DOCUMENT LIBRARY
DOCUMENT LIBRARY
Products
Best Practices
Hardware Guides
Products A-Z
Summary
By Solution
By 4D Pillars
By Cloud
Secure Networking
Unified SASE
Security Operations
Secure SD-WAN
Secure Access Service Edge (SASE)
ZTNA
LAN Edge
Identity and Access Management
Next Generation Firewall
Public Cloud
Private Cloud
FortiCloud
Secure Networking
Hybrid Mesh Firewall
FortiGate/ FortiOS
FortiGate-5000
/
6000
/
7000
NOC Management
FortiManager
/
FortiManager Cloud
Managed Fortigate Service
LAN
FortiSwitch
FortiAP / FortiWiFi
FortiEdge Cloud
FortiNAC-F
WAN
Secure SD-WAN
FortiExtender
More >>
Unified SASE
Single Vendor SASE
FortiSASE
Secure SD-WAN
Zero Trust Network Access (ZTNA)
FortiProxy
FortiMonitor
Cloud Network Security
FortiGate Public Cloud
FortiGate Private Cloud
FortiGate CNF
FortiFlex
Lacework FortiCNAPP
Secure Endpoint Connectivity
FortiClient
/
FortiClient Cloud
Web Application / API Protection
FortiWeb
FortiADC
FortiDAST
More >>
Security Operations
Security Operations Automation
FortiAnalyzer
/
FortiAnalyzer Cloud
FortiSIEM
/
FortiSIEM Cloud
FortiSOAR
SOC-as-a-Service (SOCaaS)
Identity
FortiAuthenticator
FortiTrust Identity
FortiPAM
Early Detection & Prevention
FortiSandbox
/
FortiSandbox Cloud
FortiNDR
FortiDeceptor
FortiRecon
More >>
Secure Networking
Hybrid Mesh Firewall
FortiGate/ FortiOS
FortiGate-5000
/
6000
/
7000
NOC Management
FortiManager
/
FortiManager Cloud
Managed Fortigate Service
FortiAIOps
LAN
FortiSwitch
FortiAP / FortiWiFi
FortiAP-U Series
FortiEdge Cloud
FortiNAC-F
WAN
Secure SD-WAN
FortiExtender
Communication & Surveillance
FortiVoice
/
FortiVoice Cloud
FortiFone
FortiCamera
FortiRecorder
FortiCentral
Unified SASE
Single Vendor SASE
FortiSASE
Secure SD-WAN
Zero Trust Network Access (ZTNA)
FortiProxy
FortiMonitor
Secure Endpoint Connectivity
FortiClient
/
FortiClient Cloud
Cloud Network Security
FortiGate Public Cloud
FortiGate Private Cloud
FortiGate CNF
FortiFlex
Cloud-Native Security
Lacework FortiCNAPP
FortiDevSec
Web Application / API Protection
FortiWeb
FortiADC
FortiDAST
Security Operations
Security Operations Automation
FortiAnalyzer
/
FortiAnalyzer Cloud
FortiSIEM
/
FortiSIEM Cloud
FortiSOAR
Endpoint
FortiClient
/
FortiClient Cloud
FortiEDR/XDR
Data Protection
FortiDLP
FortiDLP Agent
FortiDLP Policies
Identity
FortiAuthenticator
FortiTrust Identity
FortiToken
/
FortiToken Cloud
FortiPAM
Email
FortiMail
FortiPhish
Early Detection & Prevention
FortiSandbox
/
FortiSandbox Cloud
FortiNDR
FortiDeceptor
FortiRecon
Expert Services
SOC-as-a-Service (SOCaaS)
Edge Firewall
FortiGate/FortiOS
FortiGate-5000
/
6000
/
7000
FortiGate Public Cloud
FortiGate Private Cloud
Orchestration & management
FortiManager
/
FortiManager Cloud
FortiAnalyzer
/
FortiAnalyzer Cloud
Overlay-as-a-Service
SD Branch
FortiSwitch
FortiAP / FortiWiFi
FortiExtender
/
FortiExtender Cloud
Application Delivery
FortiADC
/
FortiGSLB
Single Vendor SASE
FortiSASE
Secure Endpoint Connectivity
FortiClient
/
FortiClient Cloud
Secure Private Access
Secure SD-WAN
Zero Trust Network Access (ZTNA)
Thin Edge
FortiGate/ FortiOS
FortiAP / FortiWiFi
FortiExtender
/
FortiExtender Cloud
Identity
FortiAuthenticator
FortiTrust Identity
FortiToken Cloud
FortiToken
Application Gateway
FortiGate/ FortiOS
FortiProxy
FortiADC
/
FortiGSLB
Enterprise Asset Management
FortiClient EMS
Endpoint Agent
FortiClient
/
FortiClient Cloud
Agentless Security Posture
FortiNAC-F
FortiSIEM
/
FortiSIEM Cloud
Identity
FortiAuthenticator
FortiTrust Identity
FortiToken Cloud
FortiToken
Wireless
FortiAP / FortiWiFi
FortiAP-U Series
FortiGate Cloud
Switching
FortiSwitch
FortiEdge Cloud
FortiNAC-F
Identity
FortiAuthenticator
FortiTrust Identity
FortiToken Cloud
FortiToken
Privilege Acccess Management
FortiPAM
Next Generation Firewall
FortiGate / FortiOS
FortiGate-5000
/
6000
/
7000
FortiGate Public Cloud
FortiGate Private Cloud
Orchestration & management
FortiManager
/
FortiManager Cloud
FortiAnalyzer
/
FortiAnalyzer Cloud
Expert Services
SOC-as-a-Service (SOCaaS)
Managed Fortigate Service
All
FortiADC Public Cloud
FortiAnalyzer Public Cloud
FortiAuthenticator Public Cloud
FortiDeceptor Public Cloud
FortiGate Public Cloud
FortiIsolator Public Cloud
FortiManager Public Cloud
FortiNDR Public Cloud
FortiPAM Public Cloud
FortiPortal Public Cloud
FortiProxy Public Cloud
FortiSandbox Public Cloud
FortiTester Public Cloud
FortiVoice Public Cloud
FortiWeb Manager Public Cloud
FortiWeb Public Cloud
All
FortiADC Private Cloud
FortiAnalyzer BigData Private Cloud
FortiAnalyzer Private Cloud
FortiAuthenticator Private Cloud
FortiDeceptor Private Cloud
FortiGate Private Cloud
FortiManager Private Cloud
FortiNDR Private Cloud
FortiPAM Private Cloud
FortiProxy Private Cloud
FortiSandbox Private Cloud
FortiTester Private Cloud
FortiVoice Private Cloud
FortiWeb Manager Private Cloud
FortiWeb Private Cloud
Account Management
FortiCloud Services
SAAS Management
FortiGate Cloud
FortiEdge Cloud
FortiEdge Cloud
FortiExtender Cloud
FortiPresence Cloud
FortiToken Cloud
FortiTrust Identity
FortiZTP
FortiCamera Cloud
SAAS Application Security
FortiWeb Cloud
FortiGSLB
FortiCASB
FortiCNP
FortiInsight
FortiPhish
FortiGate CNF
Managed Services
SOC-as-a-Service (SOCaaS)
Managed Fortigate Service
Platform as a service (PAAS)
FortiSASE
FortiAnalyzer Cloud
FortiManager Cloud
FortiClient Cloud
FortiSandbox Cloud
FortiMail Cloud
FortiSOAR Cloud
Other SAAS Services
Overlay-as-a-Service
FortiRecon
FortiConverter
ForiIPAM
FortiFlex
FortiCare Elite
4D Resources
Solution Hubs
Define, design, deploy, demo
4D Pillars
Secure SD-WAN
Zero Trust Network Access
Wireless
Switching
Secure Access Service Edge
Identity and Access Management
Next Generation Firewall
Curated Links by Solution
Cloud
FortiCloud
Public & Private Cloud
Popular Solutions
Secure SD-WAN
Zero Trust Network Access
Secure Access
Security Fabric
Tele-Working
Multi-Factor Authentication
FortiASIC
Operational Technology
MSSP
Next Generation Firewall
FortiAnalyzer
FortiAnalyzer Big-Data
FortiADC
FortiAP / FortiWiFi
FortiAP U-Series
FortiAuthenticator
FortiCache
FortiCarrier
FortiController
FortiDDoS
FortiDDoS-F
FortiDeceptor
FortiExtender
FortiGate-5000
FortiGate-6000
FortiGate-7000
FortiHypervisor
FortiIsolator
FortiMail
FortiManager
FortiNAC
FortiNDR
FortiProxy
FortiRecorder
FortiGate
FortiRPS
FortiSandbox
FortiSIEM
FortiSwitch
FortiTester
FortiToken
FortiVoice
FortiWAN
FortiWeb
FortiWLC
FortiWLM
AscenLink
AV Engine
AWS Firewall Rules
Container FortiOS
FortiADC
FortiADC E Series
FortiADC Manager
FortiADC Private Cloud
FortiADC Public Cloud
FortiAIOps
FortiAnalyzer
FortiAnalyzer BigData
FortiAnalyzer BigData Private Cloud
FortiAnalyzer Cloud
FortiAnalyzer Private Cloud
FortiAnalyzer Public Cloud
FortiAP / FortiWiFi
FortiAP-U Series
FortiAuthenticator
FortiAuthenticator Private Cloud
FortiAuthenticator Public Cloud
FortiAuthProxy
FortiBalancer
FortiBranchSASE
FortiBridge
FortiCache
FortiCamera
FortiCamera Cloud
FortiCare Elite
FortiCarrier
FortiCASB
FortiCentral
FortiClient
FortiClient Cloud
FortiCloud Services
FortiCNP
FortiConnect
FortiController
FortiConverter Service
FortiConverter Tool
FortiCore
FortiCSPM
FortiCWP
FortiDAST
FortiDB
FortiDDoS
FortiDDoS-F
FortiDeceptor
FortiDeceptor DaaS
FortiDeceptor Private Cloud
FortiDeceptor Public Cloud
FortiDevSec
FortiDLP
FortiDLP Agent
FortiDLP Policies
FortiDNS
FortiEdge Cloud
FortiEDR/XDR
FortiEndpoint
FortiExplorer
FortiExplorer Go
FortiExtender
FortiFlex
FortiFone
FortiGate / FortiOS
FortiGate Cloud
FortiGate CNF
FortiGate Private Cloud
FortiGate Public Cloud
FortiGate-5000
FortiGate-6000
FortiGate-7000
FortiGate-as-a-Service
FortiGSLB
FortiGuard Advanced Bot Protection
FortiGuest
FortiHypervisor
FortiInsight
FortiInsight Cloud
FortiIPAM
FortiIsolator
FortiIsolator Public Cloud
FortiLAN Cloud
FortiMail
FortiMail Cloud
FortiManager
FortiManager Cloud
FortiManager Private Cloud
FortiManager Public Cloud
FortiMonitor
FortiNAC
FortiNAC-F
FortiNDR
FortiNDR (on-premise) Private Cloud
FortiNDR (on-premise) Public Cloud
FortiNDR Cloud
FortiNDR Cloud Sensors
FortiPAM
FortiPAM Private Cloud
FortiPAM Public Cloud
FortiPhish
FortiPlanner
FortiPolicy
FortiPortal
FortiPortal Public Cloud
FortiPresence
FortiPresence VM
FortiProxy
FortiProxy Private Cloud
FortiProxy Public Cloud
FortiRecon
FortiRecorder
FortiRPS
FortiSandbox
FortiSandbox Cloud
FortiSandbox Private Cloud
FortiSandbox Public Cloud
FortiSASE
FortiScanner
FortiSIEM
FortiSIEM Cloud
FortiSOAR
FortiSOAR Cloud
FortiSRA
FortiSwitch
FortiSwitch Manager
FortiTap
FortiTester
FortiTester Private Cloud
FortiTester Public Cloud
FortiToken
FortiToken Cloud
FortiTrust Identity
FortiVoice
FortiVoice Cloud
FortiVoice Private Cloud
FortiVoice Public Cloud
FortiWAN
FortiWAN Controller
FortiWeb
FortiWeb Cloud
FortiWeb Manager Private Cloud
FortiWeb Manager Public Cloud
FortiWeb Private Cloud
FortiWeb Public Cloud
FortiWLM
FortiZTP
IPS Engine
Lacework FortiCNAPP
Managed FortiGate Service
Overlay-as-a-Service
Security Awareness and Training
SOCaaS
Wireless Controller
Search documents and hardware ...
Online Help
What's New
Workload/Container Protection Switch
Workload Protection
Introduction
License Overview
Storage Guardian, Basic/Advance
Workload Guardian License
Getting started
Amazon Web Services
Add AWS Account Manually
Add Multiple AWS Accounts via CloudFormation
Add AWS Organization Account Checklist
Add AWS Organization: CANNOT ADD Sub-Account Status
Update AWS Account Manually
Update AWS Organization Checklist
Update AWS Role External ID
Google Cloud Platform
Add Google Cloud Account
Configure G Suite Account
Configure Service Account
Configure OAuth Consent Screen
Grant Service Account API Access
Grant Service Account Owner Role
Grant service account Organization Administrator role
Enable required APIs
Enable activity and alert monitoring
Add Google Cloud Account
Update Google Cloud Account
Configure G Suite Account
Configure Service Account
Grant Service Account API Access
Grant Service Account Owner Role
Grant service account Organization Administrator role
Enable required APIs
Enable activity and alert monitoring
Update Google Cloud Account
Microsoft Azure
Add Microsoft Azure Account
Add Azure Account: CANNOT ADD Subscription Status
Update Microsoft Azure Account
Security Integration
AWS Cloud Security Integration
Enable Amazon Inspector
Enable Amazon Guard Duty
Microsoft Azure Security Integration
Traffic Configuration
AWS Traffic Log Configuration
Microsoft Azure Traffic Log Configuration
Google Cloud Traffic Log Configuration
Activate Asset and Attack Surface View
Create EC2 role for AWS SSM agent
Attach the EC2 role to all EC2 instances
Create an Assessment Target on AWS Inspector
Create Assessment Template for Assessment Run
Cloud Service Integration Pricing
AWS Security Service Charge
Azure Security Center Charge
Google Security Command Center Charge
Using FortiCWP
General
Alert
Resource
Table View
Map View
Asset View
Attack Surface View
Documents
Policy
Risk Assessment Policy
Data Analysis Policy
Threat Protection Policy
Network Policy
Integration Policy
Compliance Policy
Policy Configuration
Predefined Policy Configuration
Policy Configuration Examples
Customized Risk Assessment Policy Setup
Customized Data Analysis Policy
Report
C-Level Report
Compliance Report
Activity Report
Alert Report
Activity
AV Scan
Traffic
Admin
Cloud Account Management
Cloud Account Status
Update Cloud Account
Delete Cloud Account
Turn off Workload Guardian
Turn on Workload Guardian
Storage Bucket Management
Activate Storage Guardian on Bucket/Container
Disable Storage Guardian on Storage Bucket/Container
Free Up Storage Guardian License Seat Space
Notifications
Collections
Data pattern
Allow List
Traffic Group
Data Analysis Log
FortiCWP APIs
Generate Credentials
Get Authorization Token
Get Refresh Token
Get Credentials Token
Get Resource Map
Get Account Severity Level
Get Alert by Filter
Get Country List
Get Number of DLP Documents
Get Document Activity
Get Document Detail
Get Document Permission
Get Document Violation
Get Event
Get Number of Malware Documents
Get Alert Policy List
Get Policy Risk
Get Policy Violation
Get Resource Highlight
Get Resource Risk Level
Get Severity
Get Severity Alert
Get Status Detail
Get Status List
Get Storage Risk
Get Virtual Machine Overview
Container Protection
Introduction
Kubernetes Agent and System Requirement
Upgrade Kubernetes Agent
License Overview
Container Visibility
Cluster Visibility
Namespace Layer
Deployment Layer
Pod Layer
Container Traffic
FortiView
Container Image
CI/CD Integration Protection
Compliance Assessment
CI/CD Integration Policy Configuration
Add Policy to CI/CD Integration
Jenkins Configuration
Compliance Policy Configuration
Compliance Audit Setting
Add Kubernetes Cluster
AWS Add Kubernetes Cluster - EKS - Auto Deployment
Add IAM Role to Kubernetes Configmap
Make Kubernetes API server accessible by Container Protection
Add Kubernetes Cluster - EKS - Auto Deployment
AWS Add Kubernetes Cluster - EKS - Manual Deployment
AWS Add Kubernetes Cluster - Self Managed - Auto Deployment
AWS Create and Attach Role to EC2 Instance
AWS Kubernetes Service Account Creation
AWS Kubernetes Obtain Access Token
AWS Add Self Managed Kubernetes Cluster - Auto Deployment
AWS Add Kubernetes Cluster - Self Managed - Manual Deployment
Azure Add Kubernetes Cluster - AKS
Azure Add Kubernetes Cluster - Self Managed
Google Cloud Add Kubernetes Cluster - GKE - Auto Deployment
Google Cloud Add Kubernetes Cluster - GKE - Manual Deployment
Google Cloud Add Kubernetes Cluster - Self Managed
Private Cloud Add Kubernetes Cluster - Self Managed
Deploy Kubernetes Agent Controller
Kubernetes Agent and Node Status
Add Registry
Add AWS Registry
Add AWS Registry Example
Add Azure Registry
Add Azure Registry Example
Add Google Cloud Registry
Add Google Cloud Registry Example
Add Harbor Cloud Registry
Add Harbor Cloud Registry Example
Add OpenShift Registry
Add OpenShift Registry Example
Add Credential Store
Add AWS Account - Manual
Add AWS Account - Automatic
Add AWS IAM Role via CloudFormation
AWS Administrator Role Creation
Reference - Role Policy in CloudFormation
Add Google Account
Configure G Suite Account
Configure Service Account
Enable required APIs
Add Google Account
Add Azure Account
Add Role to Azure Subscription
Add User Access Administrator Role to Multiple Azure Subscriptions (optional)
Add Azure Account Credential
Add Harbor Account
Add OpenShift Account
Openshift Account Configuration
Add OpenShift Account
Troubleshooting
Workload Protection Troubleshooting
No Pop-Up errors
Stack Already Exists error
AWS Account Checklist Troubleshooting
Number of VM exceeds available Workload Guardian license seats
Container Protection Troubleshooting
Error: Update AWS IAM Role
Warning: Do not use the update function to change to a new cluster
Appendix
Appendix A - Workload Protection Amazon Policy Usage
Appendix B - Container Protection Compliance Audit Configuration File Path
CIS Kubernetes Benchmark 1.5 Configuration File Paths
CIS Kubernetes Benchmark 1.6 Configuration File Paths
Google GKE Compliance Audit Configuration File Paths
Amazon EKS Compliance Audit Configuration File Paths
Data Retention Policy
End User License Agreements
Home
FortiCWP 21.2.0
Online Help
21.2.0
22.2.a
22.1.0
21.3.0
21.2.1
21.2.0
21.1.0
20.3.0
20.2.0
20.1.0
4.4.0
4.2.0
Workload Protection
Workload Protection
Previous
Next
Workload Protection
Workload Protection
Previous
Next
Home
Product Pillars
Network Security
Network Security
FortiGate / FortiOS
FortiGate 5000
FortiGate 6000
FortiGate 7000
FortiProxy
NOC & SOC Management
FortiManager
FortiManager Cloud
FortiAnalyzer
FortiAnalyzer Cloud
FortiMonitor
FortiGate Cloud
Enterprise Networking
Secure SD-WAN
FortiLAN Cloud
FortiSwitch
FortiAP / FortiWiFi
FortiAP-U Series
FortiNAC-F
FortiExtender
FortiExtender Cloud
FortiAIOps
Business Communications
FortiFone
FortiVoice
FortiVoice Cloud
FortiRecorder
FortiCamera
Zero Trust Access
ZTNA
Zero Trust Network Access
FortiClient EMS
SASE
FortiSASE
Identity
FortiAuthenticator
FortiTrust Identity
FortiToken Cloud
FortiToken
Cloud Security
Hybrid Cloud Security
FortiGate Public Cloud
FortiGate Private Cloud
FortiFlex
Cloud Native Protection
FortiCNP
FortiDevSec
Web Application / API Protection
FortiWeb
FortiWeb Cloud
FortiADC
FortiGSLB
FortiGuard ABP
SAAS Security
FortiMail
FortiMail Cloud
FortiCASB
Security Operations
SOC Platform
FortiAnalyzer
FortiAnalyzer Cloud
FortiSIEM
/
FortiSIEM Cloud
FortiSOAR
FortiPhish
Advanced Threat Protection
FortiSandbox
FortiSandbox Cloud
FortiNDR
FortiNDR Cloud
FortiDeceptor
FortiInsight
FortiInsight Cloud
FortiIsolator
Endpoint Security
FortiClient
FortiClient Cloud
FortiEDR
Best Practices
Solution Hubs
Cloud
FortiCloud
Public & Private Cloud
Popular Solutions
Secure SD-WAN
Zero Trust Network Access
Secure Access
Next Generation Firewall
Security Fabric
Tele-Working
Multi-Factor Authentication
FortiASIC
Operational Technology
MSSP
4-D Resources
Secure SD-WAN
Zero Trust Network Access
Wireless
Switching
Secure Access Service Edge
Identity and Access Management
Next Generation Firewall
Hardware Guides
FortiAnalyzer
FortiAnalyzer Big-Data
FortiADC
FortiAP / FortiWiFi
FortiAP U-Series
FortiAuthenticator
FortiCache
FortiCarrier
FortiController
FortiDDoS
FortiDDoS-F
FortiDeceptor
FortiExtender
FortiGate
FortiGate-5000
FortiGate-6000
FortiGate-7000
FortiHypervisor
FortiIsolator
FortiMail
FortiManager
FortiNAC
FortiNDR
FortiProxy
FortiRecorder
FortiRPS
FortiSandbox
FortiSIEM
FortiSwitch
FortiTester
FortiToken
FortiVoice
FortiWAN
FortiWeb
FortiWLC
FortiWLM
Product A-Z
AscenLink
AV Engine
AWS Firewall Rules
Container FortiOS
FortiADC
FortiADC E Series
FortiADC Manager
FortiADC Private Cloud
FortiADC Public Cloud
FortiAIOps
FortiAnalyzer
FortiAnalyzer BigData
FortiAnalyzer BigData Private Cloud
FortiAnalyzer Cloud
FortiAnalyzer Private Cloud
FortiAnalyzer Public Cloud
FortiAP / FortiWiFi
FortiAP-U Series
FortiAuthenticator
FortiAuthenticator Private Cloud
FortiAuthenticator Public Cloud
FortiAuthProxy
FortiBalancer
FortiBranchSASE
FortiBridge
FortiCache
FortiCamera
FortiCamera Cloud
FortiCare Elite
FortiCarrier
FortiCASB
FortiCentral
FortiClient
FortiClient Cloud
FortiCloud Services
FortiCNP
FortiConnect
FortiController
FortiConverter Service
FortiConverter Tool
FortiCore
FortiCSPM
FortiCWP
FortiDAST
FortiDB
FortiDDoS
FortiDDoS-F
FortiDeceptor
FortiDeceptor DaaS
FortiDeceptor Private Cloud
FortiDeceptor Public Cloud
FortiDevSec
FortiDLP
FortiDLP Agent
FortiDLP Policies
FortiDNS
FortiEdge Cloud
FortiEDR/XDR
FortiEndpoint
FortiExplorer
FortiExplorer Go
FortiExtender
FortiFlex
FortiFone
FortiGate / FortiOS
FortiGate Cloud
FortiGate CNF
FortiGate Private Cloud
FortiGate Public Cloud
FortiGate-5000
FortiGate-6000
FortiGate-7000
FortiGate-as-a-Service
FortiGSLB
FortiGuard Advanced Bot Protection
FortiGuest
FortiHypervisor
FortiInsight
FortiInsight Cloud
FortiIPAM
FortiIsolator
FortiIsolator Public Cloud
FortiLAN Cloud
FortiMail
FortiMail Cloud
FortiManager
FortiManager Cloud
FortiManager Private Cloud
FortiManager Public Cloud
FortiMonitor
FortiNAC
FortiNAC-F
FortiNDR
FortiNDR (on-premise) Private Cloud
FortiNDR (on-premise) Public Cloud
FortiNDR Cloud
FortiNDR Cloud Sensors
FortiPAM
FortiPAM Private Cloud
FortiPAM Public Cloud
FortiPhish
FortiPlanner
FortiPolicy
FortiPortal
FortiPortal Public Cloud
FortiPresence
FortiPresence VM
FortiProxy
FortiProxy Private Cloud
FortiProxy Public Cloud
FortiRecon
FortiRecorder
FortiRPS
FortiSandbox
FortiSandbox Cloud
FortiSandbox Private Cloud
FortiSandbox Public Cloud
FortiSASE
FortiScanner
FortiSIEM
FortiSIEM Cloud
FortiSOAR
FortiSOAR Cloud
FortiSRA
FortiSwitch
FortiSwitch Manager
FortiTap
FortiTester
FortiTester Private Cloud
FortiTester Public Cloud
FortiToken
FortiToken Cloud
FortiTrust Identity
FortiVoice
FortiVoice Cloud
FortiVoice Private Cloud
FortiVoice Public Cloud
FortiWAN
FortiWAN Controller
FortiWeb
FortiWeb Cloud
FortiWeb Manager Private Cloud
FortiWeb Manager Public Cloud
FortiWeb Private Cloud
FortiWeb Public Cloud
FortiWLM
FortiZTP
IPS Engine
Lacework FortiCNAPP
Managed FortiGate Service
Overlay-as-a-Service
Security Awareness and Training
SOCaaS
Wireless Controller
Ordering Guides
Table of Contents
What's New
Workload/Container Protection Switch
Workload Protection
Introduction
License Overview
Storage Guardian, Basic/Advance
Workload Guardian License
Getting started
Amazon Web Services
Add AWS Account Manually
Add Multiple AWS Accounts via CloudFormation
Add AWS Organization Account Checklist
Add AWS Organization: CANNOT ADD Sub-Account Status
Update AWS Account Manually
Update AWS Organization Checklist
Update AWS Role External ID
Google Cloud Platform
Add Google Cloud Account
Configure G Suite Account
Configure Service Account
Configure OAuth Consent Screen
Grant Service Account API Access
Grant Service Account Owner Role
Grant service account Organization Administrator role
Enable required APIs
Enable activity and alert monitoring
Add Google Cloud Account
Update Google Cloud Account
Configure G Suite Account
Configure Service Account
Grant Service Account API Access
Grant Service Account Owner Role
Grant service account Organization Administrator role
Enable required APIs
Enable activity and alert monitoring
Update Google Cloud Account
Microsoft Azure
Add Microsoft Azure Account
Add Azure Account: CANNOT ADD Subscription Status
Update Microsoft Azure Account
Security Integration
AWS Cloud Security Integration
Enable Amazon Inspector
Enable Amazon Guard Duty
Microsoft Azure Security Integration
Traffic Configuration
AWS Traffic Log Configuration
Microsoft Azure Traffic Log Configuration
Google Cloud Traffic Log Configuration
Activate Asset and Attack Surface View
Create EC2 role for AWS SSM agent
Attach the EC2 role to all EC2 instances
Create an Assessment Target on AWS Inspector
Create Assessment Template for Assessment Run
Cloud Service Integration Pricing
AWS Security Service Charge
Azure Security Center Charge
Google Security Command Center Charge
Using FortiCWP
General
Alert
Resource
Table View
Map View
Asset View
Attack Surface View
Documents
Policy
Risk Assessment Policy
Data Analysis Policy
Threat Protection Policy
Network Policy
Integration Policy
Compliance Policy
Policy Configuration
Predefined Policy Configuration
Policy Configuration Examples
Customized Risk Assessment Policy Setup
Customized Data Analysis Policy
Report
C-Level Report
Compliance Report
Activity Report
Alert Report
Activity
AV Scan
Traffic
Admin
Cloud Account Management
Cloud Account Status
Update Cloud Account
Delete Cloud Account
Turn off Workload Guardian
Turn on Workload Guardian
Storage Bucket Management
Activate Storage Guardian on Bucket/Container
Disable Storage Guardian on Storage Bucket/Container
Free Up Storage Guardian License Seat Space
Notifications
Collections
Data pattern
Allow List
Traffic Group
Data Analysis Log
FortiCWP APIs
Generate Credentials
Get Authorization Token
Get Refresh Token
Get Credentials Token
Get Resource Map
Get Account Severity Level
Get Alert by Filter
Get Country List
Get Number of DLP Documents
Get Document Activity
Get Document Detail
Get Document Permission
Get Document Violation
Get Event
Get Number of Malware Documents
Get Alert Policy List
Get Policy Risk
Get Policy Violation
Get Resource Highlight
Get Resource Risk Level
Get Severity
Get Severity Alert
Get Status Detail
Get Status List
Get Storage Risk
Get Virtual Machine Overview
Container Protection
Introduction
Kubernetes Agent and System Requirement
Upgrade Kubernetes Agent
License Overview
Container Visibility
Cluster Visibility
Namespace Layer
Deployment Layer
Pod Layer
Container Traffic
FortiView
Container Image
CI/CD Integration Protection
Compliance Assessment
CI/CD Integration Policy Configuration
Add Policy to CI/CD Integration
Jenkins Configuration
Compliance Policy Configuration
Compliance Audit Setting
Add Kubernetes Cluster
AWS Add Kubernetes Cluster - EKS - Auto Deployment
Add IAM Role to Kubernetes Configmap
Make Kubernetes API server accessible by Container Protection
Add Kubernetes Cluster - EKS - Auto Deployment
AWS Add Kubernetes Cluster - EKS - Manual Deployment
AWS Add Kubernetes Cluster - Self Managed - Auto Deployment
AWS Create and Attach Role to EC2 Instance
AWS Kubernetes Service Account Creation
AWS Kubernetes Obtain Access Token
AWS Add Self Managed Kubernetes Cluster - Auto Deployment
AWS Add Kubernetes Cluster - Self Managed - Manual Deployment
Azure Add Kubernetes Cluster - AKS
Azure Add Kubernetes Cluster - Self Managed
Google Cloud Add Kubernetes Cluster - GKE - Auto Deployment
Google Cloud Add Kubernetes Cluster - GKE - Manual Deployment
Google Cloud Add Kubernetes Cluster - Self Managed
Private Cloud Add Kubernetes Cluster - Self Managed
Deploy Kubernetes Agent Controller
Kubernetes Agent and Node Status
Add Registry
Add AWS Registry
Add AWS Registry Example
Add Azure Registry
Add Azure Registry Example
Add Google Cloud Registry
Add Google Cloud Registry Example
Add Harbor Cloud Registry
Add Harbor Cloud Registry Example
Add OpenShift Registry
Add OpenShift Registry Example
Add Credential Store
Add AWS Account - Manual
Add AWS Account - Automatic
Add AWS IAM Role via CloudFormation
AWS Administrator Role Creation
Reference - Role Policy in CloudFormation
Add Google Account
Configure G Suite Account
Configure Service Account
Enable required APIs
Add Google Account
Add Azure Account
Add Role to Azure Subscription
Add User Access Administrator Role to Multiple Azure Subscriptions (optional)
Add Azure Account Credential
Add Harbor Account
Add OpenShift Account
Openshift Account Configuration
Add OpenShift Account
Troubleshooting
Workload Protection Troubleshooting
No Pop-Up errors
Stack Already Exists error
AWS Account Checklist Troubleshooting
Number of VM exceeds available Workload Guardian license seats
Container Protection Troubleshooting
Error: Update AWS IAM Role
Warning: Do not use the update function to change to a new cluster
Appendix
Appendix A - Workload Protection Amazon Policy Usage
Appendix B - Container Protection Compliance Audit Configuration File Path
CIS Kubernetes Benchmark 1.5 Configuration File Paths
CIS Kubernetes Benchmark 1.6 Configuration File Paths
Google GKE Compliance Audit Configuration File Paths
Amazon EKS Compliance Audit Configuration File Paths
Data Retention Policy
End User License Agreements