diff options
author | Daniel Baumann <daniel.baumann@progress-linux.org> | 2024-04-18 05:52:35 +0000 |
---|---|---|
committer | Daniel Baumann <daniel.baumann@progress-linux.org> | 2024-04-18 05:52:35 +0000 |
commit | 7fec0b69a082aaeec72fee0612766aa42f6b1b4d (patch) | |
tree | efb569b86ca4da888717f5433e757145fa322e08 /ansible_collections/fortinet/fortimanager/README.md | |
parent | Releasing progress-linux version 7.7.0+dfsg-3~progress7.99u1. (diff) | |
download | ansible-7fec0b69a082aaeec72fee0612766aa42f6b1b4d.tar.xz ansible-7fec0b69a082aaeec72fee0612766aa42f6b1b4d.zip |
Merging upstream version 9.4.0+dfsg.
Signed-off-by: Daniel Baumann <daniel.baumann@progress-linux.org>
Diffstat (limited to 'ansible_collections/fortinet/fortimanager/README.md')
-rw-r--r-- | ansible_collections/fortinet/fortimanager/README.md | 86 |
1 files changed, 82 insertions, 4 deletions
diff --git a/ansible_collections/fortinet/fortimanager/README.md b/ansible_collections/fortinet/fortimanager/README.md index 22bbcfa84..e0d9d68d4 100644 --- a/ansible_collections/fortinet/fortimanager/README.md +++ b/ansible_collections/fortinet/fortimanager/README.md @@ -1,7 +1,25 @@ -# Ansible Collection - fortinet.fortimanager:2.2.0 +![Fortinet logo|](https://upload.wikimedia.org/wikipedia/commons/thumb/6/62/Fortinet_logo.svg/320px-Fortinet_logo.svg.png) + +# Ansible Collection - fortinet.fortimanager:2.4.0 + +FortiManager Ansible Collection includes the modules that are able to configure FortiManager. [Documentation](https://ansible-galaxy-fortimanager-docs.readthedocs.io/en/latest) for the collection. +## Requirements +- Ansible 2.14.0+ +- Python 3 + +## Installation +This collection is distributed via [ansible-galaxy](https://galaxy.ansible.com/fortinet/fortimanager), the installation steps are as follows: + +1. Install or upgrade to Ansible 2.14.0+ +2. Download this collection from galaxy: `ansible-galaxy collection install fortinet.fortimanager` + +## Example Usage + +See [example here](https://ansible-galaxy-fortimanager-docs.readthedocs.io/en/latest/playbook.html) to run your first playbook. + ## Modules The collection provides the following modules: @@ -48,6 +66,17 @@ The collection provides the following modules: * `fmgr_bleprofile` Configure Bluetooth Low Energy profile. * `fmgr_bonjourprofile` Configure Bonjour profiles. * `fmgr_bonjourprofile_policylist` Bonjour policy list. +* `fmgr_casb_profile` Configure CASB profile. +* `fmgr_casb_profile_saasapplication` CASB profile SaaS application. +* `fmgr_casb_profile_saasapplication_accessrule` CASB profile access rule. +* `fmgr_casb_profile_saasapplication_customcontrol` CASB profile custom control. +* `fmgr_casb_profile_saasapplication_customcontrol_option` CASB custom control option. +* `fmgr_casb_saasapplication` Configure CASB SaaS application. +* `fmgr_casb_useractivity` Configure CASB user activity. +* `fmgr_casb_useractivity_controloptions` CASB control options. +* `fmgr_casb_useractivity_controloptions_operations` CASB control option operations. +* `fmgr_casb_useractivity_match` CASB user activity match rules. +* `fmgr_casb_useractivity_match_rules` CASB user activity rules. * `fmgr_certificate_template` no description. * `fmgr_cifs_domaincontroller` Define known domain controller servers. * `fmgr_cifs_profile` Configure CIFS profile. @@ -101,6 +130,7 @@ The collection provides the following modules: * `fmgr_devprof_system_snmp_community_hosts6` Configure IPv6 SNMP managers. * `fmgr_devprof_system_snmp_sysinfo` SNMP system info configuration. * `fmgr_devprof_system_snmp_user` SNMP user configuration. +* `fmgr_diameterfilter_profile` Configure Diameter filter profiles. * `fmgr_dlp_datatype` Configure predefined data type used by DLP blocking. * `fmgr_dlp_dictionary` Configure dictionaries used by DLP blocking. * `fmgr_dlp_dictionary_entries` DLP dictionary entries. @@ -149,6 +179,7 @@ The collection provides the following modules: * `fmgr_dvmdb_script_execute` Run script. * `fmgr_dvmdb_script_objectmember` Script table. * `fmgr_dvmdb_script_scriptschedule` Script schedule table. +* `fmgr_dvmdb_upgrade` no description. * `fmgr_dvmdb_workflow_approve` no description. * `fmgr_dvmdb_workflow_discard` no description. * `fmgr_dvmdb_workflow_drop` no description. @@ -254,19 +285,25 @@ The collection provides the following modules: * `fmgr_firewall_accessproxy6` Configure IPv6 access proxy. * `fmgr_firewall_accessproxy6_apigateway` Set IPv4 API Gateway. * `fmgr_firewall_accessproxy6_apigateway6` Set IPv6 API Gateway. +* `fmgr_firewall_accessproxy6_apigateway6_quic` QUIC setting. * `fmgr_firewall_accessproxy6_apigateway6_realservers` Select the real servers that this Access Proxy will distribute traffic to. * `fmgr_firewall_accessproxy6_apigateway6_sslciphersuites` SSL/TLS cipher suites to offer to a server, ordered by priority. +* `fmgr_firewall_accessproxy6_apigateway_quic` QUIC setting. * `fmgr_firewall_accessproxy6_apigateway_realservers` Select the real servers that this Access Proxy will distribute traffic to. * `fmgr_firewall_accessproxy6_apigateway_sslciphersuites` SSL/TLS cipher suites to offer to a server, ordered by priority. * `fmgr_firewall_accessproxy_apigateway` Set API Gateway. * `fmgr_firewall_accessproxy_apigateway6` Set IPv6 API Gateway. +* `fmgr_firewall_accessproxy_apigateway6_quic` QUIC setting. * `fmgr_firewall_accessproxy_apigateway6_realservers` Select the real servers that this Access Proxy will distribute traffic to. * `fmgr_firewall_accessproxy_apigateway6_sslciphersuites` SSL/TLS cipher suites to offer to a server, ordered by priority. +* `fmgr_firewall_accessproxy_apigateway_quic` QUIC setting. * `fmgr_firewall_accessproxy_apigateway_realservers` Select the real servers that this Access Proxy will distribute traffic to. * `fmgr_firewall_accessproxy_apigateway_sslciphersuites` SSL/TLS cipher suites to offer to a server, ordered by priority. * `fmgr_firewall_accessproxy_realservers` Select the SSL real servers that this Access Proxy will distribute traffic to. * `fmgr_firewall_accessproxy_serverpubkeyauthsettings` Server SSH public key authentication settings. * `fmgr_firewall_accessproxy_serverpubkeyauthsettings_certextension` Configure certificate extension for user certificate. +* `fmgr_firewall_accessproxysshclientcert` Configure Access Proxy SSH client certificate. +* `fmgr_firewall_accessproxysshclientcert_certextension` Configure certificate extension for user certificate. * `fmgr_firewall_accessproxyvirtualhost` Configure Access Proxy virtual hosts. * `fmgr_firewall_address` Configure IPv4 addresses. * `fmgr_firewall_address6` Configure IPv6 firewall addresses. @@ -291,6 +328,11 @@ The collection provides the following modules: * `fmgr_firewall_addrgrp_tagging` Config object tagging. * `fmgr_firewall_carrierendpointbwl` Carrier end point black/white list tables. * `fmgr_firewall_carrierendpointbwl_entries` Carrier end point black/white list. +* `fmgr_firewall_casbprofile` no description. +* `fmgr_firewall_casbprofile_saasapplication` no description. +* `fmgr_firewall_casbprofile_saasapplication_accessrule` no description. +* `fmgr_firewall_casbprofile_saasapplication_customcontrol` no description. +* `fmgr_firewall_casbprofile_saasapplication_customcontrol_option` no description. * `fmgr_firewall_decryptedtrafficmirror` Configure decrypted traffic mirror. * `fmgr_firewall_explicitproxyaddress` Explicit web proxy address configuration. * `fmgr_firewall_explicitproxyaddress_headergroup` HTTP header group. @@ -386,6 +428,7 @@ The collection provides the following modules: * `fmgr_firewall_sslsshprofile_sslexempt` Servers to exempt from SSL inspection. * `fmgr_firewall_sslsshprofile_sslserver` SSL servers. * `fmgr_firewall_trafficclass` Configure names for shaping classes. +* `fmgr_firewall_vendormac` Show vendor and the MAC address they have. * `fmgr_firewall_vip` Configure virtual IP for IPv4. * `fmgr_firewall_vip46` Configure IPv4 to IPv6 virtual IPs. * `fmgr_firewall_vip46_dynamicmapping` Configure IPv4 to IPv6 virtual IPs. @@ -397,12 +440,15 @@ The collection provides the following modules: * `fmgr_firewall_vip6_dynamicmapping` Configure virtual IP for IPv6. * `fmgr_firewall_vip6_dynamicmapping_realservers` Select the real servers that this server load balancing VIP will distribute traffic to. * `fmgr_firewall_vip6_dynamicmapping_sslciphersuites` SSL/TLS cipher suites acceptable from a client, ordered by priority. +* `fmgr_firewall_vip6_quic` QUIC setting. * `fmgr_firewall_vip6_realservers` Select the real servers that this server load balancing VIP will distribute traffic to. * `fmgr_firewall_vip6_sslciphersuites` SSL/TLS cipher suites acceptable from a client, ordered by priority. * `fmgr_firewall_vip6_sslserverciphersuites` SSL/TLS cipher suites to offer to a server, ordered by priority. * `fmgr_firewall_vip_dynamicmapping` Configure virtual IP for IPv4. * `fmgr_firewall_vip_dynamicmapping_realservers` Select the real servers that this server load balancing VIP will distribute traffic to. * `fmgr_firewall_vip_dynamicmapping_sslciphersuites` SSL/TLS cipher suites acceptable from a client, ordered by priority. +* `fmgr_firewall_vip_gslbpublicips` Publicly accessible IP addresses for the FortiGSLB service. +* `fmgr_firewall_vip_quic` QUIC setting. * `fmgr_firewall_vip_realservers` Select the real servers that this server load balancing VIP will distribute traffic to. * `fmgr_firewall_vip_sslciphersuites` SSL/TLS cipher suites acceptable from a client, ordered by priority. * `fmgr_firewall_vip_sslserverciphersuites` SSL/TLS cipher suites to offer to a server, ordered by priority. @@ -425,8 +471,8 @@ The collection provides the following modules: * `fmgr_fmupdate_diskquota` Configure disk space available for use by the Upgrade Manager. * `fmgr_fmupdate_fctservices` Configure FortiGuard to provide services to FortiClient installations. * `fmgr_fmupdate_fdssetting` Configure FortiGuard settings. -* `fmgr_fmupdate_fdssetting_pushoverride` Enable/disable push updates, and override the default IP address and port used by FortiGuard to send antivirus and IPS push messages for ... -* `fmgr_fmupdate_fdssetting_pushoverridetoclient` Enable/disable push updates, and override the default IP address and port used by FortiGuard to send antivirus and IPS push messages for ... +* `fmgr_fmupdate_fdssetting_pushoverride` Enable/disable push updates, and override the default IP address and port used by FortiGuard to send antivirus and IPS push messages... +* `fmgr_fmupdate_fdssetting_pushoverridetoclient` Enable/disable push updates, and override the default IP address and port used by FortiGuard to send antivirus and IPS push messages... * `fmgr_fmupdate_fdssetting_pushoverridetoclient_announceip` Announce IP addresses for the device. * `fmgr_fmupdate_fdssetting_serveroverride` Server override configure. * `fmgr_fmupdate_fdssetting_serveroverride_servlist` Override server. @@ -585,6 +631,7 @@ The collection provides the following modules: * `fmgr_pkg_header_policy6` Configure IPv6 policies. * `fmgr_pkg_header_shapingpolicy` Configure shaping policies. * `fmgr_pkg_user_nacpolicy` Configure NAC policy matching pattern to identify matching NAC devices. +* `fmgr_pm_config_meta_reference` no description. * `fmgr_pm_config_metafields_firewall_address` no description. * `fmgr_pm_config_metafields_firewall_addrgrp` no description. * `fmgr_pm_config_metafields_firewall_centralsnatmap` no description. @@ -632,11 +679,14 @@ The collection provides the following modules: * `fmgr_router_prefixlist_rule` IPv4 prefix list rule. * `fmgr_router_routemap` Configure route maps. * `fmgr_router_routemap_rule` Rule. +* `fmgr_sctpfilter_profile` Configure SCTP filter profiles. +* `fmgr_sctpfilter_profile_ppidfilters` PPID filters list. * `fmgr_securityconsole_abort` Abort and cancel a security console task. * `fmgr_securityconsole_assign_package` Assign or unassign global policy package to ADOM packages. * `fmgr_securityconsole_cliprof_check` no description. * `fmgr_securityconsole_import_dev_objs` Import objects from device to ADOM, or from ADOM to Global. * `fmgr_securityconsole_install_device` no description. +* `fmgr_securityconsole_install_objects_v2` no description. * `fmgr_securityconsole_install_package` Copy and install a policy package to devices. * `fmgr_securityconsole_install_preview` Generate install preview for a device. * `fmgr_securityconsole_package_cancel_install` Cancel policy install and clear preview cache. @@ -687,7 +737,7 @@ The collection provides the following modules: * `fmgr_switchcontroller_macpolicy` Configure MAC policy to be applied on the managed FortiSwitch devices through NAC device. * `fmgr_switchcontroller_managedswitch` Configure FortiSwitch devices that are managed by this FortiGate. * `fmgr_switchcontroller_managedswitch_8021xsettings` Configuration method to edit FortiSwitch 802. -* `fmgr_switchcontroller_managedswitch_customcommand` Configuration method to edit FortiSwitch commands to be pushed to this FortiSwitch device upon rebooting the FortiGate switch controller ... +* `fmgr_switchcontroller_managedswitch_customcommand` Configuration method to edit FortiSwitch commands to be pushed to this FortiSwitch device upon rebooting the FortiGate switch contro... * `fmgr_switchcontroller_managedswitch_dhcpsnoopingstaticclient` Configure FortiSwitch DHCP snooping static clients. * `fmgr_switchcontroller_managedswitch_igmpsnooping` Configure FortiSwitch IGMP snooping global settings. * `fmgr_switchcontroller_managedswitch_ipsourceguard` IP source guard. @@ -696,6 +746,7 @@ The collection provides the following modules: * `fmgr_switchcontroller_managedswitch_ports` Managed-switch port list. * `fmgr_switchcontroller_managedswitch_ports_dhcpsnoopoption82override` Configure DHCP snooping option 82 override. * `fmgr_switchcontroller_managedswitch_remotelog` Configure logging by FortiSwitch device to a remote syslog server. +* `fmgr_switchcontroller_managedswitch_routeoffloadrouter` Configure route offload MCLAG IP address. * `fmgr_switchcontroller_managedswitch_snmpcommunity` Configuration method to edit Simple Network Management Protocol. * `fmgr_switchcontroller_managedswitch_snmpcommunity_hosts` Configure IPv4 SNMP managers. * `fmgr_switchcontroller_managedswitch_snmpsysinfo` Configuration method to edit Simple Network Management Protocol. @@ -707,6 +758,8 @@ The collection provides the following modules: * `fmgr_switchcontroller_managedswitch_stpsettings` Configuration method to edit Spanning Tree Protocol. * `fmgr_switchcontroller_managedswitch_switchlog` Configuration method to edit FortiSwitch logging settings. * `fmgr_switchcontroller_managedswitch_switchstpsettings` Configure spanning tree protocol. +* `fmgr_switchcontroller_managedswitch_vlan` Configure VLAN assignment priority. +* `fmgr_switchcontroller_ptp_profile` Global PTP profile. * `fmgr_switchcontroller_qos_dot1pmap` Configure FortiSwitch QoS 802. * `fmgr_switchcontroller_qos_ipdscpmap` Configure FortiSwitch QoS IP precedence/DSCP. * `fmgr_switchcontroller_qos_ipdscpmap_map` Maps between IP-DSCP value to COS queue. @@ -734,6 +787,8 @@ The collection provides the following modules: * `fmgr_system_admin_ldap_adom` Admin domain. * `fmgr_system_admin_profile` Admin profile. * `fmgr_system_admin_profile_datamaskcustomfields` Customized datamask fields. +* `fmgr_system_admin_profile_writepasswdprofiles` Profile list. +* `fmgr_system_admin_profile_writepasswduserlist` User list. * `fmgr_system_admin_radius` Configure radius. * `fmgr_system_admin_setting` Admin setting. * `fmgr_system_admin_tacacs` TACACS+ server entry configuration. @@ -765,6 +820,9 @@ The collection provides the following modules: * `fmgr_system_certificate_remote` Remote certificate. * `fmgr_system_certificate_ssh` SSH certificates and keys. * `fmgr_system_connector` Configure connector. +* `fmgr_system_csf` Add this device to a Security Fabric or set up a new Security Fabric on this device. +* `fmgr_system_csf_fabricconnector` Fabric connector configuration. +* `fmgr_system_csf_trustedlist` Pre-authorized and blocked security fabric nodes. * `fmgr_system_customlanguage` Configure custom languages. * `fmgr_system_dhcp_server` Configure DHCP servers. * `fmgr_system_dhcp_server_excluderange` Exclude one or more ranges of IP addresses from being assigned to clients. @@ -850,6 +908,13 @@ The collection provides the following modules: * `fmgr_system_npu_npqueues_ipservice` Configure a NP7 QoS IP Service. * `fmgr_system_npu_npqueues_profile` Configure a NP7 class profile. * `fmgr_system_npu_npqueues_scheduler` Configure a NP7 QoS Scheduler. +* `fmgr_system_npu_nputcam` Configure NPU TCAM policies. +* `fmgr_system_npu_nputcam_data` Data fields of TCAM. +* `fmgr_system_npu_nputcam_mask` Mask fields of TCAM. +* `fmgr_system_npu_nputcam_miract` Mirror action of TCAM. +* `fmgr_system_npu_nputcam_priact` Priority action of TCAM. +* `fmgr_system_npu_nputcam_sact` Source action of TCAM. +* `fmgr_system_npu_nputcam_tact` Target action of TCAM. * `fmgr_system_npu_portcpumap` Configure NPU interface to CPU core mapping. * `fmgr_system_npu_portnpumap` Configure port to NPU group mapping. * `fmgr_system_npu_portpathoption` Configure port using NPU or Intel-NIC. @@ -912,6 +977,7 @@ The collection provides the following modules: * `fmgr_system_sdnconnector_route` Configure GCP route. * `fmgr_system_sdnconnector_routetable` Configure Azure route table. * `fmgr_system_sdnconnector_routetable_route` Configure Azure route. +* `fmgr_system_sdnproxy` Configure SDN proxy. * `fmgr_system_smsserver` Configure SMS server for sending SMS messages to support user authentication. * `fmgr_system_sniffer` Interface sniffer. * `fmgr_system_snmp_community` SNMP community configuration. @@ -997,11 +1063,17 @@ The collection provides the following modules: * `fmgr_vap_vlanname` Table for mapping VLAN name to VLAN ID. * `fmgr_vap_vlanpool` VLAN pool. * `fmgr_vapgroup` Configure virtual Access Point. +* `fmgr_videofilter_keyword` Configure video filter keywords. +* `fmgr_videofilter_keyword_word` List of keywords. * `fmgr_videofilter_profile` Configure VideoFilter profile. +* `fmgr_videofilter_profile_filters` YouTube filter entries. * `fmgr_videofilter_profile_fortiguardcategory` Configure FortiGuard categories. * `fmgr_videofilter_profile_fortiguardcategory_filters` Configure VideoFilter FortiGuard category. * `fmgr_videofilter_youtubechannelfilter` Configure YouTube channel filter. * `fmgr_videofilter_youtubechannelfilter_entries` YouTube filter entries. +* `fmgr_videofilter_youtubekey` Configure YouTube API keys. +* `fmgr_virtualpatch_profile` Configure virtual-patch profile. +* `fmgr_virtualpatch_profile_exemption` Exempt devices or rules. * `fmgr_voip_profile` Configure VoIP profiles. * `fmgr_voip_profile_msrp` MSRP. * `fmgr_voip_profile_sccp` SCCP. @@ -1132,3 +1204,9 @@ The collection provides the following modules: * `fmgr_wtpprofile_radio3` Configuration options for radio 3. * `fmgr_wtpprofile_radio4` Configuration options for radio 4. * `fmgr_wtpprofile_splittunnelingacl` Split tunneling ACL filter list. + + + +## License + +FortiManager Ansible Collection follows [GNU General Public License v3.0](LICENSE).
\ No newline at end of file |