FortiManager
FortiManager supports network operations use cases for centralized management, best practices compliance, and workflow automation to provide better protection against breaches.
nradia_FTNT
Staff
Staff
Article Id 346859
Description this article describes how to replace FortiGate with new model in FortiManager
Scope FortiManager 6.x, 7.x
Solution

Related article:

Technical Note: How to replace a FortiGate unit in the FortiManager configuration, following an RMA ...

 

When replacing a FortiGate with a different model, the new FortiGate has to be added as a new device to FortiManager. To copy the device-level config from old FortiGate to new FortiGate there are two options:

  1. Use FortiConverter to convert the config from old FortiGate model to the new one (this will include the whole config including policy and objects): Technical Tip: How to load/convert a FortiGate configuration file from one unit to another (file co...
  2. The second option is to manually set the device-level config only (admin accounts, interface settings etc) then authorize the FortiGate to FortiManager and ‘Import Config’ which will copy the policy and objects to the ADOM database of FortiManager and automatically add dynamic mappings for objects.

 

The final step is to use Install Wizard, which will push out the policies (Policy Package) to the new FortiGate unit that were previously on the old FortiGate unit (make sure to carefully check Install Preview before pushing the config to make sure the changes make sense).

 

Note:

  • The firmware template would need to be assigned to the new FortiGate.
  • Meta-variables mapping would be required to be added manually.

 

Related articles:

Technical Tip: Per-Device mapping behaviour.

Technical Tip: Configuration import from the device to the ADOM DB/Policy & Objects.