Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
FortDoog
New Contributor III

AWS access key rotation using AWSLambda or Fortigate API.

Good day.

 

Simple issue: I want to use SDN connectors with an onpremise FW (physical, not cloud). But for PCI compliance, I need to rotate the access keys periodically.

 

Has anyone encounter a situation to make an automation between the cloud and the firewall, so the firewall pulls the new access keys and installs them into itself? Can it be done using a Lambda or API? (let it be AWS or Fortinet)

 

I have the feeling that it can be done using the Fortigate API, so I can call it from AWS and pass the new access keys, but wanted to be sure.

 

Thank you.

 

#Fortigate

"Well, hello there"
"Well, hello there"
3 REPLIES 3
sjoshi
Staff
Staff

Yes, you can automate the AWS access key rotation process for your FortiGate firewall using AWS Lambda and Fortinet API. You can create a Lambda function that retrieves the new access keys from AWS and then uses the Fortinet API to update the access keys on your FortiGate firewall. This automation will help you comply with PCI requirements by periodically rotating the access keys without manual intervention.

Let us know if this helps.
Salon Raj Joshi
FortDoog
New Contributor III

Hi

 

do you know where can I find examples for the Fortinet API? 

 

I got the Fortinet Lambda covered, but cannot find usefull info for the Fortinet API.

 

Thank you.

"Well, hello there"
"Well, hello there"
sjoshi

You can reach out to FNDN

https://docs.fortinet.com/document/fortigate/7.0.0/secgw-for-mobile-networks-deployment/394614/forti...

Let us know if this helps.
Salon Raj Joshi
Announcements

Select Forum Responses to become Knowledge Articles!

Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.

Labels
Top Kudoed Authors