Fortinet white logo
Fortinet white logo

Administration Guide

Setting up the FortiEDR reputation server

Setting up the FortiEDR reputation server

The installation of the reputation service includes the following steps:

  1. Creating a Virtual Machine
  2. Installing the reputation service
  3. Configuring the reputation service

Creating a Virtual Machine

To create a virtual machine:
  1. Create a new virtual server. For example, by selecting File > New Virtual Machine…., then selecting Create a new virtual machine and clicking NEXT.

  2. Enter the desired virtual machine name. For example, fortiedr-reputation-service and click NEXT.
  3. Enter the virtual machine settings, as follows:
    1. In the Select a compute resource step, select the resources as needed and click NEXT.
    2. In the Select storage step, select the storage where the virtual machine disk should be stored on and click NEXT.
    3. In the Select Compatibility step, select your ESXi version and click NEXT.

    4. At the Select a guest OS step, select Linux in the Guest OS family field and select Ubuntu Linux (64-bit) in the Guest OS version field.
    5. In the Customize hardware step, select the minimum requirements as specified in system requirements in Appendix C – ON PREMISE DEPLOYMENTS and attach a network interface.
  4. Select Finish to complete the creation of the virtual machine.

Installing the reputation service

To install the FortiEDR reputation service:
  1. Right-click the new VM and select Open Remote Console.

  2. Select Manage > Virtual Machine Settings.

  3. In the Hardware tab, select the CD/DVD option and then select the Use ISO image file option on the right.
  4. Click the Browse button and select the ISO file provided by Fortinet for the FortiEDR Reputation Server. Click OK.

    Another option instead of completing the two steps described above is to upload the ISO from the VMWare datastore (this is possible if the ISO has already been uploaded there).

  5. Start the virtual machine and wait until installation is complete.

  6. Log into the virtual machine in order to continue the installation process.
    Login: root
    Change the root password, by entering any password you want. Then re-type it. The password must be strong enough according to Linux standards.

Configuring the reputation service

To configure the FortiEDR reputation service:
  1. if machine does not have an IP address, run dhclient.

  2. In the VM CLI, enter fortiedr config.
  3. At the device role prompt, click Next.

  4. At the prompt, enter your hostname and click Next. (Note: This can be any hostname)
  5. A list of network interfaces on this virtual machine displays. At the Pick your primary interface prompt, select the primary interface to reach the Central Manager server, and click Next.
  6. At the Do you want to use DHCP prompt, select No to configure the IP of this virtual machine manually, and then click Next.
  7. At the prompt, enter the IP address of the machine that you are installing. Use the following format:
    xxx.xxx.xxx.xxx/yy, where yy is the routing prefix of the subnet.
  8. At the prompt, enter the default gateway and click Next.
  9. At the Please set your DNS server prompt, enter a valid IP address and click Next. Use the following format:
    xxx.xxx.xxx.xxx/yy, where yy is the routing prefix of the subnet.
  10. At the management prompt, enter the Central Manager IP address, which must be reachable from the reputation server.

  11. Enter the API username (username with API permissions in the Central Manager) and password when prompted. See Users.

  12. Enter the Central Manager SSH port (default is 22).

  13. Enter the Central Manager SSH credentials (username and password).

  14. At the Do you want to enable web-proxy ? prompt, if the service will communicate via a proxy when accessing the web (such as the FortiEDR Cloud Service (FCS)), select Yes and then enter the IP and port of the proxy. Otherwise, select No.
  15. At the Please set the date prompt, verify the date and click Next. The installer automatically presents the current date. You can change this date, if necessary.
  16. At the Please set your Time prompt, set the time and click Next.
  17. At the prompt, select the timezone and country in which the server is being installed.
  18. Wait a few moments while the installation processes, until you see the Installation completed successfully message.
  19. Run fortiedr status to validate that the reputation service is running.

Setting up the FortiEDR reputation server

Setting up the FortiEDR reputation server

The installation of the reputation service includes the following steps:

  1. Creating a Virtual Machine
  2. Installing the reputation service
  3. Configuring the reputation service

Creating a Virtual Machine

To create a virtual machine:
  1. Create a new virtual server. For example, by selecting File > New Virtual Machine…., then selecting Create a new virtual machine and clicking NEXT.

  2. Enter the desired virtual machine name. For example, fortiedr-reputation-service and click NEXT.
  3. Enter the virtual machine settings, as follows:
    1. In the Select a compute resource step, select the resources as needed and click NEXT.
    2. In the Select storage step, select the storage where the virtual machine disk should be stored on and click NEXT.
    3. In the Select Compatibility step, select your ESXi version and click NEXT.

    4. At the Select a guest OS step, select Linux in the Guest OS family field and select Ubuntu Linux (64-bit) in the Guest OS version field.
    5. In the Customize hardware step, select the minimum requirements as specified in system requirements in Appendix C – ON PREMISE DEPLOYMENTS and attach a network interface.
  4. Select Finish to complete the creation of the virtual machine.

Installing the reputation service

To install the FortiEDR reputation service:
  1. Right-click the new VM and select Open Remote Console.

  2. Select Manage > Virtual Machine Settings.

  3. In the Hardware tab, select the CD/DVD option and then select the Use ISO image file option on the right.
  4. Click the Browse button and select the ISO file provided by Fortinet for the FortiEDR Reputation Server. Click OK.

    Another option instead of completing the two steps described above is to upload the ISO from the VMWare datastore (this is possible if the ISO has already been uploaded there).

  5. Start the virtual machine and wait until installation is complete.

  6. Log into the virtual machine in order to continue the installation process.
    Login: root
    Change the root password, by entering any password you want. Then re-type it. The password must be strong enough according to Linux standards.

Configuring the reputation service

To configure the FortiEDR reputation service:
  1. if machine does not have an IP address, run dhclient.

  2. In the VM CLI, enter fortiedr config.
  3. At the device role prompt, click Next.

  4. At the prompt, enter your hostname and click Next. (Note: This can be any hostname)
  5. A list of network interfaces on this virtual machine displays. At the Pick your primary interface prompt, select the primary interface to reach the Central Manager server, and click Next.
  6. At the Do you want to use DHCP prompt, select No to configure the IP of this virtual machine manually, and then click Next.
  7. At the prompt, enter the IP address of the machine that you are installing. Use the following format:
    xxx.xxx.xxx.xxx/yy, where yy is the routing prefix of the subnet.
  8. At the prompt, enter the default gateway and click Next.
  9. At the Please set your DNS server prompt, enter a valid IP address and click Next. Use the following format:
    xxx.xxx.xxx.xxx/yy, where yy is the routing prefix of the subnet.
  10. At the management prompt, enter the Central Manager IP address, which must be reachable from the reputation server.

  11. Enter the API username (username with API permissions in the Central Manager) and password when prompted. See Users.

  12. Enter the Central Manager SSH port (default is 22).

  13. Enter the Central Manager SSH credentials (username and password).

  14. At the Do you want to enable web-proxy ? prompt, if the service will communicate via a proxy when accessing the web (such as the FortiEDR Cloud Service (FCS)), select Yes and then enter the IP and port of the proxy. Otherwise, select No.
  15. At the Please set the date prompt, verify the date and click Next. The installer automatically presents the current date. You can change this date, if necessary.
  16. At the Please set your Time prompt, set the time and click Next.
  17. At the prompt, select the timezone and country in which the server is being installed.
  18. Wait a few moments while the installation processes, until you see the Installation completed successfully message.
  19. Run fortiedr status to validate that the reputation service is running.