- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Fortigate SDWAN Box - Fortimanager Sync
Hi,
I have a query.. I have few fortigate devices which are being configured directly until now. We have lot of static routes, firewall policy, SDWAN rules, interfaces etc..
Currently I want to manage these fortigate devices through Fortimanager. How can I add a preloaded config Fortigate device into Fortimanager so that Fortimanager gets policies, configs from Fortigate and continue to save it for future changes?. Any documents available on this?.
Regards
Raja
Solved! Go to Solution.
- Labels:
-
FortiGate
-
FortiManager
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Hey Raja,
in principle, adding a device to FortiManager works as follows:
- you add the device in Device Manager with IP and provide admin credentials
- FortiManager will discover and add the device
- you are then prompted to import the configuration and policies
-> this creates a policy package that mirrors the current FortiGate configuration
-> you can then make policy changes on FortiManager and push them out to FortiGate
-> the first push in this way will delete a lot of unused objects from FortiGate; this is expected behavior
If you make changes on FortiGate, these are automatically synced to FortiManager device database (config backup) but NOT policy package; you would have to import policies manually to reflect those changes.
If you only want to use FortiManager as a location for backups, you can operate it in backup-mode: https://docs.fortinet.com/document/fortimanager/6.0.3/administration-guide/23431/adom-modes
If you are looking for a more thorough guide to FortiManager in general, you can check FortiManager documenation: https://docs.fortinet.com/product/fortimanager/7.0
There are several unaffiliated series on YouTube covering it as well (look for NSE 5/FortiManager or similar), some of which are of decent quality.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Hello Raja,
Thank you for using the Community Forum. I will seek to get you an answer or help. We will reply to this thread with an update as soon as possible.
Thanks,
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Hello Raja,
I have found this article:
Which can be useful for your question.
Could you please have a look and tell me if it helped you?
If not, We will find another solution to reply to your question.
Regards,
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Hey Raja,
in principle, adding a device to FortiManager works as follows:
- you add the device in Device Manager with IP and provide admin credentials
- FortiManager will discover and add the device
- you are then prompted to import the configuration and policies
-> this creates a policy package that mirrors the current FortiGate configuration
-> you can then make policy changes on FortiManager and push them out to FortiGate
-> the first push in this way will delete a lot of unused objects from FortiGate; this is expected behavior
If you make changes on FortiGate, these are automatically synced to FortiManager device database (config backup) but NOT policy package; you would have to import policies manually to reflect those changes.
If you only want to use FortiManager as a location for backups, you can operate it in backup-mode: https://docs.fortinet.com/document/fortimanager/6.0.3/administration-guide/23431/adom-modes
If you are looking for a more thorough guide to FortiManager in general, you can check FortiManager documenation: https://docs.fortinet.com/product/fortimanager/7.0
There are several unaffiliated series on YouTube covering it as well (look for NSE 5/FortiManager or similar), some of which are of decent quality.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Thanks a lot for your reply.. It helps...
Regards
Raja
