Fortinet black logo
4.2.0

Prepare and Install the licenses on FortiManager

Prepare and Install the licenses on FortiManager

To prepare and install the licenses:
  1. On FortiManager, install the FortiManager license file. FortiManager will reboot.
  2. After rebooting, log in to FortiManager again.
  3. Go to System Settings > Network. The Network pane opens.
  4. Select port1 and click Edit in the toolbar. The Edit Network Interface pane opens.
  5. Enable HTTPS, PING, SSH, Web filtering and its corresponding IP addresses.

  6. Go to FortiGuard > Settings. Configure the following settings and click Apply.
    Enable Communication with FortiGuard ServerSet to OFF
    Enable Antivirus and IPS Service

    Set to ON

    Select the FortiSandbox versions that you need FortiManager to support as FDS for AV and IPS.

    Enable Web Filter ServiceEnable if required.
    Enable Email Filter ServiceEnable if required.

  7. On the FortiGuarrd > Settings page, go to FortiGate/FortiMail > Service License. Upload the entitlement file you received from the support team and click Apply. For more information, see Uploading account entitlement files in the FortiManager Administration Guide.

  8. Open FortiManager's CLI console, and execute the following command:

    config system admin setting

    set unreg_dev_opt add_allow_service

    end

  9. Reboot FortiManager.
  10. After FortiManager reboots, verify the serial number(s) for your devices are available in the FortiManager DB.

    #diagnose fmupdate dbcontract [SERIAL-NO] # SERIAL-NO is optional

    The following is an example of the output.

    FSAVM00000000000000 [SERIAL-NO]
    	Contract: 10
    		AVDB-1-06-20210113
    		COMP-1-20-20210113
    		ENHN-1-20-20210113
    		FQDB-1-20-20210113
    		FMWR-1-06-20210113
    		FURL-1-06-20210113
    		ISSS-1-06-20210113
    		NIDS-1-06-20210113
    		SBEN-1-06-20210113
    		SPRT-1-20-20210113

Prepare and Install the licenses on FortiManager

To prepare and install the licenses:
  1. On FortiManager, install the FortiManager license file. FortiManager will reboot.
  2. After rebooting, log in to FortiManager again.
  3. Go to System Settings > Network. The Network pane opens.
  4. Select port1 and click Edit in the toolbar. The Edit Network Interface pane opens.
  5. Enable HTTPS, PING, SSH, Web filtering and its corresponding IP addresses.

  6. Go to FortiGuard > Settings. Configure the following settings and click Apply.
    Enable Communication with FortiGuard ServerSet to OFF
    Enable Antivirus and IPS Service

    Set to ON

    Select the FortiSandbox versions that you need FortiManager to support as FDS for AV and IPS.

    Enable Web Filter ServiceEnable if required.
    Enable Email Filter ServiceEnable if required.

  7. On the FortiGuarrd > Settings page, go to FortiGate/FortiMail > Service License. Upload the entitlement file you received from the support team and click Apply. For more information, see Uploading account entitlement files in the FortiManager Administration Guide.

  8. Open FortiManager's CLI console, and execute the following command:

    config system admin setting

    set unreg_dev_opt add_allow_service

    end

  9. Reboot FortiManager.
  10. After FortiManager reboots, verify the serial number(s) for your devices are available in the FortiManager DB.

    #diagnose fmupdate dbcontract [SERIAL-NO] # SERIAL-NO is optional

    The following is an example of the output.

    FSAVM00000000000000 [SERIAL-NO]
    	Contract: 10
    		AVDB-1-06-20210113
    		COMP-1-20-20210113
    		ENHN-1-20-20210113
    		FQDB-1-20-20210113
    		FMWR-1-06-20210113
    		FURL-1-06-20210113
    		ISSS-1-06-20210113
    		NIDS-1-06-20210113
    		SBEN-1-06-20210113
    		SPRT-1-20-20210113