Fortinet black logo

AWS Administration Guide

Configuring the FortiManager as a licensing server for the FortiGate-VM

Configuring the FortiManager as a licensing server for the FortiGate-VM

The following are the high-level steps for this configuration:

  1. Request your entitlement file from Customer Support so that you can upload it to FortiManager.

  2. Configure FortiManager for closed network license validation.

  3. Configure FortiOS to use FortiManager for closed network license validation.

Note

For information, see the following:

To configure the FortiManager as a licensing server for the FortiGate-VM:
  1. Access the FortiManager via the IP address of the VNI assigned to the FortiManager. In this example, the VNI was created with the 10.250.0.59 IP address.

  2. License the FortiManager.

  3. Run the following commands to enable license validation:

    1. Run the following commands on the FortiManager:

      config fmupdate publicnetwork

      set status disable

      end

    2. Upload the entitlement file.

    3. Run the following commands on the FortiGate-VM running on the Snowball Edge. For set fmg-source-ip, use the FortiGate's Snowball Edge inside IP address:

      config system central-management

      set mode normal

      set type fortimanager

      set fmg 10.250.0.59

      config server-list

      edit 1

      set server-type update rating

      set server-address 10.250.0.59

      end

      set fmg-source-ip 34.223.14.234

      set include-default-servers disable

      set vdom root

      next

      end

Configuring the FortiManager as a licensing server for the FortiGate-VM

The following are the high-level steps for this configuration:

  1. Request your entitlement file from Customer Support so that you can upload it to FortiManager.

  2. Configure FortiManager for closed network license validation.

  3. Configure FortiOS to use FortiManager for closed network license validation.

Note

For information, see the following:

To configure the FortiManager as a licensing server for the FortiGate-VM:
  1. Access the FortiManager via the IP address of the VNI assigned to the FortiManager. In this example, the VNI was created with the 10.250.0.59 IP address.

  2. License the FortiManager.

  3. Run the following commands to enable license validation:

    1. Run the following commands on the FortiManager:

      config fmupdate publicnetwork

      set status disable

      end

    2. Upload the entitlement file.

    3. Run the following commands on the FortiGate-VM running on the Snowball Edge. For set fmg-source-ip, use the FortiGate's Snowball Edge inside IP address:

      config system central-management

      set mode normal

      set type fortimanager

      set fmg 10.250.0.59

      config server-list

      edit 1

      set server-type update rating

      set server-address 10.250.0.59

      end

      set fmg-source-ip 34.223.14.234

      set include-default-servers disable

      set vdom root

      next

      end