Fortinet black logo

Tag management and visibility improvement 7.0.3

Copy Link
Copy Doc ID c7e1b029-a797-11eb-b70b-00505692583a:841572
Download PDF

Tag management and visibility improvement 7.0.3

You can now clearly identify all tag types and their marked endpoints on the Zero Trust Tag Monitor page.

The page displays a tab for each tag category. You can click each tab to see endpoints tagged with that tag type.

You also have the option to choose which tags to share with a Fabric device for access control. You can choose from outbreak tags, classification tags, and Fabric tags. The following instructions assume that EMS is already connected to a FortiGate as part of a Fortinet Security Fabric.

To configure FortiClient endpoint tag sharing:
  1. Go to Administration > Fabric Devices.
  2. Select the desired FortiGate to edit.
  3. From the FortiClient Endpoint Sharing dropdown list, select one of the following:

    Option

    Description

    Share all FortiClients

    EMS shares tag information of endpoints connected to all authorized Fabric devices with this FortiGate.

    Only share FortiClients connected to this fabric device (Recommended)

    EMS only shares tag information of endpoints connected to this Fabric device. This is the default and recommended option.

    Share FortiClients connected to selected fabric devices

    You can select up to four authorized Fabric devices. EMS shares the tag information of endpoints connected to these Fabric devices with the FortiGate.

  4. In the Tag Types Being Shared field, select the desired tag types to share with the Fabric device. Zero Trust Tags is selected by default. You cannot deselect Zero Trust tags. You can select any or none of the other tag types to share with this Fabric device.
  5. Click Save.

Tag management and visibility improvement 7.0.3

You can now clearly identify all tag types and their marked endpoints on the Zero Trust Tag Monitor page.

The page displays a tab for each tag category. You can click each tab to see endpoints tagged with that tag type.

You also have the option to choose which tags to share with a Fabric device for access control. You can choose from outbreak tags, classification tags, and Fabric tags. The following instructions assume that EMS is already connected to a FortiGate as part of a Fortinet Security Fabric.

To configure FortiClient endpoint tag sharing:
  1. Go to Administration > Fabric Devices.
  2. Select the desired FortiGate to edit.
  3. From the FortiClient Endpoint Sharing dropdown list, select one of the following:

    Option

    Description

    Share all FortiClients

    EMS shares tag information of endpoints connected to all authorized Fabric devices with this FortiGate.

    Only share FortiClients connected to this fabric device (Recommended)

    EMS only shares tag information of endpoints connected to this Fabric device. This is the default and recommended option.

    Share FortiClients connected to selected fabric devices

    You can select up to four authorized Fabric devices. EMS shares the tag information of endpoints connected to these Fabric devices with the FortiGate.

  4. In the Tag Types Being Shared field, select the desired tag types to share with the Fabric device. Zero Trust Tags is selected by default. You cannot deselect Zero Trust tags. You can select any or none of the other tag types to share with this Fabric device.
  5. Click Save.