You can use FortiManager to create a Fabric connector for AliCloud, and then install the Fabric connector to FortiOS.
FortiManager Fabric connectors define the connector type and include information for FortiOS to communicate with and authenticate with the products. In some cases the FortiGate must communicate with products through the Fabric connector, and in other cases the FortiGate communicates directly with the products.
FortiOS works with the Fabric connector to communicate with AliCloud.
For information about Fabric connector, see the Fortinet Document Library.
You cannot import a policy package for the Fabric connector from FortiOS to FortiManager.
Following is an overview of creating Fabric connectors for AliCloud using FortiManager:
- Create a Fabric connector object for AliCloud. See Creating Fabric connector objects for AliCloud .
- Import address names from Azure to the Fabric connector. See Importing address names to a Fabric connector. FortiManager imports the address names and converts them to dynamic firewall address objects. The objects do not include IP addresses and display in Firewall Objects > Addresses.
- In the policy package in which you will be creating the new policy, create an IPv4 policy and include the firewall address objects for AliCloud. See Creating an IP address policy.
- Install the policy package to FortiGate.
See Installing policy packages.
FortiGate communicates with AliCloud to dynamically populate the firewall address objects with IP addresses.