Hi,
I have a query.. I have few fortigate devices which are being configured directly until now. We have lot of static routes, firewall policy, SDWAN rules, interfaces etc..
Currently I want to manage these fortigate devices through Fortimanager. How can I add a preloaded config Fortigate device into Fortimanager so that Fortimanager gets policies, configs from Fortigate and continue to save it for future changes?. Any documents available on this?.
Regards
Raja
Solved! Go to Solution.
Nominating a forum post submits a request to create a new Knowledge Article based on the forum post topic. Please ensure your nomination includes a solution within the reply.
Hey Raja,
in principle, adding a device to FortiManager works as follows:
- you add the device in Device Manager with IP and provide admin credentials
- FortiManager will discover and add the device
- you are then prompted to import the configuration and policies
-> this creates a policy package that mirrors the current FortiGate configuration
-> you can then make policy changes on FortiManager and push them out to FortiGate
-> the first push in this way will delete a lot of unused objects from FortiGate; this is expected behavior
If you make changes on FortiGate, these are automatically synced to FortiManager device database (config backup) but NOT policy package; you would have to import policies manually to reflect those changes.
If you only want to use FortiManager as a location for backups, you can operate it in backup-mode: https://docs.fortinet.com/document/fortimanager/6.0.3/administration-guide/23431/adom-modes
If you are looking for a more thorough guide to FortiManager in general, you can check FortiManager documenation: https://docs.fortinet.com/product/fortimanager/7.0
There are several unaffiliated series on YouTube covering it as well (look for NSE 5/FortiManager or similar), some of which are of decent quality.
Hello Raja,
Thank you for using the Community Forum. I will seek to get you an answer or help. We will reply to this thread with an update as soon as possible.
Thanks,
Hello Raja,
I have found this article:
Which can be useful for your question.
Could you please have a look and tell me if it helped you?
If not, We will find another solution to reply to your question.
Regards,
Hey Raja,
in principle, adding a device to FortiManager works as follows:
- you add the device in Device Manager with IP and provide admin credentials
- FortiManager will discover and add the device
- you are then prompted to import the configuration and policies
-> this creates a policy package that mirrors the current FortiGate configuration
-> you can then make policy changes on FortiManager and push them out to FortiGate
-> the first push in this way will delete a lot of unused objects from FortiGate; this is expected behavior
If you make changes on FortiGate, these are automatically synced to FortiManager device database (config backup) but NOT policy package; you would have to import policies manually to reflect those changes.
If you only want to use FortiManager as a location for backups, you can operate it in backup-mode: https://docs.fortinet.com/document/fortimanager/6.0.3/administration-guide/23431/adom-modes
If you are looking for a more thorough guide to FortiManager in general, you can check FortiManager documenation: https://docs.fortinet.com/product/fortimanager/7.0
There are several unaffiliated series on YouTube covering it as well (look for NSE 5/FortiManager or similar), some of which are of decent quality.
Thanks a lot for your reply.. It helps...
Regards
Raja
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1733 | |
1106 | |
752 | |
447 | |
240 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.