FortiGate
FortiGate Next Generation Firewall utilizes purpose-built security processors and threat intelligence security services from FortiGuard labs to deliver top-rated protection and high performance, including encrypted traffic.
nevan
Staff
Staff
Article Id 349143
Description This article describes how to add FortiClient EMS as a security fabric connector, with the FortiGate API Access Key generated from FortiClient EMS will be explained.
Scope FortiGate v7.4.4 and above.
Solution

The FortiClient EMS Cloud can be used by a standalone FortiGate or separate virtual domains from the same FortiGate with the API access key. The FortiClient EMS can be used as a security fabric connector with the FortiGate API access generated by the FortiClient EMS Cloud. 

Once the EMS access key is generated for FortiGate, it can be set in the following way in the CLI. The Cloud authentication access key can only be added through the CLI, as the feature is not added for the GUI. 


EXT-EMS-3.jpg

 

Once added from the CLI, it can be checked from the GUI. The connection status will show 'connected' once it is approved/authorized by the EMS administrator.


EXT-EMS-1.jpg

 

Once connected, the associated security posture TAGs will be synced from the EMS and found in FortiGate. 

 

EXT-EMS-2.jpg


Related documents:

Establish connectivity on the EMS connector

Troubleshooting Tip: Avoid 'EMS server was not reached' errors by correctly authorizing FortiGate to...

API access keys | FortiClient Cloud | Fortinet Document Library