QuestionQ27

Central management

An organization has acquired multiple branches in different countries and must install FortiGate devices at every branch. However, its IT staff does not have the knowledge needed to implement the initial configuration on the FortiGate devices.

Which three approaches can the organization use to successfully deploy advanced initial configurations on the FortiGate devices at its remote branches?

Choose three
  • A Apply Jinja in the FortiManager scripts for large-scale and advanced deployments.
  • B Use provisioning templates and install configuration settings at the device layer.
  • C On FortiManager, add the FortiGate devices as model devices, and use zero-touch provisioning (ZTP) or low-touch provisioning (LTP) to connect to the FortiGate devices.
  • D Use the global ADOM to deploy global object configurations to each FortiGate device.
  • E Use metadata variables to dynamically assign values according to each FortiGate device.
Explanation

FortiManager provisioning templates apply repeatable device configuration, while metadata variables provide device-specific values when configurations are installed. Model devices can be configured before the physical FortiGates are online; through ZTP or LTP, FortiManager auto-links to the real devices and installs their prepared settings and policies. The Global ADOM is intended for shared global objects rather than comprehensive per-device initial provisioning.

Learn more

Community Discussion

No comments yet. Be the first to start the discussion!