Fortinet black logo

New Features

Enhance the Fabric Connectors page 7.2.4

Enhance the Fabric Connectors page 7.2.4

The Security Fabric > Fabric Connectors page has been enhanced to show a high-level overview of the Fabric components that are enabled and how they connect to each other. The System > Fabric Management page can be used to register and authorize Security Fabric devices instead of using the Security Fabric network topology gutter, which has been removed from the Security Fabric > Fabric Connectors page.

The following changes have been made to the Security Fabric > Fabric Connectors page:

  • Improve the Security Fabric Setup configuration settings to select the Security Fabric role (standalone, root, or downstream) instead of just enabling the Security Fabric itself.
  • Merge relevant connectors into Core Network Security Connectors and Security Fabric Connectors sections.
    • The Core Network Security Connectors section includes the Security Fabric Setup, Logging & Analytics, FortiClient EMS, and LAN Edge Devices cards.
    • The Security Fabric Connectors section includes the Central Management, Sandbox, and Supported Connectors cards.
  • Add the LAN Edge Devices card that displays information about the LAN edge devices (FortiGates, FortiAPs, FortiSwitches, and FortiExtenders) including the device type, number of devices, and number of unregistered and unauthorized devices.
  • Add the Supported Connectors card that displays the icons of different Fortinet devices that support full Security Fabric integration. Clicking the card displays a list of cards with device names that link to documentation to configure these devices in the Security Fabric since they do not have separate connector settings.
  • Remove the IPAM connector.
Sample Fabric Connectors page on a root FortiGate:

Sample Fabric Connectors page on a downstream FortiGate:

To configure the root FortiGate:
  1. Go to Security Fabric > Fabric Connectors and double-click the Security Fabric Setup card.

  2. Select the Settings tab and set the Security Fabric role to Serve as Fabric Root.

  3. Configure the remaining settings as needed.

  4. Click OK.

Logging & Analytics connector

Logging & Analytics is a new card that combines the settings from the previous FortiAnalyzer Logging and Cloud Logging cards into a single connector to configure the FortiAnalyzer, FortiGate Cloud, and FortiAnalyzer Cloud settings. In this example, FortiAnalyzer and FortiGate Cloud are enabled.

To configure the Logging & Analytics connector:
  1. Go to Security Fabric > Fabric Connectors and double-click the Logging & Analytics card.

  2. Select the Settings tab, select the FortiAnalyzer tab, and set the Status to Enabled.

  3. Configure the remaining settings as needed.

  4. Select the Cloud Logging tab, and set the Type to FortiGate Cloud.

  5. Click OK.

FortiClient EMS connector

FortiClient EMS is an updated card that combines the settings from the previous individual FortiClient EMS connector cards into one card. There are separate sections within the Settings tab to configure each EMS entry.

To configure the FortiClient EMS connectors:
  1. Go to Security Fabric > Fabric Connectors and double-click the FortiClient EMS card.

  2. Select the Settings tab and set the Status to Enabled.

  3. Configure the remaining settings as needed.

  4. Click OK.

LAN Edge Devices

LAN Edge Devices is a new card that displays a summary about the LAN edge devices. This includes FortiGates, FortiAPs, FortiSwitches, and FortiExtenders. Information about the device type, number of devices, and number of unregistered and unauthorized devices is displayed. If there are devices that do not have a green checkmark in the Status column, hover over the status message to view the tooltip with required action. In this example, there are downstream FortiGates that require authorization. The tooltip includes a link to the System > Fabric Management page to authorize the FortiGates.

Central Management connector

Central Management is a new card that replaces the settings from the previous FortiManager card. In this example, on-premises FortiManager is enabled.

To configure the Central Management connector:
  1. Go to Security Fabric > Fabric Connectors and double-click the Central Management card.

  2. Set the Status to Enabled.

  3. Set the Type to On-Premises.

  4. Configure the remaining settings as needed.

  5. Click OK.

Sandbox connector

Sandbox is a new card that combines the settings from the previous FortiSandbox and Cloud Sandbox cards into a single connector to configure the sandboxing settings. In this example, FortiSandbox Cloud is enabled.

To configure the sandboxing settings:
  1. Go to Security Fabric > Fabric Connectors and double-click the Sandbox card.

  2. Set the Status to Enabled.

  3. Set the Type to FortiSandbox Cloud.

  4. Click OK.

Supported Connectors

Supported Connectors is a new card that displays the icons of different Fortinet devices that support full Security Fabric integration. Supported connectors do not have separate connector settings within FortiOS. Clicking the Supported Connectors card displays a list of cards with compatible device names.

Clicking a device name card links to documentation that explains how configure it in the Security Fabric. Once the device is configured, it can be authorized on the System > Fabric Management page in FortiOS.

Enhance the Fabric Connectors page 7.2.4

The Security Fabric > Fabric Connectors page has been enhanced to show a high-level overview of the Fabric components that are enabled and how they connect to each other. The System > Fabric Management page can be used to register and authorize Security Fabric devices instead of using the Security Fabric network topology gutter, which has been removed from the Security Fabric > Fabric Connectors page.

The following changes have been made to the Security Fabric > Fabric Connectors page:

  • Improve the Security Fabric Setup configuration settings to select the Security Fabric role (standalone, root, or downstream) instead of just enabling the Security Fabric itself.
  • Merge relevant connectors into Core Network Security Connectors and Security Fabric Connectors sections.
    • The Core Network Security Connectors section includes the Security Fabric Setup, Logging & Analytics, FortiClient EMS, and LAN Edge Devices cards.
    • The Security Fabric Connectors section includes the Central Management, Sandbox, and Supported Connectors cards.
  • Add the LAN Edge Devices card that displays information about the LAN edge devices (FortiGates, FortiAPs, FortiSwitches, and FortiExtenders) including the device type, number of devices, and number of unregistered and unauthorized devices.
  • Add the Supported Connectors card that displays the icons of different Fortinet devices that support full Security Fabric integration. Clicking the card displays a list of cards with device names that link to documentation to configure these devices in the Security Fabric since they do not have separate connector settings.
  • Remove the IPAM connector.
Sample Fabric Connectors page on a root FortiGate:

Sample Fabric Connectors page on a downstream FortiGate:

To configure the root FortiGate:
  1. Go to Security Fabric > Fabric Connectors and double-click the Security Fabric Setup card.

  2. Select the Settings tab and set the Security Fabric role to Serve as Fabric Root.

  3. Configure the remaining settings as needed.

  4. Click OK.

Logging & Analytics connector

Logging & Analytics is a new card that combines the settings from the previous FortiAnalyzer Logging and Cloud Logging cards into a single connector to configure the FortiAnalyzer, FortiGate Cloud, and FortiAnalyzer Cloud settings. In this example, FortiAnalyzer and FortiGate Cloud are enabled.

To configure the Logging & Analytics connector:
  1. Go to Security Fabric > Fabric Connectors and double-click the Logging & Analytics card.

  2. Select the Settings tab, select the FortiAnalyzer tab, and set the Status to Enabled.

  3. Configure the remaining settings as needed.

  4. Select the Cloud Logging tab, and set the Type to FortiGate Cloud.

  5. Click OK.

FortiClient EMS connector

FortiClient EMS is an updated card that combines the settings from the previous individual FortiClient EMS connector cards into one card. There are separate sections within the Settings tab to configure each EMS entry.

To configure the FortiClient EMS connectors:
  1. Go to Security Fabric > Fabric Connectors and double-click the FortiClient EMS card.

  2. Select the Settings tab and set the Status to Enabled.

  3. Configure the remaining settings as needed.

  4. Click OK.

LAN Edge Devices

LAN Edge Devices is a new card that displays a summary about the LAN edge devices. This includes FortiGates, FortiAPs, FortiSwitches, and FortiExtenders. Information about the device type, number of devices, and number of unregistered and unauthorized devices is displayed. If there are devices that do not have a green checkmark in the Status column, hover over the status message to view the tooltip with required action. In this example, there are downstream FortiGates that require authorization. The tooltip includes a link to the System > Fabric Management page to authorize the FortiGates.

Central Management connector

Central Management is a new card that replaces the settings from the previous FortiManager card. In this example, on-premises FortiManager is enabled.

To configure the Central Management connector:
  1. Go to Security Fabric > Fabric Connectors and double-click the Central Management card.

  2. Set the Status to Enabled.

  3. Set the Type to On-Premises.

  4. Configure the remaining settings as needed.

  5. Click OK.

Sandbox connector

Sandbox is a new card that combines the settings from the previous FortiSandbox and Cloud Sandbox cards into a single connector to configure the sandboxing settings. In this example, FortiSandbox Cloud is enabled.

To configure the sandboxing settings:
  1. Go to Security Fabric > Fabric Connectors and double-click the Sandbox card.

  2. Set the Status to Enabled.

  3. Set the Type to FortiSandbox Cloud.

  4. Click OK.

Supported Connectors

Supported Connectors is a new card that displays the icons of different Fortinet devices that support full Security Fabric integration. Supported connectors do not have separate connector settings within FortiOS. Clicking the Supported Connectors card displays a list of cards with compatible device names.

Clicking a device name card links to documentation that explains how configure it in the Security Fabric. Once the device is configured, it can be authorized on the System > Fabric Management page in FortiOS.