firewall_policy_create
Create a new IPv4 firewall policy with custom source and destination interfaces, addresses, services, and action (accept or deny).
Instructions
Create a new IPv4 firewall policy.
Input Schema
| Name | Required | Description | Default |
|---|---|---|---|
| name | Yes | Policy name. | |
| srcintf | Yes | Source interface name (e.g. 'port1', 'any'). | |
| dstintf | Yes | Destination interface name (e.g. 'wan1', 'any'). | |
| srcaddr | Yes | Source address name (e.g. 'all', 'LAN_SUBNET'). | |
| dstaddr | Yes | Destination address name (e.g. 'all'). | |
| service | Yes | Service name (e.g. 'ALL', 'HTTP', 'HTTPS'). | |
| action | No | Policy action: accept or deny. | accept |
| status | No | Policy status: enable or disable. | enable |
| nat | No | NAT: enable or disable. | disable |
| logtraffic | No | Log traffic: all, utm, or disable. | utm |
| comments | No | Policy comment. | |
| schedule | No | Schedule name. | always |
| vdom | No | Target VDOM name. Defaults to the server default VDOM. Use '*' for all VDOMs (super-admin required). |
Output Schema
| Name | Required | Description | Default |
|---|---|---|---|
No arguments | |||