fortiweb_vm
Fortiweb VM integration allows to manage WAF policies and block cookies, URLs, and host names.
- Category
- Network Security
- Pack
- FortinetFortiwebVM
Configuration parameters
- url — Server URL (required)
- credentials — Username. (required)
- api_version — API Version (required)
- proxy — Use system proxy settings
- insecure — Trust any certificate (not secure)
Commands (99)
- fortiwebvm-certificate-intermediate-group-list — List the certificate intermediate groups.
- fortiwebvm-content-routing-policy-list — List the HTTP content routing policies.
- fortiwebvm-custom-predefined-whitelist-list — Get custom predefined global whitelist.
- fortiwebvm-custom-predefined-whitelist-update — Update the custom predefined global whitelist.
- fortiwebvm-custom-whitelist-cookie-create — Create a custom global whitelist cookie object.
- fortiwebvm-custom-whitelist-cookie-update — Update a custom global whitelist cookie object.
- fortiwebvm-custom-whitelist-delete — Delete a custom global whitelist object from the custom global whitelist.
- fortiwebvm-custom-whitelist-header-field-create — Create a custom global whitelist header field object. Supports API version 2 only.
- fortiwebvm-custom-whitelist-header-field-update — Update a custom global whitelist header field object. Supports API version 2 only.
- fortiwebvm-custom-whitelist-list — List the custom global whitelist objects.
- fortiwebvm-custom-whitelist-parameter-create — Create a custom global whitelist parameter object.
- fortiwebvm-custom-whitelist-parameter-update — Update custom global whitelist parameter object.
- fortiwebvm-custom-whitelist-url-create — Create a custom global whitelist URL object.
- fortiwebvm-custom-whitelist-url-update — Update a custom global whitelist URL object.
- fortiwebvm-geo-exception-list — List the Geo exception groups.
- fortiwebvm-geo-ip-group-create — Create Geo IP.
- fortiwebvm-geo-ip-group-delete — Delete Geo IP.
- fortiwebvm-geo-ip-group-list — Get Geo IP list.
- fortiwebvm-geo-ip-group-update — Update Geo IP.
- fortiwebvm-geo-ip-member-add — Create Geo IP member.
- fortiwebvm-geo-ip-member-delete — Delete Geo IP member .
- fortiwebvm-geo-ip-member-list — Get Geo IP member.
- fortiwebvm-http-content-routing-member-add — Create the server policy HTTP content routing member.
- fortiwebvm-http-content-routing-member-delete — Delete the server policy HTTP content routing member.
- fortiwebvm-http-content-routing-member-list — List the Server policy HTTP content routing members.
- fortiwebvm-http-content-routing-member-update — Update the server policy HTTP content routing member.
- fortiwebvm-http-service-list — List the HTTP services.
- fortiwebvm-inline-protection-profile-list — List the inline protection profiles.
- fortiwebvm-ip-list-group-create — Create IP List.
- fortiwebvm-ip-list-group-delete — Supports API versions 1 & 2.
- fortiwebvm-ip-list-group-list — Supports API versions 1 & 2.
- fortiwebvm-ip-list-group-update — Update an IP list.
- fortiwebvm-ip-list-member-create — Create an IP list member. Supports API versions 1 & 2.
- fortiwebvm-ip-list-member-delete — Delete an IP list policy member.
- fortiwebvm-ip-list-member-list — List the IP list policy members.
- fortiwebvm-ip-list-member-update — Update IP list policy member.
- fortiwebvm-letsencrypt-certificate-list — List the Letsencrypt certificates. Supports API version 2 only.
- fortiwebvm-local-certificate-list — List the Server certificate that is stored locally on the FortiWeb appliance. Supports API versions 1 & 2.
- fortiwebvm-multi-certificate-list — List the multi certificates. Multi certificates configure RSA, DSA, and ECDSA certificates and reference them in server policy in Reverse Proxy mode and pserver in True Transparent Proxy mode. Supports API version 2 only.
- fortiwebvm-network-interface-list — List the network interfaces. A network interface is a connection point that enables communication between the FortiWeb device and the network, allowing traffic to flow through for inspection and protection. Supports API versions 1 & 2.
- fortiwebvm-persistence-policy-list — List all the persistence policies. The persistence policy applies to all members of the server pool. Supports API versions 1 & 2.
- fortiwebvm-protected-hostname-group-create — Create protected host name group.
- fortiwebvm-protected-hostname-group-delete — Delete a protected host name.
- fortiwebvm-protected-hostname-group-list — List the Protected host name group.
- fortiwebvm-protected-hostname-group-update — Update protected host name group.
- fortiwebvm-protected-hostname-member-create — Create protected host name member.
- fortiwebvm-protected-hostname-member-delete — Delete protected host name member.
- fortiwebvm-protected-hostname-member-list — List all the protected host name members.
- fortiwebvm-protected-hostname-member-update — Update a protected host name member.
- fortiwebvm-sdn-connector-list — List the SDN collector. The AWS and Azure connectors authorize FortiWeb to automatically retrieve the IP addresses of the back-end servers deployed on AWS or Azure. Supports API versions 2 only.
- fortiwebvm-server-health-check-list — List all the server health check policies. Tests for server responsiveness (called “server health checks” in the web UI) and polls web servers that are members of a server pool to determine their availability before forwarding traffic. Supports API versions 1 & 2.
- fortiwebvm-server-policy-create — Create a server policy.
- fortiwebvm-server-policy-delete — Delete the server policy.
- fortiwebvm-server-policy-list — List the server policies.
- fortiwebvm-server-policy-update — Update the server policy.
- fortiwebvm-server-pool-adfs-rule-create — Create a rule for an ADFS server pool group (server pool rule is a member of server pool group). Supports API version 2 only. Server pool rule advanced SSL settings are not supported in this command.
- fortiwebvm-server-pool-adfs-rule-update — Update a rule for an ADFS server pool group (server pool rule is a member of server pool group). Supports API version 2 only. Server pool rule advanced SSL settings are not supported in this command.
- fortiwebvm-server-pool-ftp-rule-create — Create a rule for an FTP server pool group (server pool rule is a member of server pool group). Supports API version 2 only. Server pool rule advanced SSL settings are not supported in this command.
- fortiwebvm-server-pool-ftp-rule-update — Update a rule for an FTP server pool group (server pool rule is a member of server pool group). Supports API version 2 only.
- fortiwebvm-server-pool-group-create — Create a server pool group. Server pools define a group of one or more physical or domain servers (web servers) that FortiWeb distributes connections among, or where the connections pass through to, depending on the operation mode. Supports API versions 1 & 2.
- fortiwebvm-server-pool-group-delete — Delete a server pool group. Supports API versions 1 & 2.
- fortiwebvm-server-pool-group-list — List server pool groups. Supports API versions 1 & 2.
- fortiwebvm-server-pool-group-update — Update a server pool group. Supports API versions 1 & 2.
- fortiwebvm-server-pool-list — List the server pools.
- fortiwebvm-server-pool-offline-protection-rule-create — Create a rule for an offline protection server pool group (server pool rule is a member of server pool group). Offline Protection - Requests are destined for a real web server instead of the FortiWeb appliance; traffic is duplicated to the FortiWeb through a span port. Supports API versions 1 & 2.
- fortiwebvm-server-pool-offline-protection-rule-update — Update a rule for an offline protection server pool group (server pool rule is a member of server pool group). Supports API versions 1 & 2.
- fortiwebvm-server-pool-reverse-proxy-rule-create — Create a rule for a reverse proxy server pool group (server pool rule is a member of server pool group). Reverse proxy — Requests are destined for a virtual server’s network interface and IP address on the FortiWeb appliance. Supports API versions 1 & 2. Server pool rule advanced SSL settings are not supported in this command.
- fortiwebvm-server-pool-reverse-proxy-rule-update — Update a rule for a reverse proxy server pool group. Supports API versions 1 & 2. Server pool rule advanced SSL settings are not supported in this command.
- fortiwebvm-server-pool-rule-delete — Delete server pool rule (server pool rule is a member of server pool). Supports API versions 1 & 2.
- fortiwebvm-server-pool-rule-list — List server pool rules (server pool rule is a member of server pool group). Supports API versions 1 & 2.
- fortiwebvm-server-pool-transparent-inspection-rule-create — Create a rule for a transparent inspection server pool group (server pool rule is a member of server pool group). Transparent Inspection - Requests are destined for a real web server instead of the FortiWeb appliance. The FortiWeb appliance asynchronously inspects traffic arriving on a network port that belongs to a Layer 2 bridge, applies the first applicable policy, and lets permitted traffic pass through. Supports API versions 1 & 2.
- fortiwebvm-server-pool-transparent-inspection-rule-update — Update a rule for a transparent inspection server pool group (server pool rule is a member of server pool group). Supports API versions 1 & 2.
- fortiwebvm-server-pool-true-transparent-proxy-rule-create — Create a rule for a true transparent server pool group (server pool rule is a member of server pool group). True transparent proxy - Requests are destined for a real web server instead of the FortiWeb appliance. Supports API versions 1 & 2. Server pool rule advanced SSL settings are not supported in this command.
- fortiwebvm-server-pool-true-transparent-proxy-rule-update — Update a rule for a true transparent server pool group (server pool rule is a member of server pool group). Supports API versions 1 & 2. Server pool rule advanced SSL settings are not supported in this command.
- fortiwebvm-server-pool-wccp-rule-create — Create a rule for an WCCP server pool group (server pool rule is a member of server pool group). WCCP - The FortiWeb appliance allows traffic to pass through to the server pool when it receives traffic that is directed to the FortiWeb (configured as a WCCP client) by a FortiGate acting as a WCCP server. Supports API versions 1 & 2. Server pool rule advanced SSL settings are not supported in this command.
- fortiwebvm-server-pool-wccp-rule-update — Update a rule for an WCCP server pool group (server pool rule is a member of server pool group). Supports API versions 1 & 2. Server pool rule advanced SSL settings are not supported in this command.
- fortiwebvm-sni-certificate-list — List the SNI certificates. Server Name Indication (SNI) configuration identifies the certificate to use by domain. Supports API version 2 only.
- fortiwebvm-system-operation-status-get — Get operation status.
- fortiwebvm-system-policy-status-get — Get policy status.
- fortiwebvm-system-status-get — Get system status.
- fortiwebvm-trigger-policy-list — List the trigger policy rules.
- fortiwebvm-url-access-rule-condition-create — Create a URL access rule condition (URL access rule condition is a member of URL access rule group). URL access rules define the HTTP requests that are allowed or denied based on their hostname and URL. Supports API versions 1 & 2.
- fortiwebvm-url-access-rule-condition-delete — Delete a URL access rule condition (URL access rule condition is a member of URL access rule group). Supports API versions 1 & 2.
- fortiwebvm-url-access-rule-condition-list — List URL access rule conditions (URL access rule condition is a member of URL access rule group). Supports API versions 1 & 2.
- fortiwebvm-url-access-rule-condition-update — Update a URL access rule condition (URL access rule condition is a member of URL access rule group). Supports API versions 1 & 2.
- fortiwebvm-url-access-rule-group-create — Create a URL access rule group. URL access rule group is a container that contains URL access rules (use fortiwebvm-url-access-rule-create/update/delete/list to manage the URL access rules). Supports API versions 1 & 2.
- fortiwebvm-url-access-rule-group-delete — Delete a URL access rule group. Supports API versions 1 & 2.
- fortiwebvm-url-access-rule-group-list — List URL access rule groups. Supports API versions 1 & 2.
- fortiwebvm-url-access-rule-group-update — Update a URL access rule group. Supports API versions 1 & 2.
- fortiwebvm-virtual-ip-list — List the system virtual IPs. The virtual IP addresses are the IP addresses that paired with the domain name of your application. When users visit your application, the destination of their requests are these IP addresses. Supports API version 2 only.
- fortiwebvm-virtual-server-group-create — Create a virtual server group. In API version 1, virtual server group defines the network interface, bridge, and IP address on which traffic destined for an individual physical server or server farm will arrive. In API version 2, virtual server group is a container that contains the virtual server items (use fortiwebvm-virtual-server-item-create/update/delete/list to manage the virtual server group’s items). Supports API versions 1 & 2.
- fortiwebvm-virtual-server-group-delete — Delete virtual server group. Supports API versions 1 & 2.
- fortiwebvm-virtual-server-group-list — List the virtual server groups. Supports API versions 1 & 2.
- fortiwebvm-virtual-server-group-update — Update a virtual server group. Supports API version 1 only.
- fortiwebvm-virtual-server-item-create — Create a virtual server item (virtual server Item is a member of virtual server group in API version 2). A virtual server defines the network interface, bridge, and IP address on which traffic destined for an individual physical server or server farm will arrive in API version 2. Supports API version 2 only.
- fortiwebvm-virtual-server-item-delete — Delete a virtual server item (virtual server Item is a member of virtual server group in API version 2). Supports API versions 2 only.
- fortiwebvm-virtual-server-item-list — List virtual server items (virtual server item is a member of virtual server group in API version 2). Supports API version 2 only.
- fortiwebvm-virtual-server-item-update — Update a virtual server item (virtual server Item is a member of virtual server group in API version 2). Supports API version 2 only.
- fortiwebvm-virtual-server-list — List the virtual servers.