Fortinet black logo

Administration Guide

Add role mappings

7.4.0
Copy Link
Copy Doc ID 5c5c1a78-d02f-11ee-8c42-fa163e15d75b:775389
Download PDF

Add role mappings

Network Device Role mappings tie roles to connection locations and network access options, such as VLANs.

Settings

Field

Definition

Role

If the checkbox is enabled, you can select an existing Role from the drop-down list for this mapping.

If the checkbox is not enabled, this mapping is not tied to a specific role; however the other criteria in the mapping, such as Location must match the connecting device or the mapping will not be used.

If you configure a mapping with no Role, you may want to make sure its Rank places it towards the bottom of the list of rankings. Device connections are compared to the mappings from the lowest (1) to the highest. The first match is used.

Where (Location)

One or more groups of devices or ports where the device must be connected in order for this mapping to apply. If this field has been left blank, then location will not be used as a selection requirement for this mapping.

Note: FortiSwitch in Link Mode: Port groups must be used. Device groups will not match.

Logical Network

The logical network that will be assigned to the network devices that receive this role.

Note

User specified note field. This field may contain notes regarding the conversion of roles from a previous version of FortiNAC.

  1. Select Policy & Objects > Network Device Roles.
  2. Click Create New.
  3. Click the Role check box to enable the role drop-down. If this is not enabled, this mapping can apply to any device that matches the other criteria in the mapping, such as Location. The word Any displays in the Role column on the network device roles view if this box is unchecked.
  4. Select a role from the drop-down list.
  5. Under Where (Location), choose one or more device or port groups by clicking on the names in the All Groups column and clicking the right arrow to move them to the Selected Groups column. Click OK to continue.
  6. Add a Logical Network.
  7. Click in the Note field to add any user defined information needed for this mapping.
  8. Click OK to save the mapping.

Add role mappings

Network Device Role mappings tie roles to connection locations and network access options, such as VLANs.

Settings

Field

Definition

Role

If the checkbox is enabled, you can select an existing Role from the drop-down list for this mapping.

If the checkbox is not enabled, this mapping is not tied to a specific role; however the other criteria in the mapping, such as Location must match the connecting device or the mapping will not be used.

If you configure a mapping with no Role, you may want to make sure its Rank places it towards the bottom of the list of rankings. Device connections are compared to the mappings from the lowest (1) to the highest. The first match is used.

Where (Location)

One or more groups of devices or ports where the device must be connected in order for this mapping to apply. If this field has been left blank, then location will not be used as a selection requirement for this mapping.

Note: FortiSwitch in Link Mode: Port groups must be used. Device groups will not match.

Logical Network

The logical network that will be assigned to the network devices that receive this role.

Note

User specified note field. This field may contain notes regarding the conversion of roles from a previous version of FortiNAC.

  1. Select Policy & Objects > Network Device Roles.
  2. Click Create New.
  3. Click the Role check box to enable the role drop-down. If this is not enabled, this mapping can apply to any device that matches the other criteria in the mapping, such as Location. The word Any displays in the Role column on the network device roles view if this box is unchecked.
  4. Select a role from the drop-down list.
  5. Under Where (Location), choose one or more device or port groups by clicking on the names in the All Groups column and clicking the right arrow to move them to the Selected Groups column. Click OK to continue.
  6. Add a Logical Network.
  7. Click in the Note field to add any user defined information needed for this mapping.
  8. Click OK to save the mapping.