Azure Administration Guide
Deploying FortiGate-VM from the marketplace
Deploying FortiGate-VM from the marketplace
To deploy FortiGate-VM from the marketplace:
- In the Azure marketplace, search for and select Fortinet FortiGate Next-Generation Firewall. Ensure that the listing says Azure Application.
- From Select a plan, select the desired deployment plan. Click Create.
- On the Basics tab, configure the parameters according to your requirements:
- From the Subscription dropdown list, select your subscription.
- In Resource group, select an existing resource group or create a new one.
- From the Region dropdown list, select the desired region.
- In the FortiGate administrative username and password fields, enter the username and password for the FortiGate administrative profile.
- In the FortiGate Name Prefix field, assign a naming prefix for your FortiGate resources.
- From the FortiGate Image SKU dropdown list, select bring your own license (BYOL) or pay as you go (PAYG).
- From the FortiGate Image Version dropdown list, select the FortiGate version to deploy.
- Click Next: Instance Type >.
- On the Instance Type tab, select an appropriately sized instance type. Click Next: Networking >.
- On the Networking tab, configure the parameters according to your requirements:
- In Virtual network, select an existing VNet or create a new one. The FortiGate-VM requires a public and private interface for internet edge protection.
- Enable or disable Accelerated Networking, which refers to SR-IOV support. This depends on the instance type that you selected.
- Click Next: Public IP >.
- On the Public IP tab, create a new public IP address or create a new one. Click Next: Advanced >.
- On the Advanced tab, configure the parameters according to your requirements:
- If you want FortiManager to manage this FortiGate, enable Connect to FortiManager and provide the FortiManager IP address and serial number in the FortiManager IP address and FortiManager Serial Number fields.
- To provide initial configuration to the FortiGate, enter the desired commands in the Custom Data field. Azure executes these commands during initial bootup.
- To provide a BYOL license file for the FortiGate, upload it using the FortiGate License field. Azure ignores the license file if you selected PAYG in step 3. Click Next: Review + create >.
- Once validation completes, confirm all values, then click Create. Azure creates the resources accordingly.
Deploying FortiGate-VM from the marketplace
Deploying FortiGate-VM from the marketplace
To deploy FortiGate-VM from the marketplace:
- In the Azure marketplace, search for and select Fortinet FortiGate Next-Generation Firewall. Ensure that the listing says Azure Application.
- From Select a plan, select the desired deployment plan. Click Create.
- On the Basics tab, configure the parameters according to your requirements:
- From the Subscription dropdown list, select your subscription.
- In Resource group, select an existing resource group or create a new one.
- From the Region dropdown list, select the desired region.
- In the FortiGate administrative username and password fields, enter the username and password for the FortiGate administrative profile.
- In the FortiGate Name Prefix field, assign a naming prefix for your FortiGate resources.
- From the FortiGate Image SKU dropdown list, select bring your own license (BYOL) or pay as you go (PAYG).
- From the FortiGate Image Version dropdown list, select the FortiGate version to deploy.
- Click Next: Instance Type >.
- On the Instance Type tab, select an appropriately sized instance type. Click Next: Networking >.
- On the Networking tab, configure the parameters according to your requirements:
- In Virtual network, select an existing VNet or create a new one. The FortiGate-VM requires a public and private interface for internet edge protection.
- Enable or disable Accelerated Networking, which refers to SR-IOV support. This depends on the instance type that you selected.
- Click Next: Public IP >.
- On the Public IP tab, create a new public IP address or create a new one. Click Next: Advanced >.
- On the Advanced tab, configure the parameters according to your requirements:
- If you want FortiManager to manage this FortiGate, enable Connect to FortiManager and provide the FortiManager IP address and serial number in the FortiManager IP address and FortiManager Serial Number fields.
- To provide initial configuration to the FortiGate, enter the desired commands in the Custom Data field. Azure executes these commands during initial bootup.
- To provide a BYOL license file for the FortiGate, upload it using the FortiGate License field. Azure ignores the license file if you selected PAYG in step 3. Click Next: Review + create >.
- Once validation completes, confirm all values, then click Create. Azure creates the resources accordingly.