Fortimanager import limitation - routing objects
Working on a FortiManager–FortiGate integration scenario and observed an interesting behavior — looking for insights from the community.
I configured the following directly on FortiGate:
- Firewall policies
- Address objects & groups
- Static routes
- Prefix lists
- Route maps
Everything works perfectly on the firewall.
However, when I perform “Import Configuration” into FortiManager:
- Policies, objects, and static routes are imported correctly
- Prefix list and route map names appear, but their entries/content are missing
On the other hand, when I perform a “Retrieve Configuration”, I can see the full configuration including prefix list and route map entries.
So the questions:
- Why does FortiManager import process not fully bring in prefix list / route map configurations?
- Is this expected behavior (device-level vs policy-level separation), or a limitation/bug?
- What is the recommended production approach to manage routing objects like prefix lists via FortiManager?
Would appreciate insights from anyone who has handled this in large-scale or production environments and solution for the same.
