FortiGate
FortiGate Next Generation Firewall utilizes purpose-built security processors and threat intelligence security services from FortiGuard labs to deliver top-rated protection and high performance, including encrypted traffic.
mdeparisse_FTNT
Description
This article explains how to move from device AP Management to Central Management Forti AP.
FortiManager has an embedded tool that allows Admin to push Wifi Setting to FortiGate in a simple and centralized way.
The ADOM can be configured to do this Wifi deployment per device and it also allows the admin to perform such a deployment in a central way. This allows wide deployment across region country or other criteria that are not device
specific.
Sometimes the AP management is done per device (even if this is not the default value), there is however a tool that allow the change from Per device to Central management.

Solution
First of all, make sure the FortiManager and the FortiGate are in synch on both device and policy status.



Go in System Setting and change the AP management to Central mode





Then go back in AP Manager and navigate to Wifi Profile



Select the import button and navigate to the correct FortiGate and add on the filed 'Profiles' the required deployment in a central way



It might be needed to rename the profile to a new entry


Click on 'Save'





Confirm the import of the new SSID


Eventually change the SSID parameter also





Create a new AP profile or use the default one. In this case, the default one is used.

Link the previously imported SSID to this Profile, also import the used profile from the FortiGate using the import tool from the Profile Window.



Link the AP profile to the AP


Deploy the New config


Select the correct FortiGate to used that new SSID profile name using the previously selected Policy Package



Check the Policy Package Install Preview and verify if the new config is pushed properly


Verify the installation preview

Contributors