Onboarding devices
The last step is to onboard the "real" device by linking it to the respective model device. The exact actions depend on the chosen onboarding method.
- For Zero-Touch Provisioning, it is enough to connect the FortiGate device to the network and power it on. In this case, the device will be authorized using its serial number.
- For Low-Touch Provisioning, it is required to specify FortiManager details manually by using the following CLI snippet. (Device authorization can be done either using its serial number or a pre-shared key):
config system central-management set type fortimanager set fmg <fmg-ip> end execute central-mgmt register-device <fmg-serial-number> <pre-shared-key>
Detailed overview of the FortiGate provisioning methods is outside the scope of this document. |
Once the FortiGate device contacts the FortiManager, the Auto-Link process starts, authorizing the device and linking it to its respective model device. The complete device configuration and the firewall policy package are pushed to the device.
You can follow this process under System Settings > Task Monitor:
Once the process is complete, the FortiGate device is fully deployed and operational: