We are planning to set up a High Availability (HA) cluster in Active-Active mode using two FortiGate 901 firewalls.
Our question is straightforward: is it possible to create and manage an HA Active-Active cluster without using FortiManager?
As far as I understand, the creation of the HA cluster does not require FortiManager. After the cluster is established, all settings configured on the primary unit can be automatically synchronized to the secondary unit through FGCP. Additionally, the primary unit can be accessed and managed directly via its web interface.
I would appreciate an official response to this query so that I can share it with my manager.
Thank you for your assistance.
As mentioned by Jerry, you don't need FortiManager for HA setup.
And here is an official response from admin guide.
You can manage each FortiGate via CLI using # exec ha manage <id> <username>. For instance, # exec ha manage 1 admin <-- use 0 if 1 didn't work
Alternatively, you can manage each device separately through the GUI:
HA reserved management interfaces | FortiGate / FortiOS 7.4.3 | Fortinet Document Library
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1747 | |
1114 | |
764 | |
447 | |
241 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.