Create elements to use for NGFW Engine configuration

Create reusable elements to use in the configuration of the NGFW Engine.

To configure interfaces and routing to networks that are not directly connected to the NGFW Engine, create a Router element to represent your network switch or router, and Network elements to represent the other networks.

To configure SSH access to the command line of the NGFW Engine, create Host or Network elements to define the IP addresses from which SSH connections to the NGFW Engine are allowed.

Steps

  1. Browse to Elements > Network Elements > <element type>.
  2. Click .
  3. Configure the settings, then click Save.

Example

Fields marked with an asterisk in the user interface are mandatory.

Table 1. Host properties
Option Definition
IP List Enter one IP address for the host.

Enter one IP address per row. If you have a list of IP addresses where each IP address is on a separate row, you can copy and paste the list.To remove a row, click Remove next to the row. To remove all rows, click Clear All.

Table 2. Network element
Option Definition
IPv4 Network Enter the IPv4 address and netmask in CIDR notation. You must enter either an IPv4 or IPv6 network.
IPv6 Network Enter the IPv6 address and prefix length in CIDR notation. You must enter either an IPv4 or IPv6 network.
Broadcast When selected, includes the broadcast address and the network address in the definition. The broadcast address is only used when you use the Network element in the Source and Destination cells in rules.
Table 3. Router element
Option Definition
IP List Enter one or more IP addresses for the router.

Enter one IP address per row. If you have a list of IP addresses where each IP address is on a separate row, you can copy and paste the list.To remove a row, click Remove next to the row. To remove all rows, click Clear All.