Configuring FortiManager HA
To configure FortiManager HA:
- On FortiManager, configure high availability at System Settings > HA.
See the FortiManager Administration Guide for more information on configuring HA.
When configuring HA, use the primary private IP as the Peer IP and the external static IP as the Cluster Virtual IP.
-
Import the Azure Root CA to FortiManager. In order for the fmgutil to call the Azure API successfully, you must import the Azure Cloud CA certificate to each FortiManager instance. For more information on the CA used by Microsoft Entra ID (formerly Azure AD), see https://learn.microsoft.com/en-us/azure/security/fundamentals/azure-CA-details.
-
Go to System Settings > Certificates > CA Certificates.
-
Click Import.
-
Browse to the file location and select it, or drag-and-drop it into the pop-up window.
-
Click OK.
-