Synchronizing Objects:
When the Security Fabric is enabled, various objects such as addresses, services, and schedules
are synced from the upstream FortiGate to all downstream devices by default. Set a per object
option to toggle whether the specific Fabric object will be synchronized or not.
Login to Root FortiGate Firewall, go to Policy & Objects > Addresses and create new test object.
In this case Test-Obj 1.1.1.1/32.
Login to Downstream FortiGate Firewall, go to Policy & Objects > Addresses to verify the object.
If no conflicts exist, firewall addresses and address groups can be synchronized to downstream
FortiGates firewalls.
1 | P a g e Created by Ahmad Ali E-Mail: [email protected] , WhatsApp: 00966564303717
If a conflict exists between the root and downstream FortiGates, it can be resolved with the
conflict resolution wizard.
After the conflict is resolved, the firewall addresses and address groups can be synchronized to
downstream FortiGates.
Open the notification center drop dropdown. There is a message that Firewall object is conflict
with other FortiGates in the fabric.
2 | P a g e Created by Ahmad Ali E-Mail: [email protected] , WhatsApp: 00966564303717
Click the message in the notification center drop dropdown. The Firewall Object
Synchronization pane opens.
Click Rename All Objects. The conflicted object will be renamed on the downstream FortiGate.
The conflict is resolved. Click Close to exit the Firewall Object Synchronization pane. Verify the
results on the downstream FortiGates.
3 | P a g e Created by Ahmad Ali E-Mail: [email protected] , WhatsApp: 00966564303717