<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>網路位址 &#8211; 21點情報網</title>
	<atom:link href="https://ailog.tw/lifelog/tag/%E7%B6%B2%E8%B7%AF%E4%BD%8D%E5%9D%80/feed/" rel="self" type="application/rss+xml" />
	<link>https://ailog.tw/lifelog</link>
	<description></description>
	<lastBuildDate>Sat, 23 Jan 2021 06:17:15 +0000</lastBuildDate>
	<language>zh-TW</language>
	<sy:updatePeriod>
	hourly	</sy:updatePeriod>
	<sy:updateFrequency>
	1	</sy:updateFrequency>
	<generator>https://wordpress.org/?v=6.8.3</generator>
	<item>
		<title>跟小編一起學-FortiGate防火牆-設定「網路位址」物件(Console設定方式)</title>
		<link>https://ailog.tw/lifelog/2021/01/17/fortigate-address-objects2/</link>
		
		<dc:creator><![CDATA[blackjack]]></dc:creator>
		<pubDate>Sun, 17 Jan 2021 15:33:10 +0000</pubDate>
				<category><![CDATA[3C資訊]]></category>
		<category><![CDATA[Firewall]]></category>
		<category><![CDATA[40F]]></category>
		<category><![CDATA[60B]]></category>
		<category><![CDATA[60D]]></category>
		<category><![CDATA[60E]]></category>
		<category><![CDATA[80C]]></category>
		<category><![CDATA[Address]]></category>
		<category><![CDATA[Address Group]]></category>
		<category><![CDATA[cmd]]></category>
		<category><![CDATA[command]]></category>
		<category><![CDATA[command line]]></category>
		<category><![CDATA[console]]></category>
		<category><![CDATA[fortigate]]></category>
		<category><![CDATA[物件]]></category>
		<category><![CDATA[網路位址]]></category>
		<category><![CDATA[網路位址群組]]></category>
		<category><![CDATA[跟小編一起學-FortiGate防火牆-設定「網路位址」物件(Console設定方式)]]></category>
		<guid isPermaLink="false">https://ailog.tw/lifelog/?p=6284</guid>

					<description><![CDATA[今天小編要介紹的單元是透過Console方式設定FortiGate防火牆的「網路位址」物件，「網路位址」被使用 &#8230; <p class="link-more"><a href="https://ailog.tw/lifelog/2021/01/17/fortigate-address-objects2/" class="more-link">閱讀全文<span class="screen-reader-text">〈跟小編一起學-FortiGate防火牆-設定「網路位址」物件(Console設定方式)〉</span></a></p>]]></description>
										<content:encoded><![CDATA[<p>今天小編要介紹的單元是透過Console方式設定FortiGate防火牆的「網路位址」物件，「網路位址」被使用在防火牆規則與VPN的設定過程，趕快跟著小編一起來了解吧。<span id="more-6284"></span></p>
<p>介紹的內容為<br />
透過Console的Command指令模式：<br />
(1)、建立IP型態的網路位址物件<br />
(2)、建立FQDN型態的網路位址物件<br />
(3)、建立IP範圍區段的網路位址物件<br />
(4)、建立國家地區型態的網路位址物件<br />
(5)、建立網路位址群組</p>
<p>一、登入系統<br />
<img decoding="async" class="alignnone wp-image-5930 size-full" src="https://ailog.tw/lifelog/wp-content/uploads/2021/01/mgmt-user011.jpg" alt="" width="396" height="102" srcset="https://ailog.tw/lifelog/wp-content/uploads/2021/01/mgmt-user011.jpg 396w, https://ailog.tw/lifelog/wp-content/uploads/2021/01/mgmt-user011-300x77.jpg 300w" sizes="(max-width: 396px) 100vw, 396px" /></p>
<p>二、切換至網路位址物件設定模式<br />
輸入「config firewall address」接著按下enter送出指令，即可進入網路位址物件設定模式。<br />
<img decoding="async" class="alignnone wp-image-6291 size-full" src="https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-cmd-01.jpg" alt="" width="522" height="77" srcset="https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-cmd-01.jpg 522w, https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-cmd-01-300x44.jpg 300w" sizes="(max-width: 522px) 100vw, 522px" /></p>
<p>三、新增網路位址物件<br />
(1)、建立IP型態的「網路位址」物件<br />
a.輸入「edit &#8220;TW-Yahoo-IP&#8221;」接著按下enter送出指令，即可產生一個名稱為「TW-Yahoo-IP」的「網路位址」物件。<br />
<img decoding="async" class="alignnone wp-image-6297 size-full" src="https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-cmd-02-1.jpg" alt="" width="486" height="60" srcset="https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-cmd-02-1.jpg 486w, https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-cmd-02-1-300x37.jpg 300w" sizes="(max-width: 486px) 100vw, 486px" /></p>
<p>b.輸入「set subnet 180.222.102.201 255.255.255.255」接著按下enter送出指令，即可定義該物件IP位址為「180.222.102.201 255.255.255.255」。<br />
<img loading="lazy" decoding="async" class="alignnone wp-image-6298 size-full" src="https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-cmd-02-2.jpg" alt="" width="596" height="37" srcset="https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-cmd-02-2.jpg 596w, https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-cmd-02-2-300x19.jpg 300w" sizes="auto, (max-width: 596px) 100vw, 596px" /></p>
<p>c.輸入「set associated-interface &#8220;wan1&#8243;」接著按下enter送出指令，即可定義該物件的網路介面綁定為wan1。<br />
<img loading="lazy" decoding="async" class="alignnone wp-image-6299 size-full" src="https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-cmd-02-3.jpg" alt="" width="484" height="32" srcset="https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-cmd-02-3.jpg 484w, https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-cmd-02-3-300x20.jpg 300w" sizes="auto, (max-width: 484px) 100vw, 484px" /></p>
<p>d.輸入「set comment &#8220;台灣Yahoo網頁IP&#8221;」接著按下enter送出指令，即可定義該物件的注解為「台灣Yahoo網頁IP」，在Conosle畫面輸入中文會有亂碼畫面，但只要是採用UTF-8編碼是不影響設定結果。<br />
<span style="font-size: 12pt; color: #ff6600;">※在Console輸入中文的技巧為，先把要設定的指令在筆記本輸入好後再將指令複製進Console</span><br />
<img loading="lazy" decoding="async" class="alignnone wp-image-6300 size-full" src="https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-cmd-02-4.jpg" alt="" width="863" height="43" srcset="https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-cmd-02-4.jpg 863w, https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-cmd-02-4-300x15.jpg 300w, https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-cmd-02-4-768x38.jpg 768w" sizes="auto, (max-width: 767px) 89vw, (max-width: 1000px) 54vw, (max-width: 1071px) 543px, 580px" /></p>
<p>e.輸入「show」接著按下enter送出指令，即可查看設定結果<br />
<img loading="lazy" decoding="async" class="alignnone wp-image-6295 size-full" src="https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-cmd-03.jpg" alt="" width="535" height="213" srcset="https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-cmd-03.jpg 535w, https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-cmd-03-300x119.jpg 300w" sizes="auto, (max-width: 535px) 100vw, 535px" /></p>
<p>f.輸入「next」接著按下enter送出指令，即可接續設定下一個「網路位置」物件<br />
<img loading="lazy" decoding="async" class="alignnone wp-image-6296 size-full" src="https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-cmd-04.jpg" alt="" width="390" height="68" srcset="https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-cmd-04.jpg 390w, https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-cmd-04-300x52.jpg 300w" sizes="auto, (max-width: 390px) 100vw, 390px" /></p>
<p>(2)、建立FQDN型態的「網路位址」物件<br />
a.輸入「edit &#8220;TW-Yahoo-FQDN&#8221;」接著按下enter送出指令，即可產生一個名稱為「TW-Yahoo-FQDN」的「網路位址」物件。<br />
<img loading="lazy" decoding="async" class="alignnone wp-image-6303 size-full" src="https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-cmd-05-1.jpg" alt="" width="505" height="57" srcset="https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-cmd-05-1.jpg 505w, https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-cmd-05-1-300x34.jpg 300w" sizes="auto, (max-width: 505px) 100vw, 505px" /></p>
<p>b.輸入「set type fqdn」接著按下enter送出指令，即可定義該物件的型態為FQDN。<br />
<img loading="lazy" decoding="async" class="alignnone size-medium wp-image-6304" src="https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-cmd-05-2-300x38.jpg" alt="" width="300" height="38" srcset="https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-cmd-05-2-300x38.jpg 300w, https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-cmd-05-2.jpg 325w" sizes="auto, (max-width: 300px) 100vw, 300px" /></p>
<p>c.輸入「set fqdn &#8220;tw.yahoo.com&#8221;」接著按下enter送出指令，即可定義該物件fqdn位址為「tw.yahoo.com」。<br />
<img loading="lazy" decoding="async" class="alignnone wp-image-6305 size-full" src="https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-cmd-05-3.jpg" alt="" width="420" height="41" srcset="https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-cmd-05-3.jpg 420w, https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-cmd-05-3-300x29.jpg 300w" sizes="auto, (max-width: 420px) 100vw, 420px" /></p>
<p>d.輸入「set associated-interface &#8220;wan1&#8243;」接著按下enter送出指令，即可定義該物件的網路介面綁定為wan1。<br />
<img loading="lazy" decoding="async" class="alignnone wp-image-6306 size-full" src="https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-cmd-05-4.jpg" alt="" width="504" height="37" srcset="https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-cmd-05-4.jpg 504w, https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-cmd-05-4-300x22.jpg 300w" sizes="auto, (max-width: 504px) 100vw, 504px" /></p>
<p>e.輸入「set comment &#8220;台灣Yahoo網頁Doamin Name&#8221;」接著按下enter送出指令，即可定義該物件的注解為「台灣Yahoo網頁Doamin Name」，在Conosle畫面輸入中文會有亂碼畫面，但只要是採用UTF-8編碼是不影響設定結果。<br />
<span style="font-size: 12pt; color: #ff6600;">※在Console輸入中文的技巧為，先把要設定的指令在筆記本輸入好後再將指令複製進Console</span><br />
<img loading="lazy" decoding="async" class="alignnone wp-image-6308 size-full" src="https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-cmd-05-5.jpg" alt="" width="970" height="40" srcset="https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-cmd-05-5.jpg 970w, https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-cmd-05-5-300x12.jpg 300w, https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-cmd-05-5-768x32.jpg 768w" sizes="auto, (max-width: 767px) 89vw, (max-width: 1000px) 54vw, (max-width: 1071px) 543px, 580px" /></p>
<p>f.輸入「show」接著按下enter送出指令，即可查看設定結果<br />
<img loading="lazy" decoding="async" class="alignnone wp-image-6309 size-full" src="https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-cmd-05-6.jpg" alt="" width="542" height="230" srcset="https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-cmd-05-6.jpg 542w, https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-cmd-05-6-300x127.jpg 300w" sizes="auto, (max-width: 542px) 100vw, 542px" /></p>
<p>g.輸入「next」接著按下enter送出指令，即可接續設定下一個「網路位置」物件<br />
<img loading="lazy" decoding="async" class="alignnone wp-image-6310 size-full" src="https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-cmd-05-7.jpg" alt="" width="427" height="42" srcset="https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-cmd-05-7.jpg 427w, https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-cmd-05-7-300x30.jpg 300w" sizes="auto, (max-width: 427px) 100vw, 427px" /></p>
<p>(3)、建立IP範圍區段的網路位址<br />
a.輸入「edit &#8220;Home-1F-Range&#8221;」接著按下enter送出指令，即可產生一個名稱為「Home-1F-Range」的「網路位址」物件。<br />
<img loading="lazy" decoding="async" class="alignnone wp-image-6313 size-full" src="https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-cmd-06-1.jpg" alt="" width="499" height="54" srcset="https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-cmd-06-1.jpg 499w, https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-cmd-06-1-300x32.jpg 300w" sizes="auto, (max-width: 499px) 100vw, 499px" /></p>
<p>b.輸入「set type iprange」接著按下enter送出指令，即可定義該物件的型態為IP範圍區段。<br />
<img loading="lazy" decoding="async" class="alignnone wp-image-6314 size-full" src="https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-cmd-06-2.jpg" alt="" width="351" height="40" srcset="https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-cmd-06-2.jpg 351w, https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-cmd-06-2-300x34.jpg 300w" sizes="auto, (max-width: 351px) 100vw, 351px" /></p>
<p>c.輸入「set start-ip 192.168.1.1」接著按下enter送出指令，即可定義該物件的起始IP為「192.168.1.1」。<br />
<img loading="lazy" decoding="async" class="alignnone wp-image-6315 size-full" src="https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-cmd-06-3.jpg" alt="" width="427" height="35" srcset="https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-cmd-06-3.jpg 427w, https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-cmd-06-3-300x25.jpg 300w" sizes="auto, (max-width: 427px) 100vw, 427px" /></p>
<p>d.輸入「set end-ip 192.168.1.30」接著按下enter送出指令，即可定義該物件的結束IP為「192.168.1.30」。<br />
<img loading="lazy" decoding="async" class="alignnone wp-image-6316 size-full" src="https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-cmd-06-4.jpg" alt="" width="420" height="36" srcset="https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-cmd-06-4.jpg 420w, https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-cmd-06-4-300x26.jpg 300w" sizes="auto, (max-width: 420px) 100vw, 420px" /></p>
<p>e.輸入「set associated-interface &#8220;internal&#8221;」接著按下enter送出指令，即可定義該物件的網路介面綁定為內部網路的internal。<br />
<img loading="lazy" decoding="async" class="alignnone wp-image-6318 size-full" src="https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-cmd-06-5.jpg" alt="" width="539" height="36" srcset="https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-cmd-06-5.jpg 539w, https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-cmd-06-5-300x20.jpg 300w" sizes="auto, (max-width: 539px) 100vw, 539px" /></p>
<p>f.輸入「set comment &#8220;家裡1樓所使用IP範圍&#8221;」接著按下enter送出指令，即可定義該物件的注解為「家裡1樓所使用IP範圍」，在Conosle畫面輸入中文會有亂碼畫面，但只要是採用UTF-8編碼是不影響設定結果。<br />
<span style="font-size: 12pt; color: #ff6600;">※在Console輸入中文的技巧為，先把要設定的指令在筆記本輸入好後再將指令複製進Console</span><br />
<img loading="lazy" decoding="async" class="alignnone wp-image-6319 size-full" src="https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-cmd-06-6.jpg" alt="" width="1141" height="58" srcset="https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-cmd-06-6.jpg 1141w, https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-cmd-06-6-300x15.jpg 300w, https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-cmd-06-6-1024x52.jpg 1024w, https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-cmd-06-6-768x39.jpg 768w" sizes="auto, (max-width: 767px) 89vw, (max-width: 1000px) 54vw, (max-width: 1071px) 543px, 580px" /></p>
<p>g.輸入「show」接著按下enter送出指令，即可查看設定結果<br />
<img loading="lazy" decoding="async" class="alignnone wp-image-6326 size-full" src="https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-cmd-06-7.jpg" alt="" width="540" height="253" srcset="https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-cmd-06-7.jpg 540w, https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-cmd-06-7-300x141.jpg 300w" sizes="auto, (max-width: 540px) 100vw, 540px" /></p>
<p>h.輸入「next」接著按下enter送出指令，即可接續設定下一個「網路位置」物件<br />
<img loading="lazy" decoding="async" class="alignnone wp-image-6327 size-full" src="https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-cmd-06-8.jpg" alt="" width="403" height="40" srcset="https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-cmd-06-8.jpg 403w, https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-cmd-06-8-300x30.jpg 300w" sizes="auto, (max-width: 403px) 100vw, 403px" /></p>
<p>(4)、建立國家地區型態的網路位址<br />
a.輸入「edit &#8220;Taiwan&#8221;」接著按下enter送出指令，即可產生一個名稱為「Taiwan」的「網路位址」物件。<br />
<img loading="lazy" decoding="async" class="alignnone wp-image-6328 size-full" src="https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-cmd-07-1.jpg" alt="" width="430" height="59" srcset="https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-cmd-07-1.jpg 430w, https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-cmd-07-1-300x41.jpg 300w" sizes="auto, (max-width: 430px) 100vw, 430px" /></p>
<p>b.輸入「set type geography」接著按下enter送出指令，即可定義該物件的型態為國家地區。<br />
<img loading="lazy" decoding="async" class="alignnone wp-image-6329 size-full" src="https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-cmd-07-2.jpg" alt="" width="310" height="42" srcset="https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-cmd-07-2.jpg 310w, https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-cmd-07-2-300x41.jpg 300w" sizes="auto, (max-width: 310px) 100vw, 310px" /></p>
<p>c.輸入「set country &#8220;TW&#8221;」接著按下enter送出指令，即可定義該物件的國家地區為「Taiwan」。<br />
<img loading="lazy" decoding="async" class="alignnone wp-image-6330 size-full" src="https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-cmd-07-3.jpg" alt="" width="281" height="38" /></p>
<p>d.輸入「set associated-interface &#8220;wan1&#8243;」接著按下enter送出指令，即可定義該物件的網路介面綁定為外部網路的wan1。<br />
<img loading="lazy" decoding="async" class="alignnone wp-image-6331 size-full" src="https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-cmd-07-4.jpg" alt="" width="428" height="42" srcset="https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-cmd-07-4.jpg 428w, https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-cmd-07-4-300x29.jpg 300w" sizes="auto, (max-width: 428px) 100vw, 428px" /></p>
<p>e.輸入「set comment &#8220;台灣來源IP&#8221;」接著按下enter送出指令，即可定義該物件的注解為「台灣來源IP」，在Conosle畫面輸入中文會有亂碼畫面，但只要是採用UTF-8編碼是不影響設定結果。<br />
<span style="font-size: 12pt; color: #ff6600;">※在Console輸入中文的技巧為，先把要設定的指令在筆記本輸入好後再將指令複製進Console</span><br />
<img loading="lazy" decoding="async" class="alignnone wp-image-6332 size-full" src="https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-cmd-07-5.jpg" alt="" width="769" height="42" srcset="https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-cmd-07-5.jpg 769w, https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-cmd-07-5-300x16.jpg 300w" sizes="auto, (max-width: 767px) 89vw, (max-width: 1000px) 54vw, (max-width: 1071px) 543px, 580px" /></p>
<p>f.輸入「show」接著按下enter送出指令，即可查看設定結果<br />
<img loading="lazy" decoding="async" class="alignnone wp-image-6333 size-full" src="https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-cmd-07-6.jpg" alt="" width="537" height="230" srcset="https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-cmd-07-6.jpg 537w, https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-cmd-07-6-300x128.jpg 300w" sizes="auto, (max-width: 537px) 100vw, 537px" /></p>
<p>g.輸入「next」接著按下enter送出指令，即可接續設定下一個「網路位置」物件<br />
<img loading="lazy" decoding="async" class="alignnone wp-image-6334 size-full" src="https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-cmd-07-7.jpg" alt="" width="335" height="44" srcset="https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-cmd-07-7.jpg 335w, https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-cmd-07-7-300x39.jpg 300w" sizes="auto, (max-width: 335px) 100vw, 335px" /></p>
<p>四、離開網路位址物件設定模式<br />
輸入「end」接著按下enter送出指令，即可離開網路位址物件設定模式<br />
<img loading="lazy" decoding="async" class="alignnone wp-image-6335 size-full" src="https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-cmd-08.jpg" alt="" width="339" height="66" srcset="https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-cmd-08.jpg 339w, https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-cmd-08-300x58.jpg 300w" sizes="auto, (max-width: 339px) 100vw, 339px" /></p>
<p>五、切換至網路位址群組物件設定模式<br />
輸入「config firewall addrgrp」接著按下enter送出指令，即可進入網路位址群組物件設定模式。<br />
<img loading="lazy" decoding="async" class="alignnone wp-image-6337 size-full" src="https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-cmd-09.jpg" alt="" width="438" height="81" srcset="https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-cmd-09.jpg 438w, https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-cmd-09-300x55.jpg 300w" sizes="auto, (max-width: 438px) 100vw, 438px" /></p>
<p>六、新增網路位址群組物件<br />
(1)、輸入「edit &#8220;Yahoo-WEB&#8221;」接著按下enter送出指令，即可產生一個名稱為「Yahoo-WEB」的「網路位址群組」物件。<br />
<img loading="lazy" decoding="async" class="alignnone wp-image-6338 size-full" src="https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-cmd-10-1.jpg" alt="" width="459" height="56" srcset="https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-cmd-10-1.jpg 459w, https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-cmd-10-1-300x37.jpg 300w" sizes="auto, (max-width: 459px) 100vw, 459px" /></p>
<p>(2)、輸入「set member &#8220;TW-Yahoo-FQDN&#8221; &#8220;TW-Yahoo-IP&#8221;」接著按下enter送出指令，即可將「TW-Yahoo-FQDN」與「TW-Yahoo-IP」這兩個網路位址物件綁定在該群組。<br />
<img loading="lazy" decoding="async" class="alignnone wp-image-6339 size-full" src="https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-cmd-10-2.jpg" alt="" width="554" height="43" srcset="https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-cmd-10-2.jpg 554w, https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-cmd-10-2-300x23.jpg 300w" sizes="auto, (max-width: 554px) 100vw, 554px" /></p>
<p>(3)、輸入「set comment &#8220;台灣YAHOO網頁&#8221;」接著按下enter送出指令，即可定義該物件的注解為「台灣YAHOO網頁」，在Conosle畫面輸入中文會有亂碼畫面，但只要是採用UTF-8編碼是不影響設定結果。<br />
<span style="font-size: 12pt; color: #ff6600;">※在Console輸入中文的技巧為，先把要設定的指令在筆記本輸入好後再將指令複製進Console<br />
<img loading="lazy" decoding="async" class="alignnone wp-image-6340 size-full" src="https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-cmd-10-3.jpg" alt="" width="816" height="45" srcset="https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-cmd-10-3.jpg 816w, https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-cmd-10-3-300x17.jpg 300w, https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-cmd-10-3-768x42.jpg 768w" sizes="auto, (max-width: 767px) 89vw, (max-width: 1000px) 54vw, (max-width: 1071px) 543px, 580px" /><br />
</span></p>
<p>(4)、輸入「show」接著按下enter送出指令，即可查看設定結果<br />
<img loading="lazy" decoding="async" class="alignnone wp-image-6342 size-full" src="https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-cmd-10-4.jpg" alt="" width="540" height="177" srcset="https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-cmd-10-4.jpg 540w, https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-cmd-10-4-300x98.jpg 300w" sizes="auto, (max-width: 540px) 100vw, 540px" /></p>
<p>(5)、輸入「next」接著按下enter送出指令，即可接續設定下一個「網路位置群組」物件<br />
<img loading="lazy" decoding="async" class="alignnone wp-image-6344 size-full" src="https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-cmd-10-5.jpg" alt="" width="358" height="76" srcset="https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-cmd-10-5.jpg 358w, https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-cmd-10-5-300x64.jpg 300w" sizes="auto, (max-width: 358px) 100vw, 358px" /></p>
<p>六、離開網路位址群組物件設定模式<br />
輸入「end」接著按下enter送出指令，即可離開網路位址群組物件設定模式<br />
<img loading="lazy" decoding="async" class="alignnone wp-image-6345 size-full" src="https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-cmd-11.jpg" alt="" width="349" height="69" srcset="https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-cmd-11.jpg 349w, https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-cmd-11-300x59.jpg 300w" sizes="auto, (max-width: 349px) 100vw, 349px" /></p>
]]></content:encoded>
					
		
		
			</item>
		<item>
		<title>跟小編一起學-FortiGate防火牆-設定「網路位址」物件(web設定方式)</title>
		<link>https://ailog.tw/lifelog/2021/01/16/fortigate-address-objects/</link>
		
		<dc:creator><![CDATA[blackjack]]></dc:creator>
		<pubDate>Sat, 16 Jan 2021 09:18:20 +0000</pubDate>
				<category><![CDATA[3C資訊]]></category>
		<category><![CDATA[Firewall]]></category>
		<category><![CDATA[40F]]></category>
		<category><![CDATA[60B]]></category>
		<category><![CDATA[60D]]></category>
		<category><![CDATA[60E]]></category>
		<category><![CDATA[80C]]></category>
		<category><![CDATA[Address]]></category>
		<category><![CDATA[Address Group]]></category>
		<category><![CDATA[fortigate]]></category>
		<category><![CDATA[物件]]></category>
		<category><![CDATA[網路位址]]></category>
		<category><![CDATA[網路位址群組]]></category>
		<category><![CDATA[跟小編一起學-FortiGate防火牆-設定「網路位址」物件(web設定方式)]]></category>
		<guid isPermaLink="false">https://ailog.tw/lifelog/?p=6235</guid>

					<description><![CDATA[今天小編要介紹的單元是設定FortiGate防火牆的「網路位址」物件，「網路位址」被使用在防火牆規則與VPN的 &#8230; <p class="link-more"><a href="https://ailog.tw/lifelog/2021/01/16/fortigate-address-objects/" class="more-link">閱讀全文<span class="screen-reader-text">〈跟小編一起學-FortiGate防火牆-設定「網路位址」物件(web設定方式)〉</span></a></p>]]></description>
										<content:encoded><![CDATA[<p>今天小編要介紹的單元是設定FortiGate防火牆的「網路位址」物件，「網路位址」被使用在防火牆規則與VPN的設定過程，趕快跟著小編一起來了解吧。<span id="more-6235"></span></p>
<p>介紹的內容為<br />
透過web管理畫面：<br />
(1)、建立IP型態的網路位址物件<br />
(2)、建立FQDN型態的網路位址物件<br />
(3)、建立IP範圍區段的網路位址物件<br />
(4)、建立國家地區型態的網路位址物件<br />
(5)、建立網路位址群組</p>
<p>[web管理畫面]<br />
(1)、登入系統<br />
<img loading="lazy" decoding="async" class="alignnone wp-image-5823 size-full" src="https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-LOGIN-08.jpg" alt="" width="381" height="235" srcset="https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-LOGIN-08.jpg 381w, https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-LOGIN-08-300x185.jpg 300w" sizes="auto, (max-width: 381px) 100vw, 381px" /></p>
<p>(2)、切換至網路位址物件設定畫面<br />
點選「Policy &amp; Objects」→「Addresses」<br />
<img loading="lazy" decoding="async" class="alignnone wp-image-6240 size-full" src="https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-01.jpg" alt="" width="251" height="247" /></p>
<p>(2)、新增網路位址物件<br />
點選「Create New」→「Address」<br />
<img loading="lazy" decoding="async" class="alignnone size-medium wp-image-6244" src="https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-02-300x95.jpg" alt="" width="300" height="95" srcset="https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-02-300x95.jpg 300w, https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-02.jpg 346w" sizes="auto, (max-width: 300px) 100vw, 300px" /></p>
<p>(3)、網路位址設定畫面功能介紹<br />
<strong>Name：</strong>定義「網路位址」物件的名稱，方便日後引用的識別性。<br />
<strong>Color：</strong>設定「網路位址」物件的顯示顏色。<br />
<img loading="lazy" decoding="async" class="alignnone wp-image-6246 size-full" src="https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-03.jpg" alt="" width="497" height="111" srcset="https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-03.jpg 497w, https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-03-300x67.jpg 300w" sizes="auto, (max-width: 497px) 100vw, 497px" /></p>
<p><strong>Type：</strong>定義「網路位址」物件的型態，共有下列5種類型。<br />
(a)、FQDN：Domain Name的定義方式(例如：tw.yahoo.com)。</p>
<p>(b)、Geography：國家地區(例如：Taiwan)。</p>
<p>(c)、IP Range：IP範圍區段(例如：192.168.1.1-192.168.1.254)。</p>
<p>(d)、Subnet：單一IP(例如：192.168.1.1/32)或是網段(例如：192.168.1.0/24)。</p>
<p>(e)、Fabric Connector Address：SDN(Software-Defined Networking，軟體定義網路)，支援下列廠商。<br />
●Application Centric Infrastructure (ACI)<br />
●Amazon Web Services (AWS)<br />
●Microsoft Azure<br />
●VMware NSX<br />
●Nuage Virtualized Services Platform<br />
●Oracle Cloud Infrastructure (OCI)<br />
●OpenStack (Horizon)<br />
●Google Cloud Platform (GCP)</p>
<p><img loading="lazy" decoding="async" class="alignnone wp-image-6247 size-full" src="https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-04.jpg" alt="" width="502" height="138" srcset="https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-04.jpg 502w, https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-04-300x82.jpg 300w" sizes="auto, (max-width: 502px) 100vw, 502px" /></p>
<p><strong>Interface：</strong>定義「網路位址」物件所屬介面，當「網路位址」定義在某個介面上，在其他介面就看不到該「網路位址」，通常會用來區分內部網路及外部網路「網路位址，避免再設定防火牆規則時誤選「網路位址」，預設有下列6種介面。<br />
(a)、Internal：內部網路介面。<br />
(b)、SSL-VPN：SSL VPN介面。<br />
(c)、dmz：非軍事區域介面。<br />
(d)、wan1：外部網路介面1<br />
(e)、wan2：外部網路介面2<br />
(f)、any：不限制綁定在任何介面。<br />
<img loading="lazy" decoding="async" class="alignnone wp-image-6249 size-full" src="https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-05.jpg" alt="" width="496" height="211" srcset="https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-05.jpg 496w, https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-05-300x128.jpg 300w" sizes="auto, (max-width: 496px) 100vw, 496px" /></p>
<p><strong>Show in Address List：</strong>是否顯示在「網路位址」清單，有些情境會透過該設定來隱藏「網路位址」不顯示在候選設定清單內，避免干擾設定、增加選取「網路位址」的複雜度，但通常都還是採用預設的顯示設定狀態。<img loading="lazy" decoding="async" class="alignnone size-full wp-image-6251" src="https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-06.jpg" alt="" width="214" height="36" /></p>
<p><strong>Static Route Configuration：</strong>顯示在靜態路由的「網路位址」候選清單。<br />
<img loading="lazy" decoding="async" class="alignnone wp-image-6252 size-full" src="https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-07.jpg" alt="" width="221" height="27" /></p>
<p><strong>Comments：</strong>定義「網路位址」物件的注釋說明，用途跟「Name」有異曲同工之處，但這個欄位可以輸入的字元較無限制，可以更清楚的紀錄該「網路位址」的用途。<br />
<img loading="lazy" decoding="async" class="alignnone wp-image-6253 size-full" src="https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-08.jpg" alt="" width="514" height="39" srcset="https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-08.jpg 514w, https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-08-300x23.jpg 300w" sizes="auto, (max-width: 514px) 100vw, 514px" /></p>
<p><strong>Tag：</strong>定義「網路位址」物件的標籤，當設定值很多時，可以透過標籤的屬性來快速區分，但在實務上小編還沒遇過這樣複雜的狀況，需要透過標籤來分類。<br />
<img loading="lazy" decoding="async" class="alignnone wp-image-6254 size-full" src="https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-09.jpg" alt="" width="318" height="75" srcset="https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-09.jpg 318w, https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-09-300x71.jpg 300w" sizes="auto, (max-width: 318px) 100vw, 318px" /></p>
<p>(4)、建立IP型態的「網路位址」物件<br />
Name：輸入「TW-Yahoo-IP」方便在選取「網路位址」時快速辨別。<br />
Type：選擇「Subnet」<br />
Subnet / IP Range：輸入IP或網段位址，本範例輸入「180.222.102.201」。<br />
Interface：選擇「wan1」<br />
Comments：輸入注解說明，本範例輸入「台灣Yahoo網頁IP」。<br />
<img loading="lazy" decoding="async" class="alignnone wp-image-6256 size-full" src="https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-10.jpg" alt="" width="684" height="450" srcset="https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-10.jpg 684w, https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-10-300x197.jpg 300w" sizes="auto, (max-width: 684px) 100vw, 684px" /></p>
<p>(5)、建立FQDN型態的網路位址<br />
Name：輸入「TW-Yahoo-FQDN」方便在選取「網路位址」時快速辨別。<br />
Type：選擇「FQDN」<br />
FQDN：本範例輸入「tw.yahoo.com」。<br />
Interface：選擇「wan1」<br />
Comments：輸入注解說明，本範例輸入「台灣Yahoo網頁Doamin Name」。<br />
<img loading="lazy" decoding="async" class="alignnone wp-image-6258 size-full" src="https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-11.jpg" alt="" width="674" height="458" srcset="https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-11.jpg 674w, https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-11-300x204.jpg 300w" sizes="auto, (max-width: 674px) 100vw, 674px" /></p>
<p>(6)、建立IP範圍區段的網路位址<br />
Name：輸入「Home-1F-Range」方便在選取「網路位址」時快速辨別。<br />
Type：選擇「 IP Range」<br />
Subnet / IP Range：本範例輸入「192.168.1.1-192.168.1.30」。<br />
Interface：選擇「Internal」<br />
Comments：輸入注解說明，本範例輸入「家裡1樓所使用IP範圍」。<br />
<img loading="lazy" decoding="async" class="alignnone wp-image-6260 size-full" src="https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-12.jpg" alt="" width="672" height="421" srcset="https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-12.jpg 672w, https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-12-300x188.jpg 300w" sizes="auto, (max-width: 672px) 100vw, 672px" /></p>
<p>(7)、建立國家地區型態的網路位址<br />
Name：輸入「Taiwan」方便在選取「網路位址」時快速辨別。<br />
Type：選擇「 Geography」<br />
Country/Region：本範例輸入「Taiwan」。<br />
Interface：選擇「wan1」<br />
Comments：輸入注解說明，本範例輸入「台灣來源IP」。<br />
<img loading="lazy" decoding="async" class="alignnone wp-image-6263 size-full" src="https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-13.jpg" alt="" width="679" height="423" srcset="https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-13.jpg 679w, https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-13-300x187.jpg 300w" sizes="auto, (max-width: 679px) 100vw, 679px" /></p>
<p>(8)、建立網路位址群組物件<br />
點選「Create New」→「Address Group」<br />
<img loading="lazy" decoding="async" class="alignnone size-full wp-image-6266" src="https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-14.jpg" alt="" width="227" height="114" /></p>
<p>Group Name：輸入「Yahoo-WEB」方便在選取「網路位址群組」時快速辨別。<br />
Members：選取想要綁定在一起的「網路位址」，本範例選取了「TW-Yahoo-FQDN」、「TW-Yahoo-IP」。<br />
Comments：輸入注解說明，本範例輸入「台灣YAHOO網頁」。<br />
<img loading="lazy" decoding="async" class="alignnone wp-image-6268 size-full" src="https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-15.jpg" alt="" width="801" height="541" srcset="https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-15.jpg 801w, https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-15-300x203.jpg 300w, https://ailog.tw/lifelog/wp-content/uploads/2021/01/FGT-Address-15-768x519.jpg 768w" sizes="auto, (max-width: 767px) 89vw, (max-width: 1000px) 54vw, (max-width: 1071px) 543px, 580px" /></p>
<p>&nbsp;</p>
]]></content:encoded>
					
		
		
			</item>
	</channel>
</rss>
