Fortinet black logo

Administration Guide

Configuring dynamic firewall addresses for fabric connectors

Configuring dynamic firewall addresses for fabric connectors

You cannot import address names to fabric connectors created for Microsoft Azure and Nuage Virtualized Services Platform. Instead you must create dynamic firewall objects that can be dynamically populated when FortiGate communicates with Microsoft Azure and Nuage Virtualized Services Platform.

To configure dynamic firewall addresses for AWS fabric connectors:
  1. Go to Policy & Objects > Object Configurations.
  2. In the tree menu, go to Firewall Objects > Addresses.
  3. In the content pane, click Create New and select Address.
  4. Complete the following options for AWS fabric connectors:
    Address Name Type a name for the firewall address object.
    Type Select Dynamic SDN Address.
    SDN

    Select the type of fabric connector for which you are creating the object.

    Filter

    Type the name of the filter for the AWS instance.

  5. Set the remaining options as desired, and click OK
To configure dynamic firewall addresses for Nuage fabric connectors:
  1. Go to Policy & Objects > Object Configurations.
  2. In the tree menu, go to Firewall Objects > Addresses.
  3. In the content pane, click Create New and select Address.
  4. Complete the following options for Nuage fabric connectors:
    Address Name Type a name for the firewall address object.
    Type Select Dynamic SDN Address.
    SDN

    Select the type of fabric connector for which you are creating the object.

    Organization

    Type the name of the organization for the Nuage Virtualized Services Platform.

    Subnet Name

    Type the name of the subnet for the Nuage Virtualized Services Platform.

    Policy Group

    Type the name of the policy group for the Nuage Virtualized Services Platform.

  5. Set the remaining options as desired, and click OK

Configuring dynamic firewall addresses for fabric connectors

You cannot import address names to fabric connectors created for Microsoft Azure and Nuage Virtualized Services Platform. Instead you must create dynamic firewall objects that can be dynamically populated when FortiGate communicates with Microsoft Azure and Nuage Virtualized Services Platform.

To configure dynamic firewall addresses for AWS fabric connectors:
  1. Go to Policy & Objects > Object Configurations.
  2. In the tree menu, go to Firewall Objects > Addresses.
  3. In the content pane, click Create New and select Address.
  4. Complete the following options for AWS fabric connectors:
    Address Name Type a name for the firewall address object.
    Type Select Dynamic SDN Address.
    SDN

    Select the type of fabric connector for which you are creating the object.

    Filter

    Type the name of the filter for the AWS instance.

  5. Set the remaining options as desired, and click OK
To configure dynamic firewall addresses for Nuage fabric connectors:
  1. Go to Policy & Objects > Object Configurations.
  2. In the tree menu, go to Firewall Objects > Addresses.
  3. In the content pane, click Create New and select Address.
  4. Complete the following options for Nuage fabric connectors:
    Address Name Type a name for the firewall address object.
    Type Select Dynamic SDN Address.
    SDN

    Select the type of fabric connector for which you are creating the object.

    Organization

    Type the name of the organization for the Nuage Virtualized Services Platform.

    Subnet Name

    Type the name of the subnet for the Nuage Virtualized Services Platform.

    Policy Group

    Type the name of the policy group for the Nuage Virtualized Services Platform.

  5. Set the remaining options as desired, and click OK