Initially deploying the FortiGate-VM
To perform initial deployment of the FortiGate-VM:
- In the Google Cloud marketplace Cloud Launcher, find FortiGate Next-Generation Firewall. Select bring-your-own-license or pay-as-you-go according to your needs.
- Click LAUNCH.
- Configure the variables as required:
See Deployment variables for descriptions of the deployment variables:
- Add more networks and network interfaces if desired:
- Under Network interfaces, click ADD NETWORK INTERFACE.
- Select the desired network and subnetwork, then click DONE.
In this example, the HA-Sync and HA-Mgmt networks were added to NIC 3 and NIC 4 respectively to illustrate the support of multiple networks. If you are not configuring high availability, you can select other networks for any NIC on the FortiGate deployment.
Google Cloud instances support a maximum of eight interfaces, based on the selected VM type.
- Click Deploy. When deployment is done, the following screen appears.
Deployment variables
Deployment name |
Enter the FortiGate-VM name to appear in the Compute Engine portal. |
Zone |
Choose the zone to deploy the FortiGate to. |
Machine type |
Choose the instance type required. |
Boot disk type |
Choose the desired boot disk type. |
Boot disk size in GB |
Leave as-is at 10 GB. |
Network |
Select the network located in the selected zone. |
Subnetwork |
Select the subnetwork where the FortiGate resides. |
Firewall |
Leave all selected as shown, or allow at least HTTPS if the strictest security is allowed in your network as the first setup. Change firewall settings as needed later on. These are the open ports allowed in Google Cloud to protect incoming access to the FortiGate instance over the Internet and are not part of FortiGate firewall features. |
External IP |
Select Ephemeral. You must access the FortiOS GUI via this public IP address. |
Enable log disk |
Enable the log disk. |
Log disk type |
Select the desired log disk type. |
Log disk size in GB |
Select the desired log disk size or leave as-is at 30 GB. |
Delete log disk when instance is deleted |
If enabled, the log disk is removed once you delete the FortiGate-VM instance. To retain the log disk after FortiGate-VM instance deletion, leave this disabled. |
Image Version |
Select the FortiGate version. The latest version is the default. |