Hello People ,
We have a customer having different Branch offices connected via IPSEC and there is no centrailised DC .
They have a fortianalyser and all the branch offices are sending logs to FAZ via IPSEC vpns
Customer is looking for a Firewall Management solution which of course should be FortiManager in this case .
what should be the best approach :
Fortimanager in cloud ( SaaS) and let all the firewalls connect to it over VPN ?
Placing Fortimanager on a particular office ( lets say head office) brings management connectivity via IPSEC and if Tunnel is down for some reason .even local FW changes will be impacted . What do you say ?
Can Fortimanager in cloud co-exist with FAZ on prem ?
Anyone pls provide Best FMG guidelines
------------------------------
skywalker
------------------------------