Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
rahulchugh
New Contributor

Add Fortigate firewall to Fortimanager

We have recently bought a new Fortmanager. Planning to add existing fortigate firewalls to it.

Since my existing firewalls are up and running with existing configuration , i don't want to push any configuration to them from Fortimanager (which has default configuration)

 

Can some one please confirm how it works? Will the configuration gets automatically pushed to firewalls from Fortimanager?

 

TIA

1 REPLY 1
scao_FTNT
Staff
Staff

will you use FMG to manage FGT config or just to backup FGT config?

 

FMG always needs user to manually do install, and then can install config changes to FGT.

 

and for your case, if you want to keep existing FGT config, then you can do like

 

FMG add FGT and import FGT existing config into FMG ADOM policy package db (import can do together with add device wizard, or can do separately), and then FMG keeps your FGT device config in device manager device db and policy config in package db (you can see config on FMG GUI for both places)

 

you can then install imported package down to FGT, and before real install, you can use install preview to check what config changes FMG will install to FGT, for 1st time imported package install, FMG will delete FGT side not used object (object not used by policy, for example some not used address etc)

 

and then if you change config on FMG side, like add a new policy, package install will just install the new policy

 

but if you still do policy config change on FGT, then again, you need to retrieve FGT config to FMG and then import to FMG package to sync the FGT config with FMG. so if you still plan to do config change on FGT, then may suggest to use FMG backup mode ADOM

 

Thanks

 

Simon

 

 

Labels
Top Kudoed Authors