FortiNAC
NOTE: FortiNAC is now named FortiNAC-F. For post-9.4 articles, see FortiNAC-F. FortiNAC is a zero-trust network access solution that provides users with enhanced visibility into the Internet of Things (IoT) devices on their enterprise networks.
FortiKoala
Staff
Staff
Article Id 191829
Description
Hosts are not able to re-scan themselves from Quarantine. Receive unableToScan error.

In order for a host to re-scan itself, there needs to be a scan result present for the At Risk host.  Do the following to verify:
1. Navigate to Hosts > Host View and search for the affected host.
2. Right click on the host and select Host Health.

If there are no scan results present, the host will not be able to scan.

Scope
Version:  8.x

Solution
Workaround:  Manually scan the host via the Host View > Scan Host(s) option


Solution:
To prevent the applicable scan result from purging before the host attempts to re-scan, the Scan Results Age Time needs to be at least as long as the amount of days Quarantine is delayed.  Otherwise, end stations could receive an "unableToScan" error message when attempting to re-scan from the Quarantine network.

1.  Navigate to Policy > Policy Configuration.
2.  Review the applicable scan configuration and note the Remediation Delay value.
3.  Navigate to System > Settings > Database Archive
4.  Increase the Scan Results Age Time to an amount of days equal or greater than the Remediation Delay value configured in the scan.



Contributors