Created on
09-20-2023
06:38 AM
Edited on
01-29-2025
07:42 AM
By
Stephen_G
This article describes the configuration when both FortiGate-VM and FortiManager-VM have no internet access (air-gap).
FGT-VM (no internet access)----FMG-VM (no internet access).
For FortiGate and FortiManager-VM and hardware devices v7.2 Firmware.
The configuration needed on FortiGate-VM and FMG-FortiManager is as below:
Setting son interface level
Choose the FGT version
Important note:
Disable access to the public FortiGuard Distribution Servers (FDS) using the CLI command below to avoid periodic license checks, which may lead to the FortiManager showing as unregistered:
FortiManager CLI:
config fmupdate publicnetwork
set status disable
end
Select the appropriate firmware
Select the applicable platform
Upload available signature DB and click OK
After DB upload
Import complete
Before DB upload
Select the query DB required and click on Export
Upload the Query DB and click on OK
Import Complete
After successful Query DB upload
After successful Query DB upload
Before Query DB is Uploaded
Load VM license file and click OK
Get the file from Customer service team and click on OK after upload
Enable Central management and configure server list as FMG IP
Related article:
Technical Tip: Configure FortiManager as a local FDN server for FortiGates
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.