Configure a Fortinet SD-WAN Service Graph Connector
Summarize
Summary of Configure a Fortinet SD-WAN Service Graph Connector
Configuring the Fortinet SD-WAN Service Graph Connector (SGC) in ServiceNow enables you to import physical inventory data from FortiManager into your Configuration Management Database (CMDB). FortiManager is Fortinet's centralized platform for managing security devices like firewalls and SD-WAN appliances. The connector uses FortiManager’s JSON-RPC API over HTTPS to gather device information and automate tasks such as bulk configuration, monitoring, and inventory collection, streamlining network management at scale.
Show less
To use the connector, you must create a FortiManager user with API key credentials and have a running FortiManager instance accessible via a MID Server with secure connectivity. A valid Telecommunications Service Operations Management subscription is also required.
Key Features
- Integration with FortiManager JSON API: Enables automated interaction with FortiManager for configuration and monitoring tasks.
- Data Import to CMDB: Imports physical inventory and device data into ServiceNow’s CMDB for centralized asset management.
- Support for Bulk and Filtered Discovery: Predefined data sources allow flexible inventory imports either in bulk or filtered by device IP or name.
- Connection and Credential Management: Manage multiple FortiManager connections and securely store API key credentials within ServiceNow.
- Scheduling and Job Execution: Schedule imports or run discovery jobs manually to keep CMDB data up to date.
- Connector Properties and Filters: Customize discovery behavior via filtering parameters and system properties.
- Guided Setup: Provides a step-by-step configuration wizard to simplify and accelerate integration setup.
Configuration Tasks
Within the Fortinet navigation pane in ServiceNow, you can:
- Configure MID Server connectivity and define Fortinet connections.
- Manage data sources for discovery methods.
- Set import schedules for automatic or manual execution.
- Define connection aliases and store API key credentials securely.
- Apply filters to limit discovery scope based on device IP or name.
- Adjust system properties specific to the connector’s behavior.
What ServiceNow Customers Can Expect
By configuring the Fortinet SD-WAN Service Graph Connector, customers can efficiently synchronize Fortinet device inventory with their CMDB, enabling better visibility and management of network assets. The use of FortiManager’s JSON API allows scalable and automated device management across multiple Fortinet appliances. This integration supports operational efficiency, accurate asset tracking, and streamlined network security management within ServiceNow.
Configuring the Fortinet SD-WAN Service Graph Connector (SGC) enables you to import physical inventory data from FortiManager into the Configuration Management Database (CMDB) of your ServiceNow instance.
FortiManager is the Fortinet centralized management platform that enables you to configure, monitor, and manage multiple Fortinet security devices, including firewalls and SD-WAN appliances, from a single interface.
The FortiManager JSON API is used to perform configuration and monitoring tasks on a FortiManager device. The SGC for Fortinet SD-WAN uses JSON to gather information and populate the CMDB.
By using structured JSON requests over HTTPS, you can efficiently interact with FortiManager to streamline operations and scale network management tasks across multiple Fortinet devices. These APIs enable automated tasks within the Fortinet ecosystem, such as bulk configuration changes, device management, status monitoring, and inventory collection. To access the Fortinet APIs, create a user and key credentials from FortiManager. For API reference examples, see Fortinet Service Graph Connector API Endpoints.
Required plugins
| Plugin | Plugin ID |
|---|---|
| Telecom Service Operations Core | sn_tsom_core |
| Service Graph Connector for Fortinet Telco SD-WAN | sn_tsom_fortinet_connector |
- A running FortiManager instance with access to its JSON-RPC based northbound API.
- A configured API key in the FortiPortal to enable access to JSON-RPC requests.
- A MID Server with secure connectivity to the FortiManager instance.
Configuration tasks overview
The following sections are available under the Fortinet navigation pane. Use the following table for post-guided setup or to perform manual configurations.
| Section | Description |
|---|---|
| Setup | Configure the MID Server, define Fortinet connections, and schedule imports. |
| Data Sources | Predefined data sources for bulk (SGC-Fortinet Bulk Discovery) and filtered discovery (SGC-Fortinet Filtering Discovery). |
| Import Schedules | Manage scheduling for each Fortinet connection alias. Run jobs manually or at defined intervals. |
| Connections & Credential Aliases | Define aliases for each Fortinet instance. Store connection metadata and credentials. |
| Connections | Define Fortinet instance details, such as the URL, the selected MID Server, credential reference, and connection alias reference. |
| Credentials | Create Fortinet credentials using API Key Credentials. |
| Filters | Configure filtering parameters used in discovery filtered by device IP or name. |
| Properties | Modify system behavior using connector-specific properties. |
Access the Guided Setup
Use the guided setup to simplify the configuration process. This setup provides an organized sequence of steps to help you complete integration quickly and correctly. For more information, see Set up the Service Graph Connector for Fortinet schedule.