Fortinet black logo

New Features

Split-Task VDOM Support

Split-Task VDOM Support

This feature adds support for Security Fabric in split-task VDOM mode.

Security Fabric topology

Security Fabric setting

FortiGate Telemetry can now be enabled in split-task VDOM mode. FortiGate telemetry settings are available on the Security Fabric > Settings page.

Telemetry settings are shown in both global and VDOM contexts, but in VDOM contexts only the Topology and FortiTelemetry enabled interfaces fields are shown.

If the upstream FortiGate has split-task VDOM mode enabled, it can allow downstream FortiGates to join the Security Fabric in the root and FG-traffic VDOMs. If the downstream FortiGate has split-task VDOM mode enabled, it can only connect to the upstream FortiGate via the downstream FortiGate interface in the root VDOM.

Physical topology

The global Physical Topology page shows the root FortiGate and all downstream FortiGates that are in the same Security Fabric.

The root or FG-traffic VDOMs' Physical Topology page shows the root FortiGate and only the downstream FortiGates that connect to the current VDOM on the root FortiGate.

Logical topology

FortiGate interfaces are grouped by VDOMs. The global Logical Topology page shows the root FortiGate and all downstream FortiGates that are in the same Security Fabric, including interfaces' connection information.

The root or FG-traffic VDOMs' Logical Topology page shows the root FortiGate and only the downstream FortiGates that connect to the current VDOM on the root FortiGate, including interfaces' connection information.

Dashboard Security Fabric widget

The global Dashboard page shows the root FortiGate and all downstream FortiGates in the Security Fabric widget.

The root or FG-traffic VDOMs' Dashboard page shows the root FortiGate and only the downstream FortiGates that connect to the current VDOM on the root FortiGate in the Security Fabric widget.

Split-Task VDOM Support

This feature adds support for Security Fabric in split-task VDOM mode.

Security Fabric topology

Security Fabric setting

FortiGate Telemetry can now be enabled in split-task VDOM mode. FortiGate telemetry settings are available on the Security Fabric > Settings page.

Telemetry settings are shown in both global and VDOM contexts, but in VDOM contexts only the Topology and FortiTelemetry enabled interfaces fields are shown.

If the upstream FortiGate has split-task VDOM mode enabled, it can allow downstream FortiGates to join the Security Fabric in the root and FG-traffic VDOMs. If the downstream FortiGate has split-task VDOM mode enabled, it can only connect to the upstream FortiGate via the downstream FortiGate interface in the root VDOM.

Physical topology

The global Physical Topology page shows the root FortiGate and all downstream FortiGates that are in the same Security Fabric.

The root or FG-traffic VDOMs' Physical Topology page shows the root FortiGate and only the downstream FortiGates that connect to the current VDOM on the root FortiGate.

Logical topology

FortiGate interfaces are grouped by VDOMs. The global Logical Topology page shows the root FortiGate and all downstream FortiGates that are in the same Security Fabric, including interfaces' connection information.

The root or FG-traffic VDOMs' Logical Topology page shows the root FortiGate and only the downstream FortiGates that connect to the current VDOM on the root FortiGate, including interfaces' connection information.

Dashboard Security Fabric widget

The global Dashboard page shows the root FortiGate and all downstream FortiGates in the Security Fabric widget.

The root or FG-traffic VDOMs' Dashboard page shows the root FortiGate and only the downstream FortiGates that connect to the current VDOM on the root FortiGate in the Security Fabric widget.