Hello,
i am about to begin with a new project.
300D Cluster in HQ
7x 100D in Branches
30x 80D in Branches
the HQ is in Germany and the Branches all around the World. So now i want to do a good plan for this International Rollout.
i Think to do it this way,
prepare Templates for 100D and 80D on Manager > prepare Policy Packages for 100D and 80D > Prepare all the Appliances on the HQ with FortiManager > Test the Appliances > Ship the Appliances to Branches > They should connect automaticly to FortiManager (over Internet or IPsec ).
I Don´t think that i will need some Global Policys on FortiManager for that and i think i can to this with 1 ADOM because it is not too big Rollout.
What do you think? do someone have experince with international Rollouts with FortiManager? Any Tipps and best practices ? Warnings ?
What about connecting the Devices to FortiManager over Internet? is it not too risky? I mean i can secure the FortiAnalyzer logs using ipsec. But the Management Traffic would go over Internet, it will be HTTPS but still over Internet...
it is my first big Project and i would appreciate any Help.
Thank you.
NSE 8
NSE 1 - 7
Nominating a forum post submits a request to create a new Knowledge Article based on the forum post topic. Please ensure your nomination includes a solution within the reply.
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1733 | |
1106 | |
752 | |
447 | |
240 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.