Fortinet black logo

Creating a Fabric connector for Kubernetes

Creating a Fabric connector for Kubernetes

With FortiManager, you can create a Fabric connector for Kubernetes and import address names from Kubernetes to automatically create dynamic objects that you can use in policies.

When you install the policies to one or more FortiGates, FortiOS uses the information and the Fabric connector to communicate with Kubernetes and dynamically populate the objects with IP addresses.

When you create a Fabric connector for Kubernetes, you specify how FortiOS can communicate with Kubernetes through the Fabric connector. As a result, you are configuring communication and authentication information for the Fabric connector.

If you have enabled ADOMs, you can create multiple Fabric connectors per ADOM. Each Fabric connector requires a unique IP address.

This configuration requires the following:

  • FortiManager version 6.0 ADOM or later
  • FortiManager is managing the FortiGate.
  • You have configured the managed FortiGate to work with Kubernetes.
To create a Fabric connector object for Kubernetes:
  1. Go to Fabric View > Fabric Connectors.
  2. Click Create New. The Create New Fabric Connector wizard displays.
  3. Under SDN, select Kubernetes, and click Next.
  4. Configure the following options, then click OK:

    Name

    Enter the Fabric connector name.

    IP

    Enter the Fabric connector IP address.

    Port

    Identify the port used for the Fabric connector:

    • Click Use Default to use the default port.
    • Click Specify and type the port number.

    Secret Token

    Specify a secret token for the Fabric connector.

    Update Interval(s)

    Specify the update interval for the Fabric connector:

    • Click Use Default to use the default port.
    • Click Specify and type the port number.

    Status

    Toggle On to enable the Fabric connector. Toggle OFF to disable the Fabric connector.

Creating a Fabric connector for Kubernetes

With FortiManager, you can create a Fabric connector for Kubernetes and import address names from Kubernetes to automatically create dynamic objects that you can use in policies.

When you install the policies to one or more FortiGates, FortiOS uses the information and the Fabric connector to communicate with Kubernetes and dynamically populate the objects with IP addresses.

When you create a Fabric connector for Kubernetes, you specify how FortiOS can communicate with Kubernetes through the Fabric connector. As a result, you are configuring communication and authentication information for the Fabric connector.

If you have enabled ADOMs, you can create multiple Fabric connectors per ADOM. Each Fabric connector requires a unique IP address.

This configuration requires the following:

  • FortiManager version 6.0 ADOM or later
  • FortiManager is managing the FortiGate.
  • You have configured the managed FortiGate to work with Kubernetes.
To create a Fabric connector object for Kubernetes:
  1. Go to Fabric View > Fabric Connectors.
  2. Click Create New. The Create New Fabric Connector wizard displays.
  3. Under SDN, select Kubernetes, and click Next.
  4. Configure the following options, then click OK:

    Name

    Enter the Fabric connector name.

    IP

    Enter the Fabric connector IP address.

    Port

    Identify the port used for the Fabric connector:

    • Click Use Default to use the default port.
    • Click Specify and type the port number.

    Secret Token

    Specify a secret token for the Fabric connector.

    Update Interval(s)

    Specify the update interval for the Fabric connector:

    • Click Use Default to use the default port.
    • Click Specify and type the port number.

    Status

    Toggle On to enable the Fabric connector. Toggle OFF to disable the Fabric connector.