We have +700 Firewalls Fortigate managed with the Fortimanager and the FWs are configured with DNS and now we want to change the DNS IP adress in all the FWs Hwo to change the configuration of the DNS in devices (Firewalls) from the fortimanager?
Solved! Go to Solution.
Nominating a forum post submits a request to create a new Knowledge Article based on the forum post topic. Please ensure your nomination includes a solution within the reply.
The only way to do that - assuming you want the same DNS settngs on all FGT - would be to assign them to a provisioning template and enable the dns module in there and set it up there.
--
"It is a mistake to think you can solve any major problems just with potatoes." - Douglas Adams
I'd suggest to look into scripting this on FMG side - this is exactly the use case for scripting. You can run the same CLI script on all Fortigates or run TCL script on device database then push to all the Fortigates.
Example to start reading: Administration Guide | FortiManager 6.2.0 | Fortinet Documentation Library
Also some experience sharing here Useful script example on Fortimanager | Fortinet Technical Discussion Forums
The only way to do that - assuming you want the same DNS settngs on all FGT - would be to assign them to a provisioning template and enable the dns module in there and set it up there.
--
"It is a mistake to think you can solve any major problems just with potatoes." - Douglas Adams
I'd suggest to look into scripting this on FMG side - this is exactly the use case for scripting. You can run the same CLI script on all Fortigates or run TCL script on device database then push to all the Fortigates.
Example to start reading: Administration Guide | FortiManager 6.2.0 | Fortinet Documentation Library
Also some experience sharing here Useful script example on Fortimanager | Fortinet Technical Discussion Forums
why should you script that if there is a more easier way? This can simply be done using provisioning template in FMG Device Manager. This is exactly one of the cases provisioning templates are there for.
--
"It is a mistake to think you can solve any major problems just with potatoes." - Douglas Adams
I guess "more easier" is in the eye of the beholder :) - for me it is easier to run scripts than to mess and risk unpredictable consequences of templates, YMMV.
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1732 | |
1106 | |
752 | |
447 | |
240 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.