Configure a Fortinet SD-WAN Service Graph Connector
Summarize
Summary of Configure a Fortinet SD-WAN Service Graph Connector
The Fortinet SD-WAN Service Graph Connector (SGC) enables ServiceNow customers to import physical inventory data from FortiManager into their Configuration Management Database (CMDB). FortiManager is Fortinet's centralized platform for managing multiple Fortinet security devices, including firewalls and SD-WAN appliances. The connector uses FortiManager’s JSON API over HTTPS to gather device and configuration data efficiently, supporting automated tasks such as bulk configuration, device management, and monitoring.
Show less
Using this connector requires a FortiManager instance with JSON-RPC API access, an API key for authentication, and a ServiceNow MID Server with secure network connectivity to FortiManager. Additionally, a valid Telecommunications Service Operations Management subscription is necessary.
Key Features
- Data Integration: Imports detailed inventory and configuration data from FortiManager into the ServiceNow CMDB to maintain accurate network asset records.
- API-Based Communication: Uses structured JSON requests over HTTPS to interact with FortiManager, enabling scalable and automated network management.
- Comprehensive Configuration Management: Supports bulk and filtered discovery modes to tailor data imports based on IP or device name filters.
- Credential and Connection Management: Allows defining aliases and storing credentials securely for multiple FortiManager instances.
- Scheduling and Automation: Supports manual job runs and scheduled imports to keep CMDB data current.
- Guided Setup: Provides a step-by-step configuration workflow to simplify integration and reduce setup errors.
Configuration Components
- Setup: Configure the MID Server, Fortinet connections, and import schedules.
- Data Sources: Predefined sources for bulk and filtered discovery to customize data imports.
- Import Schedules: Manage timing and frequency of data imports for each Fortinet connection.
- Connections & Credential Aliases: Define and manage connection metadata and API key credentials securely.
- Filters: Set parameters to filter discovery data by device IP or name for focused inventory management.
- Properties: Adjust connector-specific system behaviors to meet operational requirements.
Practical Benefits for ServiceNow Customers
By configuring the Fortinet SD-WAN Service Graph Connector, customers can maintain an up-to-date, accurate CMDB reflecting their Fortinet network devices. This integration streamlines network management, enhances visibility into device inventory and status, and supports automation of routine tasks, reducing manual effort and the risk of errors. The guided setup ensures quick and correct configuration, enabling faster time to value.
Configuring the Fortinet SD-WAN Service Graph Connector (SGC) enables you to import physical inventory data from FortiManager into the Configuration Management Database (CMDB) of your ServiceNow instance.
FortiManager is the Fortinet centralized management platform that enables you to configure, monitor, and manage multiple Fortinet security devices, including firewalls and SD-WAN appliances, from a single interface.
The FortiManager JSON API is used to perform configuration and monitoring tasks on a FortiManager device. The SGC for Fortinet SD-WAN uses JSON to gather information and populate the CMDB.
By using structured JSON requests over HTTPS, you can efficiently interact with FortiManager to streamline operations and scale network management tasks across multiple Fortinet devices. These APIs enable automated tasks within the Fortinet ecosystem, such as bulk configuration changes, device management, status monitoring, and inventory collection. To access the Fortinet APIs, create a user and key credentials from FortiManager. For API reference examples, see Fortinet Service Graph Connector API Endpoints.
Required plugins
| Plugin | Plugin ID |
|---|---|
| Telecom Service Operations Core | sn_tsom_core |
| Service Graph Connector for Fortinet Telco SD-WAN | sn_tsom_fortinet_connector |
- A running FortiManager instance with access to its JSON-RPC based northbound API.
- A configured API key in the FortiPortal to enable access to JSON-RPC requests.
- A MID Server with secure connectivity to the FortiManager instance.
Configuration tasks overview
The following sections are available under the Fortinet navigation pane. Use the following table for post-guided setup or to perform manual configurations.
| Section | Description |
|---|---|
| Setup | Configure the MID Server, define Fortinet connections, and schedule imports. |
| Data Sources | Predefined data sources for bulk (SGC-Fortinet Bulk Discovery) and filtered discovery (SGC-Fortinet Filtering Discovery). |
| Import Schedules | Manage scheduling for each Fortinet connection alias. Run jobs manually or at defined intervals. |
| Connections & Credential Aliases | Define aliases for each Fortinet instance. Store connection metadata and credentials. |
| Connections | Define Fortinet instance details, such as the URL, the selected MID Server, credential reference, and connection alias reference. |
| Credentials | Create Fortinet credentials using API Key Credentials. |
| Filters | Configure filtering parameters used in discovery filtered by device IP or name. |
| Properties | Modify system behavior using connector-specific properties. |
Access the Guided Setup
Use the guided setup to simplify the configuration process. This setup provides an organized sequence of steps to help you complete integration quickly and correctly. For more information, see Set up the Service Graph Connector for Fortinet schedule.