---
title: "Extend Your Fortinet FortiManager to Kubernetes"
source: "https://www.tigera.io/blog/extend-your-fortinet-fortimanager-to-kubernetes/"
description: "Fortinet Dynamic Cloud Security solutions integrated with Tigera Calico Enterprise bring visibility and control across cloud infrastructures."
---

[Technical Blog](https://www.tigera.io/category/technical-blog/)

# Extend Your Fortinet FortiManager to Kubernetes

By [John Armstrong](https://www.tigera.io/blog/author/john-armstrong/) on Oct 07, 2020 • 3 min read

Companies are leveraging the power of Kubernetes to accelerate the delivery of resilient and scalable applications to meet the pace of business. These applications are highly dynamic, making it operationally challenging to securely connect to databases or other resources protected behind firewalls.

#### **Visibility into Kubernetes Infrastructure is Essential**

Lack of visibility has compliance implications. Like any on-premises or cloud-based networked services, Kubernetes production containers must address both organizational and regulatory security requirements. If compliance teams can’t trace the history of incidents across the entire infrastructure, they can’t adequately satisfy their audit requirements. To enable the successful transition of Kubernetes pilot projects to enterprise-wide application rollouts, companies must be able to extend their existing enterprise security architecture into the Kubernetes environment.

In response, [Fortinet](http://www.fortinet.com/solutions/enterprise-midsize-business/cloud-security) and [Tigera](https://www.tigera.io/) jointly developed a suite of [Calico Enterprise](https://www.tigera.io/tigera-products/calico-commercial-editions/) solutions for the [Fortinet Security Fabric](http://www.fortinet.com/solutions/enterprise-midsize-business/enterprise-security.html) that deliver both north-south and east-west visibility and help ensure consistent control, security, and compliance. Key among these integrations is the FortiManager Calico Kubernetes Controller, which enables Kubernetes cluster management from the [FortiManager](http://www.fortinet.com/products/management/fortimanager) centralized management platform in the [Fortinet Fabric Management Center](http://www.fortinet.com/solutions/enterprise-midsize-business/fabric-management-center).

#### **View and Control the Kubernetes Environment with FortiManager**

The FortiManager Calico Kubernetes Controller translates FortiManager policies into granular Kubernetes network policies and pushes them out to the individual clusters in all Kubernetes environments. The Kubernetes environment becomes an integral part of the Fortinet Security Fabric and can be seen and controlled from the FortiManager console. Fortinet customers are able to extend their network security architecture to their Kubernetes environments to protect their Kubernetes-based infrastructure.

The Tigera and Fortinet joint solution supports all cloud-based and on-premises Kubernetes environments. With this architecture, Calico Enterprise will map security policies from FortiManager into each Kubernetes cluster in the cloud or on-premises. The joint solution enables Fortinet customers to enforce network security policies for traffic into and out of the Kubernetes cluster (North/South traffic) as well as traffic between pods within the cluster (East/West traffic).

#### **Visibility and Control Across Cloud Infrastructures**

[Fortinet Dynamic Cloud Security](http://www.fortinet.com/solutions/enterprise-midsize-business/cloud-security) solutions integrated with Tigera Calico Enterprise bring visibility and control across cloud infrastructures, enabling secure applications and connectivity from data center to cloud. Organizations migrating to Kubernetes architectures maintain their security posture and ensure the successful adoption of the Kubernetes platform throughout the enterprise. This results in a collaborative security culture that ensures that security success is jointly owned by Platform, Security, Compliance, Networking and DevOps teams.

#### **To learn more…**

*Join Fortinet and Tigera for our live webinar on Tuesday, October 13: [Extending Your Fortinet FortiManager to Kubernetes](https://www.tigera.io/event/extending-your-fortinet-fortimanager-to-kubernetes/)*

*Read the Fortinet blog by webinar co-presenter Ali Bidabadi: [Ensuring Continuous Security Integration for DevSecOps](http://www.fortinet.com/blog/business-and-technology/ensuring-continuous-security-integration-for-devsecops)*

[————————————————-](https://www.calicocloud.io/)

[**Free Online Training**](https://www.tigera.io/events/)

Access Live and On-Demand Kubernetes Training

[**Calico Enterprise – Free Trial**](https://www.calicocloud.io/home)

Network Security, Monitoring, and Troubleshooting

for Microservices Running on Kubernetes

[Partner/Integration](https://www.tigera.io/tags/partner-integration/)[Products](https://www.tigera.io/tags/products/)

## Related posts

[![Meet Mylo: An AI-native way to work with Calico](https://www.tigera.io/app/uploads/2026/09/Meet-Mylo-An-AI-native-way-to-work-with-Calico.png)](https://www.tigera.io/blog/meet-mylo-an-ai-native-way-to-work-with-calico/)

#### [Meet Mylo: An AI-native way to work with Calico](https://www.tigera.io/blog/meet-mylo-an-ai-native-way-to-work-with-calico/)

By [Phil DiCorpo](https://www.tigera.io/blog/author/phil-dicorpo/)
on Sep 3, 2026

A library of Calico tools and skills — delivered through the Calico MCP Server What if your hardest network question took ten minutes instead of ten days? Anyone who has operated Kubernetes networking at scale...

[Read more](https://www.tigera.io/blog/meet-mylo-an-ai-native-way-to-work-with-calico/)

[![The Safest Place to Run an AI Agent Is On a Cluster That Doesn’t Trust It](https://www.tigera.io/app/uploads/2026/08/The-Safest-Place-to-Run-an-AI-Agent-Is-On-a-Cluster-That-Doesnt-Trust-It.png)](https://www.tigera.io/blog/the-safest-place-to-run-an-ai-agent-is-on-a-cluster-that-doesnt-trust-it/)

#### [The Safest Place to Run an AI Agent Is On a Cluster That Doesn’t Trust It](https://www.tigera.io/blog/the-safest-place-to-run-an-ai-agent-is-on-a-cluster-that-doesnt-trust-it/)

By [Alister Baroi](https://www.tigera.io/blog/author/alister-baroi/)
on Aug 27, 2026

Every organization running AI agents has already made a hosting decision. Most made it by accident. The sales team switched on the agent built into their CRM. Engineering is piloting a coding agent in a...

[Read more](https://www.tigera.io/blog/the-safest-place-to-run-an-ai-agent-is-on-a-cluster-that-doesnt-trust-it/)

[![AI Red Team Agents Automate Attacks on your AI Agents. Runtime Policies Automate their Defense.](https://www.tigera.io/app/uploads/2026/08/AI-Red-Team-Agents-Automate-Attacks-on-your-AI-Agents.-Runtime-Policies-Automate-their-Defense.png)](https://www.tigera.io/blog/ai-red-team-agents-automate-attacks-on-your-ai-agents-runtime-policies-automate-their-defense/)

#### [AI Red Team Agents Automate Attacks on your AI Agents. Runtime Policies Automate their Defense.](https://www.tigera.io/blog/ai-red-team-agents-automate-attacks-on-your-ai-agents-runtime-policies-automate-their-defense/)

By [Alister Baroi](https://www.tigera.io/blog/author/alister-baroi/)
on Aug 24, 2026

The AI red teaming market grew up fast this year. OpenAI bought Promptfoo, Cisco and Microsoft shipped automated attack suites, and a seed-stage startup publicly compromised 50 of 55 live customer service bots. These platforms...

[Read more](https://www.tigera.io/blog/ai-red-team-agents-automate-attacks-on-your-ai-agents-runtime-policies-automate-their-defense/)

<!-- plugin=object-cache-pro client=phpredis metric#hits=3142 metric#misses=33 metric#hit-ratio=99.0 metric#bytes=1537083 metric#prefetches=0 metric#store-reads=165 metric#store-writes=20 metric#store-hits=158 metric#store-misses=22 metric#sql-queries=38 metric#ms-total=1187.69 metric#ms-cache=130.22 metric#ms-cache-avg=0.7077 metric#ms-cache-ratio=11.0 -->
