Hello,
I need to set up VDOMs on an existing installation. I have enabled VDOMs on the Fortigate, so I can see the root VDOM. I have created a VDOM1, and I want to completely move the contents of the root VDOM to VDOM1 (the VLANs, the rules associated with the VLANs, etc.). How can I do this simply and cleanly? I also have FortiManager available.
In the future, I will need to create other VDOMs, which is why I want to move the contents from root to VDOM1.
Thank you for your help!
Solved! Go to Solution.
Nominating a forum post submits a request to create a new Knowledge Article based on the forum post topic. Please ensure your nomination includes a solution within the reply.
Hi @5q46n2te8jPWJY ,
One way it to get in contact with your SE and through Professional Services they might be able to help.
A feasible way on your own could be exporting a backup copy of the config from GUI, editing it and moving/reassigning the desired contents from root VDOM to VDOM1, then restoring the new config file from GUI. Bear in mind that if you do something incorrectly, you might really damage the config (so keep a second backup copy untouched on a side). You might also lose access to your FortiGate.
I do not recommend you to do it.
Once done, you also need to re-import/re-sync the FortiGate config into FortiManager. If that does not work, you have to delete the unit from FortiManager and reimport it from scratch.
Be aware that playing with the config file can be dangerous and can harm your FortiGate if you are not aware of what you are exactly doing.
Best regards,
Certain unit-wide processes run in the context of the management VDOM. DNS lookup is one thing - all the VDOMs use the management VDOM for DNS resolution. Another is SNMP; if you want to query the unit by SNMP/receive SNMP traps, you must use interfaces assigned to the management VDOM https://mobdro.bio/ .
...all of which does not present any reason against moving root to VDOM1 - you only have to configure VDOM1 as your management VDOM (global: conf sys global).
IMHO a lot of hassle. I don't see why you couldn't live with the root VDOM.
Hi @5q46n2te8jPWJY ,
One way it to get in contact with your SE and through Professional Services they might be able to help.
A feasible way on your own could be exporting a backup copy of the config from GUI, editing it and moving/reassigning the desired contents from root VDOM to VDOM1, then restoring the new config file from GUI. Bear in mind that if you do something incorrectly, you might really damage the config (so keep a second backup copy untouched on a side). You might also lose access to your FortiGate.
I do not recommend you to do it.
Once done, you also need to re-import/re-sync the FortiGate config into FortiManager. If that does not work, you have to delete the unit from FortiManager and reimport it from scratch.
Be aware that playing with the config file can be dangerous and can harm your FortiGate if you are not aware of what you are exactly doing.
Best regards,
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1645 | |
1070 | |
751 | |
443 | |
210 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.