0% found this document useful (0 votes)
33 views4 pages

FortiManager Beginner's Operations Guide

The FortiManager Beginner's Guide provides essential instructions for novice users on tasks such as logging in, navigating the interface, adding FortiGate devices, managing policies, and performing system backups and restores. It outlines the steps for initial setup, basic policy management, and emphasizes the importance of regular backups for disaster recovery. Users are encouraged to refer to official Fortinet documentation for more detailed information and to practice in a lab environment before applying changes to production systems.

Uploaded by

Ahmed Shehata
Copyright
© All Rights Reserved
We take content rights seriously. If you suspect this is your content, claim it here.
Available Formats
Download as PDF, TXT or read online on Scribd
0% found this document useful (0 votes)
33 views4 pages

FortiManager Beginner's Operations Guide

The FortiManager Beginner's Guide provides essential instructions for novice users on tasks such as logging in, navigating the interface, adding FortiGate devices, managing policies, and performing system backups and restores. It outlines the steps for initial setup, basic policy management, and emphasizes the importance of regular backups for disaster recovery. Users are encouraged to refer to official Fortinet documentation for more detailed information and to practice in a lab environment before applying changes to production systems.

Uploaded by

Ahmed Shehata
Copyright
© All Rights Reserved
We take content rights seriously. If you suspect this is your content, claim it here.
Available Formats
Download as PDF, TXT or read online on Scribd

FortiManager Beginner's Guide: Basic

Operations
This guide provides step-by-step instructions for common beginner tasks in
FortiManager. It covers initial login, basic navigation, adding devices (FortiGates),
managing basic policies, and performing system backups and restores.

1. Initial Login
Accessing FortiManager is typically done via a web browser.

1. Open Browser: Launch your preferred web browser.


2. Enter URL: Navigate to the IP address or FQDN (Fully Qualified Domain Name)
provided for your FortiManager instance (e.g., [Link] ).
3. Login Credentials: You will be presented with a login screen.
◦ Enter the default username, which is usually admin .
◦ Enter the password. For newly deployed VMs (like on AWS), the initial
password might be the instance ID. For hardware appliances or other setups,
consult your deployment documentation or administrator for the password.
4. Login: Click the login button.
5. License (If Applicable): If it's the first login or the license is missing/expired, you
might be prompted to upload a license file. You can obtain this file from the
Fortinet support portal ( [Link] ) under 'Asset Management'.
Download the license file for your specific FortiManager VM or appliance and
upload it via the FortiManager interface.

2. Basic Navigation (GUI Overview)


Once logged in, you'll see the FortiManager dashboard. The interface is generally divided
into several key areas:

• Top Menu Bar: Provides access to system settings, help, user information, and
logout.
• Main Navigation Pane (Left): This is where you access the core modules:
◦ Device Manager: Manage connected FortiGate devices, FortiAnalyzers, etc.
This includes adding, deleting, and organizing devices.
◦ Policy & Objects: Create, manage, and install firewall policies, security
profiles, and network objects across managed devices.
◦ FortiView: Monitor network activity, threats, traffic, and system performance.
◦ System Settings: Configure FortiManager settings, administrators, ADOMs
(Administrative Domains), backup/restore, firmware management, etc.
• Content Pane (Center/Right): Displays the information and configuration options
related to the module selected in the navigation pane.
• ADOM Selector (Top Left/Dropdown): If Administrative Domains (ADOMs) are
enabled, you'll use this to switch between different management domains. For
beginners, you might start in the root ADOM or a default ADOM.

3. Adding a FortiGate Device


Before FortiManager can manage a FortiGate, the device needs to be added and
authorized.

On the FortiGate:

1. Log in to the FortiGate unit you want to manage.


2. Navigate to System > Settings (or System > Central Management in newer
FortiOS versions).
3. Enable Central Management.
4. Select FortiManager as the type.
5. Enter the IP address or FQDN of your FortiManager instance.
6. Click Apply or Send Request.

On the FortiManager:

1. Navigate to Device Manager using the left navigation pane.


2. In the toolbar (often near the top of the content pane), click Add Device or look for
an 'Unauthorized Devices' list/notification.
3. Add Device Wizard:
◦ If using the wizard, you might be prompted for the FortiGate's IP address.
◦ Alternatively, if the FortiGate request was successful, it might appear in an
'Unauthorized Devices' list. Select the device.
4. Authorization: Follow the prompts to authorize the device. You may need to enter
the FortiGate's admin credentials.
5. Import Configuration (Optional but Recommended): FortiManager may prompt
you to import the FortiGate's current configuration. This is generally recommended
for existing devices.
6. Assign to ADOM: Ensure the device is placed in the correct ADOM if ADOMs are
enabled.
7. Once added and authorized, the FortiGate will appear in the Device Manager list,
typically showing its connection status (e.g., 'Up').

4. Basic Policy Management (Policy Packages)


FortiManager uses Policy Packages to manage firewall policies across multiple devices.

1. Select ADOM: Ensure you are in the correct ADOM (if applicable).
2. Navigate: Go to Policy & Objects in the left navigation pane.
3. Policy Packages: In the tree menu within the Policy & Objects pane, you'll see
'Policy Packages'.
4. Create/Select Package:
◦ New: Right-click 'Policy Packages' or use a 'Create New' button to create a
new package. Give it a descriptive name.
◦ Existing: Select an existing policy package to view or modify its policies.
5. Add Policies:
◦ Within the selected package, navigate to the policy list (e.g., 'Firewall Policy'
or 'IPv4 Policy').
◦ Click Create New to add a firewall rule.
◦ Define the policy parameters: Name, Incoming Interface, Outgoing Interface,
Source, Destination, Schedule, Service, Action (Accept/Deny), and any
Security Profiles (Antivirus, IPS, Web Filter, etc.).
6. Manage Objects: You can create reusable objects (Addresses, Services, Schedules)
under the 'Object Configurations' section within Policy & Objects.
7. Install Policies:
◦ After creating or modifying policies, you need to install the policy package
onto the target FortiGate(s).
◦ Click the Install button (often looks like a downward arrow or says 'Install
Wizard') usually found in the Policy Package toolbar.
◦ Select the target FortiGate(s).
◦ Review the changes and confirm the installation.
◦ FortiManager will push the configuration changes to the selected devices.

5. System Backup
Regular backups are crucial for disaster recovery.

1. Navigate: Go to System Settings > Dashboard.


2. System Information Widget: Locate the 'System Information' widget on the
dashboard.
3. Backup: Click the Backup icon/button next to 'System Configuration'.
4. Backup Options:
◦ Choose whether to encrypt the backup file (recommended) and provide a
password.
◦ Select whether to back up to your local computer or an external server (FTP,
SFTP, SCP).
5. Confirm: Click OK or Backup. If backing up locally, your browser will download the
backup file (usually a .dat file).

6. System Restore
Restoring allows you to revert FortiManager to a previously saved state.

Caution: Restoring overwrites the current configuration.

1. Navigate: Go to System Settings > Dashboard.


2. System Information Widget: Locate the 'System Information' widget.
3. Restore: Click the Restore icon/button next to 'System Configuration'.
4. Select Source: Choose the location of the backup file (Upload from local computer
or retrieve from FTP/SFTP/SCP server).
5. Provide File/Password: Upload the .dat backup file. If it was encrypted, enter the
password.
6. Confirm: Click OK or Restore. FortiManager will reboot and apply the
configuration from the backup file.

Conclusion
This guide covers the fundamental operations for getting started with FortiManager. As
you become more comfortable, explore the extensive features available for centralized
management, automation, and security orchestration. Always refer to the official
Fortinet Documentation for the most detailed and up-to-date information specific to
your FortiManager version:

• Fortinet Documentation Library: [Link]

Remember to practice these steps in a lab environment if possible before applying them
to production systems.

Common questions

Powered by AI

Backup and restore functionalities are critical in FortiManager for ensuring business continuity and minimizing downtime during disasters. Regular backups allow recovering system configurations, thus preventing data loss and extensive manual configuration redeployment. Encrypted backups add security by safeguarding sensitive data. Restoring systems with backups minimizes disruptions, ensuring quick recovery of services, which is why they are indispensable for robust disaster recovery planning .

Adding a FortiGate to FortiManager involves enabling Central Management on the FortiGate, specifying the FortiManager's IP/FQDN, and sending a management request. On FortiManager, the device appears as unauthorized. Authorization is crucial as it confirms the device's legitimacy and allows configuration management. Importing the FortiGate's configuration enables comprehensive management by reflecting the accurate current state of the device, thereby facilitating efficient policy deployment .

Enabling Central Management on a FortiGate device allows it to be managed by FortiManager, facilitating centralized control and configuration dissemination. This integration ensures consistent policy application across devices and enables streamlined administrative tasks, such as updates and backups. For administrators, it provides a unified management interface, reducing configuration errors, enhancing oversight, and improving efficiency in handling complex network environments .

ADOMs in FortiManager compartmentalize device management into separate domains, allowing different administrative controls for each segment. This segregation enhances efficiency by enabling administrators to manage policies and devices specific to departments or regions without interference. Through ADOMs, configuration mistakes and conflicts are minimized, and management resources can be allocated precisely, reducing overhead and improving organizational security management practices .

Consulting official documentation is necessary for effectively managing FortiManager, as it provides detailed and up-to-date information specific to software versions and hardware environments. This guidance helps administrators implement configurations accurately and understand complex features, reducing the likelihood of errors and ensuring security policies align with best practices. Relying on official resources also facilitates learning and troubleshooting, necessary for maintaining optimal operational efficiency .

To perform an initial login, open a web browser and navigate to the FortiManager's IP address or FQDN. Enter the default username, usually 'admin', and the password, which could be the instance ID for new VMs. After logging in, if prompted, upload a license file from the Fortinet support portal. Understanding this process is critical as it ensures secure access to the system and validates proper licensing, both of which are foundational for further management tasks .

Creating reusable objects, such as addresses, services, and schedules in FortiManager, streamlines policy management by reducing redundancy. It allows administrators to define commonly used configurations once and apply them across multiple policies, conserving resources and simplifying updates. This modular approach increases efficiency by minimizing errors and ensuring consistency across various policies and devices .

Policy packages are significant as they consolidate firewall policies for systematic management across multiple FortiGate devices. By creating and modifying these packages, administrators can ensure consistent policy deployment, thus maintaining uniform security standards. After crafting policies, their installation onto devices is streamlined, enhancing efficiency and reducing errors across diverse network environments .

FortiView in FortiManager plays a pivotal role in security management by providing comprehensive visibility into network activity. It monitors real-time threats, traffic, and performance, enabling administrators to detect anomalies and respond promptly. This oversight ensures that potential security breaches can be identified quickly, helping maintain a secure network environment through proactive monitoring .

Encrypting backup files in FortiManager safeguards data integrity and confidentiality, ensuring only authorized users can access sensitive configuration data. This practice protects backups from unauthorized access and potential data breaches, especially when stored on external servers. Encryption ensures compliance with security policies and enhances the overall security posture of sensitive network configurations .

You might also like