FortiManager-HA support automatic VRRP failover in Azure 7.4.2
FortiManager-HA support automatic VRRP failover in Azure.
To configure automatic VRRP failover in Azure:
-
Create FortiManager-VM in one ResourceGroup in same or different subnets.
-
Allocate a secondary private IP (static) to be used as VIP of FortiManager-HA. Secondary IP will be assigned to the instance when its mode transitioned to master by fmgutil to call Azure cloud APIs within the instance itself
-
Or create a static public IP in the ResourceGroup to be used as VIP.
-
Enable Managed Identity for the VM and assign role with read-write access to the resource group. This is for VM to re-assign VIP.
-
Configure FortiManager-HA, use private IP as peer IP, and the static public IP as VIP.