You are here: Using the CLI > Context Command Summaries > VLAN and Subnet Commands

VLAN and Subnet Commands

ClosedUsing VLAN commands in the global context:
ClosedUsing VLAN-specific context commands:
ClosedUsing VLAN commands in the ifi context:
ClosedUsing Subnet commands in the global context:
ClosedUsing Subnet-specific context commands:

VLAN Subnet Flags

A flag may be turned off by prefixing with "!".

Flag Description

heartbeat

Allows the failover peers to probe one another over the subnet. At least one subnet must have a Heartbeat flag enabled.

VLAN Subnet Services

Services may be turned off by prefixing with "!".

Service Description
http 
When enabled, the FortiADC will listen for HTTP connections on FortiADC’s IP address on the subnet. The global HTTP GUI service must also be enabled.
https 
When enabled, the FortiADC will listen for HTTPS connections on FortiADC’s IP address on the subnet. The global HTTPS GUI service must also be enabled.
ssh 
When enabled, SSH login will be permitted on FortiADC’s IP address on the subnet. The global SSH service must also be enabled.
snmp 
When enabled, SNMP will accept connections on FortiADC’s IP address on the subnet. The global SNMP service must also be enabled.
envoy 
When enabled, Envoy will accept DNS lookup connections on FortiADC’s IP address on the subnet. The global Envoy service must also be enabled.
envoy_agent 
When enabled, Envoy health checks will be performed on the subnet using FortiADC’s IP address on the subnet as the source IP. The global Envoy Agent service must also be enabled.
fo_http 
When enabled, the FortiADC will listen for HTTP connections on FortiADC’s Failover IP address (if configured) on the subnet. The global HTTP GUI service must also be enabled.
fo_https 
When enabled, the FortiADC will listen for HTTPS connections on FortiADC’s Failover IP address (if configured) on the subnet. The global HTTPS GUI service must also be enabled.
fo_ssh 
When enabled, SSH login will be permitted on FortiADC’s Failover IP address (if configured) on the subnet. The global SSH service must also be enabled.
fo_snmp 
When enabled, SNMP will accept connections on FortiADC’s Failover IP address (if configured) on the subnet. The global SNMP service must also be enabled.
fo_envoy 
When enabled, Envoy will accept DNS lookup connections on FortiADC’s Failover IP address (if configured) on the subnet. The global Envoy service must also be enabled.
fo_envoy_agent 
When enabled, Envoy health checks will be performed on the subnet using FortiADC’s Failover IP address on the subnet as the source IP. The global Envoy Agent service must also be enabled.

Related Topics IconRelated Topics