Fortinet white logo
Fortinet white logo

Administration Guide

Policy package installation targets

Policy package installation targets

The Installation Targets pane allows you to view the installation target, config status, policy package status, and schedule install status, as well as edit installation targets for policy package installs.

To view installation targets, go to Policy & Objects > Policy Packages. In the tree menu for the policy package, select Installation Targets.

The following information is displayed:

Installation Target The installation target and connection status.
Config Status See the table below for config status details.
Policy Package Status See the table below for policy package status details.

The following table identifies the different available config statuses.

Config Status

Icon

Description

Synchronized

Green check

Configurations are synchronized between FortiManager and the managed device.

Modified

Yellow triangle

Configurations are modified on FortiManager and not synchronized between FortiManager and the managed device.

Auto-update

Green check

Configurations modified on the managed device are auto synced to FortiManager.

Modified (recent auto-updated)

Yellow triangle

Configurations are modified on FortiManager and configurations modified on the managed device are auto synced to FortiManager.

Out of Sync

Red X

Configurations are modified on the managed device and not synced to FortiManager.

Conflict

Red X

When one of the following happens:

  • Install failed
  • Configurations are modified on both FortiManager and the managed device, and not auto synced to FortiManager.

Unknown

Gray question mark

When one of the following happens:

  • Connection goes down
  • No revision is generated, like added model device

The following table identifies the different available policy package statuses.

Policy Package Status

Icon

Description

Imported

Green check

Policies and objects are imported into FortiManager.

Synchronized

Green check

Policies and objects are synchronized between FortiManager and the managed device.

Modified

Yellow triangle

Policies or objects are modified on FortiManager.

Out of Sync

Red X

Policies or objects are modified on the managed device.

Unknown with policy package name

Gray question mark

Configurations of the managed device are retrieved on FortiManager after being imported/installed.

Never Installed

Yellow triangle

No policy package is imported or installed.

note icon

When importing a device with agentless FSSO configured (that is, the device polls the AD servers), the status of all policy packages that reference user fsso-polling is Modified. This is because FortiManager sends all fsso-polling objects to all devices that are using agentless FSSO.

The following options are available:

Add

Select to add installation targets (device/group) for the policy package selected. Select the add icon beside Device/Group to select devices.

Delete

Select to delete the selected entries from the installation target for the policy package selected.

Install

Select an entry in the table and, from the Install menu, select Install Wizard or Re-install Policy.

Search

Use the search field to search installation targets. Entering text in the search field will highlight matches.

Policy package installation targets

Policy package installation targets

The Installation Targets pane allows you to view the installation target, config status, policy package status, and schedule install status, as well as edit installation targets for policy package installs.

To view installation targets, go to Policy & Objects > Policy Packages. In the tree menu for the policy package, select Installation Targets.

The following information is displayed:

Installation Target The installation target and connection status.
Config Status See the table below for config status details.
Policy Package Status See the table below for policy package status details.

The following table identifies the different available config statuses.

Config Status

Icon

Description

Synchronized

Green check

Configurations are synchronized between FortiManager and the managed device.

Modified

Yellow triangle

Configurations are modified on FortiManager and not synchronized between FortiManager and the managed device.

Auto-update

Green check

Configurations modified on the managed device are auto synced to FortiManager.

Modified (recent auto-updated)

Yellow triangle

Configurations are modified on FortiManager and configurations modified on the managed device are auto synced to FortiManager.

Out of Sync

Red X

Configurations are modified on the managed device and not synced to FortiManager.

Conflict

Red X

When one of the following happens:

  • Install failed
  • Configurations are modified on both FortiManager and the managed device, and not auto synced to FortiManager.

Unknown

Gray question mark

When one of the following happens:

  • Connection goes down
  • No revision is generated, like added model device

The following table identifies the different available policy package statuses.

Policy Package Status

Icon

Description

Imported

Green check

Policies and objects are imported into FortiManager.

Synchronized

Green check

Policies and objects are synchronized between FortiManager and the managed device.

Modified

Yellow triangle

Policies or objects are modified on FortiManager.

Out of Sync

Red X

Policies or objects are modified on the managed device.

Unknown with policy package name

Gray question mark

Configurations of the managed device are retrieved on FortiManager after being imported/installed.

Never Installed

Yellow triangle

No policy package is imported or installed.

note icon

When importing a device with agentless FSSO configured (that is, the device polls the AD servers), the status of all policy packages that reference user fsso-polling is Modified. This is because FortiManager sends all fsso-polling objects to all devices that are using agentless FSSO.

The following options are available:

Add

Select to add installation targets (device/group) for the policy package selected. Select the add icon beside Device/Group to select devices.

Delete

Select to delete the selected entries from the installation target for the policy package selected.

Install

Select an entry in the table and, from the Install menu, select Install Wizard or Re-install Policy.

Search

Use the search field to search installation targets. Entering text in the search field will highlight matches.