Description | This article describes the procedure to make ZTP function for a FortiGate accepting configuration from a FortiManager. |
Scope | FortiGate, FortiZTP, FortiManager. |
Solution |
FortiZTP is a cloud service to allow provisioning devices to cloud or or-premise platforms. It allows provisioning devices in bulk as well as de-provisioning them. All devices under a FortiCloud account are seen directly on FortiZTP.
The procedure to make the FortiGate accept configuration in ZTP from a FortiManager is:
It is important to remember the specific requirements for FortiGate-VM ('auto-join-forticloud' option, enabled by default from FortiOS 5.2.3), or specific requirements for Cloud services, as per Requirements - FortiZTP administration guide.
Additionally, for troubleshooting steps if connectivity fails, see Provisioning FortiGate to FortiManager self-diagnosis - FortiZTP administration guide. Note that one of the steps contacts the FortiDeploy servers closest to the FortiGate, ('diagnose fdsm contract-controller-update'), so this step may make the ZTP launch and ensure the provision succeeds. |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.