Skip to main content
nevan
Staff
Staff
November 6, 2024

Technical Tip: How to add EMS in fabric connector with FortiGate API Access Key

  • November 6, 2024
  • 0 replies
  • 3049 views
Description This article describes how to add FortiClient EMS as a security fabric connector, with the FortiGate API Access Key generated from FortiClient EMS will be explained.
Scope FortiGate v7.4.4 and above.
Solution

The FortiClient EMS Cloud can be used by a standalone FortiGate or separate virtual domains from the same FortiGate with the API access key. The FortiClient EMS can be used as a security fabric connector with the FortiGate API access generated by the FortiClient EMS Cloud. 

Once the EMS access key is generated for FortiGate, it can be set in the following way in the CLI. The Cloud authentication access key can only be added through the CLI, as the feature is not added for the GUI. 


EXT-EMS-3.jpg

 

Once added from the CLI, it can be checked from the GUI. The connection status will show 'connected' once it is approved/authorized by the EMS administrator.


EXT-EMS-1.jpg

 

Once connected, the associated security posture TAGs will be synced from the EMS and found in FortiGate. 

 

EXT-EMS-2.jpg


Related documents:

Establish connectivity on the EMS connector

Troubleshooting Tip: Avoid 'EMS server was not reached' errors by correctly authorizing FortiGate to FortiClient EMS Cloud

API access keys | FortiClient Cloud | Fortinet Document Library