Fortinet black logo

Configuring FortiAnalyzer HA

Configuring FortiAnalyzer HA

To configure FortiAnalyzer HA:
  1. On FortiAnalyzer, configure high availability at System Settings > HA.

    See the FortiAnalyzer Administration Guide for more information on configuring HA.

    When configuring HA, use the primary private IP as the Peer IP and the external static IP as the Cluster Virtual IP.

  2. Import the Azure Root CA to FortiAnalyzer. In order for the fazutil to call the Azure API successfully, you must import the Azure Cloud CA certificate to each FortiAnalyzer instance.
    For more information on the CA used by Microsoft Entra ID (formerly Azure AD), see https://learn.microsoft.com/en-us/azure/security/fundamentals/azure-CA-details.
    1. Go to System Settings > Certificates > CA Certificates.
    2. Click Import.
    3. Browse to the file location and select it, or drag-and-drop it into the pop-up window.
    4. Click OK.

Configuring FortiAnalyzer HA

To configure FortiAnalyzer HA:
  1. On FortiAnalyzer, configure high availability at System Settings > HA.

    See the FortiAnalyzer Administration Guide for more information on configuring HA.

    When configuring HA, use the primary private IP as the Peer IP and the external static IP as the Cluster Virtual IP.

  2. Import the Azure Root CA to FortiAnalyzer. In order for the fazutil to call the Azure API successfully, you must import the Azure Cloud CA certificate to each FortiAnalyzer instance.
    For more information on the CA used by Microsoft Entra ID (formerly Azure AD), see https://learn.microsoft.com/en-us/azure/security/fundamentals/azure-CA-details.
    1. Go to System Settings > Certificates > CA Certificates.
    2. Click Import.
    3. Browse to the file location and select it, or drag-and-drop it into the pop-up window.
    4. Click OK.