Fortinet black logo

Administration Guide

Adding a model FortiGate HA cluster

Adding a model FortiGate HA cluster

You can add an offline FortiGate HA cluster by using the Add Model Device method. The process of adding an offline FortiGate HA cluster is similar to adding a model device using FortiGate serial numbers. See Example of adding an offline device by serial number.

You can add the two FortiGate devices as model devices to be part of the HA cluster.

You can also add an operating FortiGate HA cluster. Adding an operating FortiGate HA cluster to the Device Manager pane is similar to adding a standalone device. Specify the IP address of the primary device. FortiManager handles a cluster as a single managed device.

Note

If you are using an HA cluster, you can promote a secondary device to a primary device. Go to Device Manager > Device & Groups > Managed FortiGate > [HA_Cluster_Name]. The System:Dashboard pane shows the cluster members under Cluster Members. Click Promote to promote a secondary device to a primary device.

Caution

FortiGate devices in an HA cluster should not use ha-mgmt-interface or standalone-mgmt-vdom to establish the FGFM connection.

To add a model FortiGate HA cluster:
  1. If using ADOMs, ensure that you are in the correct ADOM.
  2. Go to Device Manager > Device & Groups.
  3. Click Add Device. The wizard opens.
  4. Select Add Model HA Cluster.
  5. Populate the mandatory fields HA Mode, Serial Number for both the nodes, Device Model type, Group Name and Password for the HA cluster, Node 1 and Node 2 priority, Monitor Interface members, and Heartbeat Interface members, and click Next.

    Adding a FortiGate HA cluster

    Note

    The FortiGate device with a higher node priority will be considered as the primary device of the HA cluster.

    Caution

    Both the FortiGate devices to be added to the HA cluster must be on the same firmware version. If not, the devices will be enforced with the same version as selected in the Enforce Firmware Version field in the Add Device dialog.

    FortiManager adds both the FortiGate devices as model devices and creates an HA cluster. Based on device node priorities, both the devices will come online and show up in FortiManager one after the other. You can view the status of the HA cluster and information about each of the nodes of the HA cluster in Device Manager.

Viewing the status of the HA cluster

You can view the synchronization status of cluster members in Device Manager > Device & Groups, the device database, or while editing cluster member devices.

These views display information about the HA cluster, including the Synchronization Status and Role of HA members. The Synchronization Status is displayed as one of the following:

  • Synchronized: The FortiGate HA cluster member is in sync.
  • Out of Sync: The FortiGate HA cluster member is out of sync.
  • Unknown: The FortiGate HA cluster members is offline.
Editing HA cluster information

You can edit the HA cluster information. Use the Edit Device screen to modify the HA cluster information by modifying the fields IP Address, Admin User, Password, and Cluster Members. .
Editing a FortiGate HA cluster

Adding a model FortiGate HA cluster

You can add an offline FortiGate HA cluster by using the Add Model Device method. The process of adding an offline FortiGate HA cluster is similar to adding a model device using FortiGate serial numbers. See Example of adding an offline device by serial number.

You can add the two FortiGate devices as model devices to be part of the HA cluster.

You can also add an operating FortiGate HA cluster. Adding an operating FortiGate HA cluster to the Device Manager pane is similar to adding a standalone device. Specify the IP address of the primary device. FortiManager handles a cluster as a single managed device.

Note

If you are using an HA cluster, you can promote a secondary device to a primary device. Go to Device Manager > Device & Groups > Managed FortiGate > [HA_Cluster_Name]. The System:Dashboard pane shows the cluster members under Cluster Members. Click Promote to promote a secondary device to a primary device.

Caution

FortiGate devices in an HA cluster should not use ha-mgmt-interface or standalone-mgmt-vdom to establish the FGFM connection.

To add a model FortiGate HA cluster:
  1. If using ADOMs, ensure that you are in the correct ADOM.
  2. Go to Device Manager > Device & Groups.
  3. Click Add Device. The wizard opens.
  4. Select Add Model HA Cluster.
  5. Populate the mandatory fields HA Mode, Serial Number for both the nodes, Device Model type, Group Name and Password for the HA cluster, Node 1 and Node 2 priority, Monitor Interface members, and Heartbeat Interface members, and click Next.

    Adding a FortiGate HA cluster

    Note

    The FortiGate device with a higher node priority will be considered as the primary device of the HA cluster.

    Caution

    Both the FortiGate devices to be added to the HA cluster must be on the same firmware version. If not, the devices will be enforced with the same version as selected in the Enforce Firmware Version field in the Add Device dialog.

    FortiManager adds both the FortiGate devices as model devices and creates an HA cluster. Based on device node priorities, both the devices will come online and show up in FortiManager one after the other. You can view the status of the HA cluster and information about each of the nodes of the HA cluster in Device Manager.

Viewing the status of the HA cluster

You can view the synchronization status of cluster members in Device Manager > Device & Groups, the device database, or while editing cluster member devices.

These views display information about the HA cluster, including the Synchronization Status and Role of HA members. The Synchronization Status is displayed as one of the following:

  • Synchronized: The FortiGate HA cluster member is in sync.
  • Out of Sync: The FortiGate HA cluster member is out of sync.
  • Unknown: The FortiGate HA cluster members is offline.
Editing HA cluster information

You can edit the HA cluster information. Use the Edit Device screen to modify the HA cluster information by modifying the fields IP Address, Admin User, Password, and Cluster Members. .
Editing a FortiGate HA cluster