I took over an infrastructure from someone and it is a little bit messy. Before I make big changes I have a question.
Simplified environment to explain it: I have here a device group with one firewall in it. At the same time I have two policy packages. One has as the installation target the firewall itself and the other one has as the installation target the group.
What happens now on the firewall with the rules/policies? Are they merged together? Or is only one applied.
Nominating a forum post submits a request to create a new Knowledge Article based on the forum post topic. Please ensure your nomination includes a solution within the reply.
The only way I know of is to associate multiple fortigates to the same policy package. You can build a policy structure where you have generic policies and then build specific policies using the "install to" field in the FMG. Extra bonus points for using sections so that all policies for a unique firewall is placed inside that section, making navigation easier.
This was not my question. I need to know how the current infrastructure behaves. Not how I should do it in the future. But thanks anyway.
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.