Fortinet black logo

Administration Guide

Integrations

Copy Link
Copy Doc ID 30b84173-e130-11ec-bb32-fa163e15d75b:78328
Download PDF

Integrations

Integrations enable you to configure connectors to external systems, which enables you to trigger predefined types of actions. FortiEDR provides various connectors out-of-the-box, such as Firewalls and NAC systems. In addition, you have the option to define customized connectors to any third-party system in order to trigger any action on that system using an API. The out-of-the-box FortiEDR connectors utilize Fortinet products’ APIs to automatically perform the required actions in order to extend its automatic Playbook actions.

You can set up an unlimited number of connectors for each type and use them by associating Playbook policies or Security policies to the actions defined for these integration connectors, as described below.

Note

The Integration menu is only available when the environment is connected to Fortinet Cloud Services (FCS).

To display the INTEGRATIONS page:

  1. Select ADMINISTRATION > INTEGRATIONS.

    The top left of this page provides two buttons, as shown below:

    • Adding connectors enables you to add and configure connectors for integration with FortiEDR.
    • Action Manager enables you to upload and manage (add, modify and delete) actions (Python scripts that call third-party system APIs) to be automatically triggered by FortiEDR as incident responses. Python 2.7 or later is supported.

Integrations

Integrations enable you to configure connectors to external systems, which enables you to trigger predefined types of actions. FortiEDR provides various connectors out-of-the-box, such as Firewalls and NAC systems. In addition, you have the option to define customized connectors to any third-party system in order to trigger any action on that system using an API. The out-of-the-box FortiEDR connectors utilize Fortinet products’ APIs to automatically perform the required actions in order to extend its automatic Playbook actions.

You can set up an unlimited number of connectors for each type and use them by associating Playbook policies or Security policies to the actions defined for these integration connectors, as described below.

Note

The Integration menu is only available when the environment is connected to Fortinet Cloud Services (FCS).

To display the INTEGRATIONS page:

  1. Select ADMINISTRATION > INTEGRATIONS.

    The top left of this page provides two buttons, as shown below:

    • Adding connectors enables you to add and configure connectors for integration with FortiEDR.
    • Action Manager enables you to upload and manage (add, modify and delete) actions (Python scripts that call third-party system APIs) to be automatically triggered by FortiEDR as incident responses. Python 2.7 or later is supported.