Fortinet Document Library

Version:

Version:

Version:

Version:

Version:

Version:

Version:

Version:

Version:

Version:

Version:

Version:

Version:


Table of Contents

EMS Administration Guide

Fabric Devices

You can view all FortiGates that the EMS has authorized in Administration > Fabric Devices. You can also deny or authorize a FortiGate.

You can also use the Share tag info from all FortiClients and Share tag info from FortiClients connected to additional FortiGates options to configure sharing endpoints' resolved IP or MAC addresses (hereafter referred to as "host tag") to the FortiGates. The following summarizes the results for these two options' configuration combinations:

Share tag info from all FortiClients configuration

Share tag info from FortiClients connected to additional FortiGates configuration

Result

Disabled

Disabled

This is the default setting. The selected FortiGate only receives the host tags for endpoints whose gateways point to the selected FortiGate.

Disabled

Enabled, with additional FortiGates selected

The selected FortiGate receives host tags for the following:

  • Endpoints whose gateways point to the selected FortiGate
  • Endpoints whose gateways point to the configured additional FortiGates

Enabled

Disabled

The selected FortiGate receive host tags for all endpoints, regardless of whether the gateways point to the selected FortiGate.

To change the FortiGate authorization status:
  1. Go to Administration > Fabric Devices.
  2. Select the desired FortiGate.
  3. Click Deny or Authorize. The FortiGate status in the Authorized column changes.

Fabric Devices

You can view all FortiGates that the EMS has authorized in Administration > Fabric Devices. You can also deny or authorize a FortiGate.

You can also use the Share tag info from all FortiClients and Share tag info from FortiClients connected to additional FortiGates options to configure sharing endpoints' resolved IP or MAC addresses (hereafter referred to as "host tag") to the FortiGates. The following summarizes the results for these two options' configuration combinations:

Share tag info from all FortiClients configuration

Share tag info from FortiClients connected to additional FortiGates configuration

Result

Disabled

Disabled

This is the default setting. The selected FortiGate only receives the host tags for endpoints whose gateways point to the selected FortiGate.

Disabled

Enabled, with additional FortiGates selected

The selected FortiGate receives host tags for the following:

  • Endpoints whose gateways point to the selected FortiGate
  • Endpoints whose gateways point to the configured additional FortiGates

Enabled

Disabled

The selected FortiGate receive host tags for all endpoints, regardless of whether the gateways point to the selected FortiGate.

To change the FortiGate authorization status:
  1. Go to Administration > Fabric Devices.
  2. Select the desired FortiGate.
  3. Click Deny or Authorize. The FortiGate status in the Authorized column changes.