Add Device Model
-
In the FortiNAC Administration UI, navigate to Network > Inventory.
-
Discover or add the FortiGate using an IP address owned by the Management VDOM. Include the following:
SNMP Settings: SNMP v1 or v3 credentials used for device discovery and ARP collection/L3 polling
CLI Settings: Administrator account credentials used for API access.
Instructions in the Administration Guide:
Single device: Add or modify a device
Multiple devices: Discovery
-
Once added, right click on the model and select Resync Interfaces. The ports will be listed under the Ports tab.
-
Enable L3 Polling. Right click on the model in the left panel and select Group Membership.
-
Check the box next to L3 Polling (IPàMAC) and click OK.
-
Click the Polling tab.
-
Check the box next to L2 (hosts) Polling. If configuring Device Detection traps, set the L2 (hosts) Polling value for 15 minutes.
-
Check the box next to L3 (IPàMAC) Polling.
-
Click Save.
Once the FortiGate is discovered, new VPN interfaces in the Ports view will appear. The new interface is created for the FortiGate device model with the name format:
<VDOM name>_<IPSEC_VPN or SSL_VPN>
-
-
If utilizing the FortiGate REST API key (FortiNAC versions 8.8.3 and greater), login to the FortiNAC CLI as root and enter the following:
Device -ip <FortiGate model IP> -SetAttr -name APIToken -value <API Key>