Skip to main content
jasonhong
Staff & Editor
Staff & Editor
July 6, 2022

Technical Tip: How to upload account entiltement files for managed devices when FortiManager is operating in closed network

  • July 6, 2022
  • 0 replies
  • 13614 views
Description

 

This article describes how to upload account entitlement files for managed devices when FortiManager is operating in a closed network. Moreover, this is also valid for the FortiManager itself.

 

The FortiManager can be operated as a local FDS server when it is in a closed network with no internet connectivity.

 

Without a connection to a FortiGuard server, account entitlement files for the managed devices must be manually downloaded from the support portal and then uploaded to FortiManager to reflect the updated license information.

 

Scope

 

FortiManager.

 

Solution

 

Via the GUI
  1. Log in to the Fortinet support portal to request account entitlement files.

Support -> Assistance  -> Create Ticket  -> Customer Service -> Submit Ticket -> Enter device/product serial number -> Subject: Entitlement File  -> Category  -> CS Contract/License  -> Add Comment: Request for entitlement file.

 

  1. Once the account entitlement file has been received from Fortinet Customer Support, upload the file in the FortiGuard section when FortiManager is set to operate in a closed network.

FortiGuard -> Settings -> 'Enable Communication with FortiGuard Serveris toggled 'OFF'.

 

upload_lic.png

 

svc_upload.png

 

  1. Once the account entitlement file is successfully uploaded, the license information for the device will be updated accordingly. To check the entitlement information for the uploaded entitlement file, refer to the following.
 

Via the CLI:

Connect through the CLI to upload the Entitlement File. 

 

execute fmupdate ftp import license "Entitlement_filename" "FTP_IP_addr" "/" "ftp_user" "ftp_pwd"

 

Example of this command:

 

execute fmupdate ftp import license "EntitlementExport-2022-08-30T190500.229" "10.55.5.220" "/" "test1" "test1"

This operation will replace the current package!

Do you want to continue? (y/n)y

 

Start getting file from FTP Server...

Transferred 0.002M of 0.002M in 0:00:00s (0.014M/s)

FTP transfer is successful.

Package installation is in process... This could take some time.

Update successfully

 

Note: Command parameters are case-sensitive. Quotes are always used around the parameters, like in this example.

 

Related documents:

Thought Leadership Security Summit. Outpace New Threats with AI - enhanced defense. Tuesday, Septmeber 15, 8:30 AM - 2:30 PM PT. The Golf Club at Newcastle, WA.
Virtual event | September 2026. SASE summit. The age of autonomous trust. Register here!