Fortinet Document Library

Version:

Version:

Version:

Version:

Version:

Version:

Version:

Version:

Version:


Table of Contents

Administration Guide

Master's Role and Slave's Role

On the Master node, all functionalities are turned on. This includes accepting files from different input sources, sending alert emails, and generating malware packages. Scan profiles should also be configured on the Master node and will be synchronized to other nodes. The following information is synchronized from the Master node to all other nodes so they should not be configured on Slave nodes:

  • Job cleanup schedule
  • FortiGuard page settings
  • Malware package generation settings
  • VM access to the Internet settings.

    Only the Allow Virtual Machines to access external network through outgoing Port3 status is synchronized. The network settings for Port3 (IP address) and next hop gateway , etc., are not synchronized. They have to be set on each unit separately.

  • Black and White lists
  • Yara rules
  • Scan profile settings

The following information is synchronized from the Master node to Primary Slave nodes only, and is only applied when the Primary Slave node becomes a Master during a failover:

  • Users
  • Archive server settings
  • Sniffer settings
  • Mail server settings
  • Network settings (including DNS, proxy, and routing tables)
  • Scheduled task settings (network share scans, and scheduled report generation)
  • Log server settings
  • Uploaded certificates
  • Devices
  • SNMP settings
  • Widget settings
  • Adapter settings
  • Global network settings
  • Others (login disclaimers)

Master's Role and Slave's Role

On the Master node, all functionalities are turned on. This includes accepting files from different input sources, sending alert emails, and generating malware packages. Scan profiles should also be configured on the Master node and will be synchronized to other nodes. The following information is synchronized from the Master node to all other nodes so they should not be configured on Slave nodes:

  • Job cleanup schedule
  • FortiGuard page settings
  • Malware package generation settings
  • VM access to the Internet settings.

    Only the Allow Virtual Machines to access external network through outgoing Port3 status is synchronized. The network settings for Port3 (IP address) and next hop gateway , etc., are not synchronized. They have to be set on each unit separately.

  • Black and White lists
  • Yara rules
  • Scan profile settings

The following information is synchronized from the Master node to Primary Slave nodes only, and is only applied when the Primary Slave node becomes a Master during a failover:

  • Users
  • Archive server settings
  • Sniffer settings
  • Mail server settings
  • Network settings (including DNS, proxy, and routing tables)
  • Scheduled task settings (network share scans, and scheduled report generation)
  • Log server settings
  • Uploaded certificates
  • Devices
  • SNMP settings
  • Widget settings
  • Adapter settings
  • Global network settings
  • Others (login disclaimers)