Fortinet black logo

Administration Guide

System templates

System templates

The Device Manager > Provisioning Templates > System Templates pane allows you to create and manage device profiles. A system template is a subset of a model device configuration. Each device or device group can be linked with a system template. When linked, the selected settings come from the template and not from the Device Manager database.

By default, there is one generic default profile defined. System templates are managed in a similar manner to policy packages. You can use the context menus to create new device profiles. You can configure the settings in each section or import settings from a specific device.

Fields that support metadata variables are identified with the following magnifying glass icon . See ADOM-level metadata variables..

Go to Device Manager > Provisioning Templates > System Templates to configure system templates.

Some settings may not be available in all ADOM versions.

To import settings from a device, click More > Import and select the device.

Enable a section to expose the settings. The following sections and settings are available:

Widget

Description

DNS

DNS includes the following settings:

  • Primary DNS Server

  • Secondary DNS Server

  • Local Domain Name

  • Interface Selected Method

  • Advanced Options

NTP Server

NTP Server includes the following settings:

  • Synchronize with NTP Server

  • Sync Interval

  • Interface

  • Server mode

  • Source IP

  • Advanced Options

You can select to use the FortiGuard server or specify one or more other servers.

Alert Email

Alert Email includes the following settings:

  • SMTP Server

  • Authentication

Admin Settings

Admin Settings includes the following settings:

  • HTTP Port

  • HTTPS Port

  • SSH Port

  • SSH v1 compatibility

  • Idle Timeout

  • Enable SCP

  • Host Name

  • Time Zone

  • Geographic Coordinate

SNMP

SNMP v1/v2 and SNMP v3 settings. In the toolbar, you can select to create, edit, or delete the record.

To create a new SNMP, click Create New and specify the community name, hosts, queries, traps, and SNMP events.

Replacement Messages

You can customize replacement messages. Click Import to select a device and the objects to import.

FortiGuard

Enable Enable Auto Firmware Upgrade to enable FortiGate automatic firmware patch upgrades. Optionally specify the upgrade schedule.

Enable Enable FortiGuard Security Updates to retrieve updates from FortiGuard servers or from this FortiManager. You can define multiple servers and specify Update, Rating, or Updates and Rating. You can also select Include Worldwide FortiGuard Servers.

Log Settings

Select Send Logs to FortiAnalyzer Cloud, Send Logs to FortiAnalyzer/FortiManager, and/or Send Logs to Syslog.

If selected, enter the requisite information for the option.

Interface

Zone and interface settings. In the toolbar, you can select to create, edit, or delete the record.

By default the Interface widget is hidden. From the Toggle Widgets menu, select Interface to display the Interface widget.

To create a new interface, click Create New and specify an action and identify what models will receive the action.

You can create, edit, or delete templates. Select System Templates in the tree to display the Create New, Edit, Delete, and Import options in the content pane. You can also select the devices or device groups to be associated with the template by selecting Assign to Devices/Groups.

System templates

The Device Manager > Provisioning Templates > System Templates pane allows you to create and manage device profiles. A system template is a subset of a model device configuration. Each device or device group can be linked with a system template. When linked, the selected settings come from the template and not from the Device Manager database.

By default, there is one generic default profile defined. System templates are managed in a similar manner to policy packages. You can use the context menus to create new device profiles. You can configure the settings in each section or import settings from a specific device.

Fields that support metadata variables are identified with the following magnifying glass icon . See ADOM-level metadata variables..

Go to Device Manager > Provisioning Templates > System Templates to configure system templates.

Some settings may not be available in all ADOM versions.

To import settings from a device, click More > Import and select the device.

Enable a section to expose the settings. The following sections and settings are available:

Widget

Description

DNS

DNS includes the following settings:

  • Primary DNS Server

  • Secondary DNS Server

  • Local Domain Name

  • Interface Selected Method

  • Advanced Options

NTP Server

NTP Server includes the following settings:

  • Synchronize with NTP Server

  • Sync Interval

  • Interface

  • Server mode

  • Source IP

  • Advanced Options

You can select to use the FortiGuard server or specify one or more other servers.

Alert Email

Alert Email includes the following settings:

  • SMTP Server

  • Authentication

Admin Settings

Admin Settings includes the following settings:

  • HTTP Port

  • HTTPS Port

  • SSH Port

  • SSH v1 compatibility

  • Idle Timeout

  • Enable SCP

  • Host Name

  • Time Zone

  • Geographic Coordinate

SNMP

SNMP v1/v2 and SNMP v3 settings. In the toolbar, you can select to create, edit, or delete the record.

To create a new SNMP, click Create New and specify the community name, hosts, queries, traps, and SNMP events.

Replacement Messages

You can customize replacement messages. Click Import to select a device and the objects to import.

FortiGuard

Enable Enable Auto Firmware Upgrade to enable FortiGate automatic firmware patch upgrades. Optionally specify the upgrade schedule.

Enable Enable FortiGuard Security Updates to retrieve updates from FortiGuard servers or from this FortiManager. You can define multiple servers and specify Update, Rating, or Updates and Rating. You can also select Include Worldwide FortiGuard Servers.

Log Settings

Select Send Logs to FortiAnalyzer Cloud, Send Logs to FortiAnalyzer/FortiManager, and/or Send Logs to Syslog.

If selected, enter the requisite information for the option.

Interface

Zone and interface settings. In the toolbar, you can select to create, edit, or delete the record.

By default the Interface widget is hidden. From the Toggle Widgets menu, select Interface to display the Interface widget.

To create a new interface, click Create New and specify an action and identify what models will receive the action.

You can create, edit, or delete templates. Select System Templates in the tree to display the Create New, Edit, Delete, and Import options in the content pane. You can also select the devices or device groups to be associated with the template by selecting Assign to Devices/Groups.