Backup fortigate Firewall VM with Azure Backup (Solution)

Occasional Contributor

The documentation is simple and it is based on screenshots (step by step)

Unfortunately, Azure Backup does not allow backup of a Fortigate VM (or most appliances in the Azure Marketplace).
Only Azure approved distributions are supported: https://learn.microsoft.com/en-us/azure/backup/backup-support-matrix

 

Example of the error obtained when you launch the backup of a fortigate VM?

 

{"code":"DeploymentFailed","message":"At least one resource deployment operation failed. Please list deployment operations for details. Please see https://aka.ms/DeployOperations for usage details.","details":[{"code":"Conflict","message":"{\r\n \"status\": \"Failed\",\r\n \"error\": {\r\n \"code\": \"ResourceDeploymentFailure\",\r\n \"message\": \"The resource operation completed with terminal provisioning state 'Failed'.\",\r\n \"details\": [\r\n {\r\n \"code\": \"UserErrorUnSupportedDistribution\",\r\n \"message\": \"Unsupported OS version for virtual machine backup.\"\r\n }\r\n ]\r\n }\r\n}"}]}

 

---> The agent cannot install correctly in the Fortigate VM

A solution ?

----> through snapshots in Azure Backup.

 

We can make a small LAB that already contains the configured Fortigate VM.

 

MohamedT_Trabelsi_9-1668779561757.png

 

 

1- Create a Recovery Service Vault

 

MohamedT_Trabelsi_0-1668776633772.png

 

 

Go to  'RSV'  --->  Backup Center 

 

MohamedT_Trabelsi_1-1668776836921.png

 

Then, Click on VAULT

MohamedT_Trabelsi_2-1668776879619.png

 

You must choose, Backup Vault 

 

MohamedT_Trabelsi_3-1668776923497.png

 

you have to choose the necessary parameters : 

MohamedT_Trabelsi_4-1668777143086.png

 

The next step is to create the Policy, 

MohamedT_Trabelsi_5-1668777441369.png

 

You muste choose the Datasource type : Azure Disks and the right Vault type also. 

 

MohamedT_Trabelsi_6-1668777538445.png

Here, you configure the policy as you need. (Choose the right parameters)

 

MohamedT_Trabelsi_7-1668777624009.png

Here, you choose the configuration according to your need.

MohamedT_Trabelsi_8-1668777784756.png

 

2- Now we need to add the necessary permissions

- Permission on the disks of the VM fortigate

 

Go to the disks of the VM fortigate and follow the screenshots : 

 

Click “Add role assignment”, then “disk backup reader” role.

 

MohamedT_Trabelsi_10-1668779683862.png

 

Give the role to the Vault. 

 

MohamedT_Trabelsi_11-1668779774177.png

the documentation is not complete due to an error, I will re-upload it

 

1 Reply

firewall slowly navigation, it's unproductive