This article describes how to configure FortiGate GUI access for both primary & secondary firewalls on the management interface.
FortiGate.
The IP address of the management interface on both the cluster firewalls must be in the same subnet. Go to System -> HA, edit Primary FortiGate -> Management Interface Reservation, and enable this option. Add the Mgmt Port on the interface. If the Mgmt interface is not visible, check if there is any reference to the interface. Remove it, and Mgmt Port will be visible on the list, and add it.
Configuration using the CLI:
config system ha
set ha-mgmt-status enable
config ha-mgmt-interface
edit 1
set interface <interface name>
set gateway <X.X.X.X>
next
end
Configure the gateway IP address to be the same on both primary and secondary in the HA setting.
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.