Hello Fortinet Community,
I’m seeking advice on configuring the network setup shown in the attached image.
Here’s the scenario:
Given this setup, I have several questions:
Unfortunately, I haven’t found clear documentation on these integrations. I’d appreciate any guidance or best practices the community can share.
Thanks in advance for your help!
Solved! Go to Solution.
Nominating a forum post submits a request to create a new Knowledge Article based on the forum post topic. Please ensure your nomination includes a solution within the reply.
In simple words, the manager has more like an 'orchestrator' role and is not directly related to the communications of the CAs. Every CA should be configured to directly communicate with the other nodes. For security fabric integration, each CA need to connect to the root FGT, other articles related to EMS and FAZ .
You can read more about in the Manager guide.
I'm not quite sure if any thing changes if Global Object Synchronization is enabled but the three of these integration should be handled by each CA. Even though they can also be configured in the manager they have different functions, like shown here for LDAP (for admin user only). The event and logs are specific to the manager so the CA events are needed to be sent directly to FAZ. EMS integration is a bit different, the deployment options are shown here.
In simple words, the manager has more like an 'orchestrator' role and is not directly related to the communications of the CAs. Every CA should be configured to directly communicate with the other nodes. For security fabric integration, each CA need to connect to the root FGT, other articles related to EMS and FAZ .
You can read more about in the Manager guide.
Thank you very much @ebilcari for the clarification!
I now understand that each CA needs to connect to the Fabric Root, moreover as I see only the CAs have this setting enabled.
Regarding AD, EMS, and FAZ, I see that both the Manager and CAs have configuration options. What I'm trying to understand is whether only the CAs need to be integrated with AD, EMS, and FAZ. If that's the case, why are these settings available on the Manager?
Additionally, what happens if both the Manager and CAs are integrated with these services?
I appreciate your insights!
I'm not quite sure if any thing changes if Global Object Synchronization is enabled but the three of these integration should be handled by each CA. Even though they can also be configured in the manager they have different functions, like shown here for LDAP (for admin user only). The event and logs are specific to the manager so the CA events are needed to be sent directly to FAZ. EMS integration is a bit different, the deployment options are shown here.
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1665 | |
1077 | |
752 | |
446 | |
220 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.