Fortinet black logo

New Features

FortiSwitch per-device management improvements

Copy Link
Copy Doc ID c54fdd80-4935-11eb-b9ad-00505692583a:877212
Download PDF

FortiSwitch per-device management improvements

FortiManager includes the following enhancements for FortiSwitch Manager when per-device management is enabled:

  • NAC policy
  • ports table
  • connected device
  • transceiver information

These features are only available in per-device FortiSwitch Management mode.

In addition, the Policy & Objects pane displays firewall object services in categories.

To enable FortiSwitch per-device management:
  1. Go to System Settings > All ADOMs.
  2. Double-click the ADOM to open it for editing.
  3. Beside Central Management, clear the FortiSwitch checkbox, and click OK.

    Central management is disabled, and per-device management is enabled for FortiSwitch.

NAC Policy

NAC policies can be created or edited in FortiSwitch Profile > NAC Policies. Once the policies are created or edited, the changes can be installed to the FortiGate.

To create NAC policies:
  1. Go to FortiSwitch Manager > FortiSwitch Profiles > NAC Policy.
  2. In the tree menu, select a FortiGate.

    The NAC policies are displayed.

  3. Click Create New.

    The Create New NAC Policies pane opens.

  4. Complete the options, and click OK.

    The changes are saved to the FortiGate database.

FortiSwitch Ports table GUI enhancements
  1. Go to FortiSwitch Manager > Managed Switches.
  2. In the tree menu, select a FortiGate.

    The list of managed switches is displayed in the content pane.

  3. Double-click a switch.

    The FortiSwitch Ports pane opens.

    The Mode column is added to show the port access mode.

    The Enabled Features column is added to show if Edge Port or Spanning Tree Protocol is enabled.

    The Device Information column is added to show the connected device information.

    Hover over the listed device to see detailed information.

    The Transceiver column is added to display transceiver information. If no transceiver is connected, then the Transceiver column shows Unknown.

FortiSwitch CLI Configuration
  1. Go to FortiSwitch Manager > CLI Configurations.
  2. In the tree menu, select a FortiGate.

    The CLI configurations pane for the selected device is displayed.

    The CLI Configurations pane lets you view and edit all the settings for switch-controller.

Firewall object services

Firewall object services are now displayed in categories.

Firewall object services
  1. Go to Policy & Objects > Object Configurations > Firewall Objects > Services.

    The services are displayed in categories.

FortiSwitch per-device management improvements

FortiManager includes the following enhancements for FortiSwitch Manager when per-device management is enabled:

  • NAC policy
  • ports table
  • connected device
  • transceiver information

These features are only available in per-device FortiSwitch Management mode.

In addition, the Policy & Objects pane displays firewall object services in categories.

To enable FortiSwitch per-device management:
  1. Go to System Settings > All ADOMs.
  2. Double-click the ADOM to open it for editing.
  3. Beside Central Management, clear the FortiSwitch checkbox, and click OK.

    Central management is disabled, and per-device management is enabled for FortiSwitch.

NAC Policy

NAC policies can be created or edited in FortiSwitch Profile > NAC Policies. Once the policies are created or edited, the changes can be installed to the FortiGate.

To create NAC policies:
  1. Go to FortiSwitch Manager > FortiSwitch Profiles > NAC Policy.
  2. In the tree menu, select a FortiGate.

    The NAC policies are displayed.

  3. Click Create New.

    The Create New NAC Policies pane opens.

  4. Complete the options, and click OK.

    The changes are saved to the FortiGate database.

FortiSwitch Ports table GUI enhancements
  1. Go to FortiSwitch Manager > Managed Switches.
  2. In the tree menu, select a FortiGate.

    The list of managed switches is displayed in the content pane.

  3. Double-click a switch.

    The FortiSwitch Ports pane opens.

    The Mode column is added to show the port access mode.

    The Enabled Features column is added to show if Edge Port or Spanning Tree Protocol is enabled.

    The Device Information column is added to show the connected device information.

    Hover over the listed device to see detailed information.

    The Transceiver column is added to display transceiver information. If no transceiver is connected, then the Transceiver column shows Unknown.

FortiSwitch CLI Configuration
  1. Go to FortiSwitch Manager > CLI Configurations.
  2. In the tree menu, select a FortiGate.

    The CLI configurations pane for the selected device is displayed.

    The CLI Configurations pane lets you view and edit all the settings for switch-controller.

Firewall object services

Firewall object services are now displayed in categories.

Firewall object services
  1. Go to Policy & Objects > Object Configurations > Firewall Objects > Services.

    The services are displayed in categories.