Fortinet black logo

Security Fabric integration with OCI

Copy Link
Copy Doc ID b4a24f08-6eef-11ea-9384-00505692583a:943416
Download PDF

Security Fabric integration with OCI

You can use FortiManager to create OCI Fabric connectors, then install the Fabric connectors to FortiOS.

FortiManager Fabric connectors define the connector type and include information for FortiOS to communicate with and authenticate with the products. In some cases the FortiGate must communicate with products through the Fabric connector, and in other cases the FortiGate communicates directly with the products.

FortiGate works with the Fabric connector to communicate with OCI.

For information about Fabric connector, see the Fortinet Document Library.

note icon

You cannot import a policy package for Fabric connector from FortiOS to FortiManager.

Following is an overview of creating OCI Fabric connectors using FortiManager:

  1. Create an OCI Fabric connector. See Creating Fabric Connector objects for OCI .
  2. Import address names from OCI to the Fabric connector. See Importing address names to a Fabric connector. FortiManager imports the address names and converts them to dynamic firewall address objects. The objects do not include IP addresses and display in Firewall Objects > Addresses.
  3. In the policy package where you will create the new policy, create an IPv4 policy and include the firewall address objects for OCI. See Creating IP policies.
  4. Install the policy package to FortiGate. See Installing policy packages.

    FortiGate communicates with OCI to dynamically populate the firewall address objects with IP addresses.

Security Fabric integration with OCI

You can use FortiManager to create OCI Fabric connectors, then install the Fabric connectors to FortiOS.

FortiManager Fabric connectors define the connector type and include information for FortiOS to communicate with and authenticate with the products. In some cases the FortiGate must communicate with products through the Fabric connector, and in other cases the FortiGate communicates directly with the products.

FortiGate works with the Fabric connector to communicate with OCI.

For information about Fabric connector, see the Fortinet Document Library.

note icon

You cannot import a policy package for Fabric connector from FortiOS to FortiManager.

Following is an overview of creating OCI Fabric connectors using FortiManager:

  1. Create an OCI Fabric connector. See Creating Fabric Connector objects for OCI .
  2. Import address names from OCI to the Fabric connector. See Importing address names to a Fabric connector. FortiManager imports the address names and converts them to dynamic firewall address objects. The objects do not include IP addresses and display in Firewall Objects > Addresses.
  3. In the policy package where you will create the new policy, create an IPv4 policy and include the firewall address objects for OCI. See Creating IP policies.
  4. Install the policy package to FortiGate. See Installing policy packages.

    FortiGate communicates with OCI to dynamically populate the firewall address objects with IP addresses.