FortiGate
FortiGate Next Generation Firewall utilizes purpose-built security processors and threat intelligence security services from FortiGuard labs to deliver top-rated protection and high performance, including encrypted traffic.
J_Xia
Staff
Staff
Article Id 277260
Description

This article describes that when registering FortiAPs and FortiSwitches to FortiCloud via the FortiGate GUI after 'right-clicking' on the device, it shows as 'offline', and the registration button is grayed out.

 

2.png

 

'1.png

 

The device cannot be registered from the CLI either, and it displays the following error message: 'FAP/FSW: FP431Fxxxxxxxxxx is NOT connected',

 

Command:

 

diagnose forticare direct-registration product-registration -N S124DP3X15000000 -a xxxx@fortinet.com -p LDAP -T "CA" -R "other" -e 1

3.png

 

Debug logs for 'Forticldd; do not show anything related to device registration when registering the device via the CLI.

 

4.png

 

However, the GUI and the CLI 'get wireless-controller wtp-status' both indicate that the FortiAP is connected to the FortiGate for management and yet the direct-registration still does not work.

 

5.png

Scope FortiGate v7.2.5, 7.4.1.
Solution

This behavior matches with the known issue ID 0944465 On FortiOS v7.2.5/7.4.1, if FortiAPs and Fortiswitches connect to a non-management VDOM, the registration via FortiGate will not work.

 

Fix:

Currently, the fix is on FortiOS v7.2.6. Monitor the release notes for the fix on the v7.4 branch:

FortiGate / FortiOS

 

Workaround:

Switch the FortiAPs and FortiSwitches into a management VDOM.

 

Related document:

Technical Tip: 'FortiCloud registration failed' error message when registering 'F' model FortiAPs fr...
Contributors