Hello everyone,
I have two site clusters of Fortigate with 6.0.4 and going to have Fortimanager 6.0.4. I would like to move to using Fortimanager as the platform to manage firewalls. I was wondering if I could get some feedback on the safest way to bring in the Fortigates with low risk to breaking something. My thoughts below:
1. I intend to use One policy package for both sites. Using one rule set and mapping where required on internal, external, dmz etc... This way there is one common rule set for the entire organization. Any thoughts on this?
2. I thought that if I bring in one, or both Fortigates as long as I don't push rules it should be a non event. Then I can get the mappings set correctly, objects, security profiles set correctly. If I have to make changes to FW, then I can do it on the Fortigates, and import the policy to grab the latest changes. I will do it this way until everything is set, and then push back. Is there a better way?
3. Do you think there are any other caveats?
Thanks for reading
Nominating a forum post submits a request to create a new Knowledge Article based on the forum post topic. Please ensure your nomination includes a solution within the reply.
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1661 | |
1077 | |
752 | |
443 | |
220 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.