prefixing with "!".
Service | Description |
---|---|
http |
When enabled, the FortiADC will listen for HTTP connections on FortiADC’s IP address on the subnet. The global HTTP GUI service must also be enabled. |
https |
When enabled, the FortiADC will listen for HTTPS connections on FortiADC’s IP address on the subnet. The global HTTPS GUI service must also be enabled. |
ssh |
When enabled, SSH login will be permitted on FortiADC’s IP address on the subnet. The global SSH service must also be enabled. |
snmp |
When enabled, SNMP will accept connections on FortiADC’s IP address on the subnet. The global SNMP service must also be enabled. |
envoy |
When enabled, Envoy will accept DNS lookup connections on FortiADC’s IP address on the subnet. The global Envoy service must also be enabled. |
envoy_agent |
When enabled, Envoy health checks will be performed on the subnet using FortiADC’s IP address on the subnet as the source IP. The global Envoy Agent service must also be enabled. |
fo_http |
When enabled, the FortiADC will listen for HTTP connections on FortiADC’s Failover IP address (if configured) on the subnet. The global HTTP GUI service must also be enabled. |
fo_https |
When enabled, the FortiADC will listen for HTTPS connections on FortiADC’s Failover IP address (if configured) on the subnet. The global HTTPS GUI service must also be enabled. |
fo_ssh |
When enabled, SSH login will be permitted on FortiADC’s Failover IP address (if configured) on the subnet. The global SSH service must also be enabled. |
fo_snmp |
When enabled, SNMP will accept connections on FortiADC’s Failover IP address (if configured) on the subnet. The global SNMP service must also be enabled. |
fo_envoy |
When enabled, Envoy will accept DNS lookup connections on FortiADC’s Failover IP address (if configured) on the subnet. The global Envoy service must also be enabled. |
fo_envoy_agent |
When enabled, Envoy health checks will be performed on the subnet using FortiADC’s Failover IP address on the subnet as the source IP. The global Envoy Agent service must also be enabled. |