Skip to main content
tkanneganti
Staff
Staff
November 25, 2022

Technical Tip: How to assign the AC (FortiGate interface) IP statically

  • November 25, 2022
  • 0 replies
  • 3511 views
Description This article describes how to assign the AC (FortiGate interface) IP statically.
Scope FortiAP 6.x, 7.x.
Solution

The FortiAP might be losing keepalives with FortiGate at random times, there could be multiple reasons behind that.

However, one of the possible reasons could be due to the L2 congestion or switch side congestion which leads to keepalives miss between FortiGate and FortiAP.

 

The possible last failure reason that appears on FortiGate when FortiAP misses keepalive is 'Control message: maximal re-transmission limit reached' and 'ECHO REQ is missing'. 

 

To avoid the network side or L2 congestion, have the AC (FortiGate) IP assigned statically on the FortiAP so that instead of trying all discovery types, it will directly check for the AC IP and get connected quickly.

 

The steps to do it from FortiAP CLI is as below:

 

# cfg -a AC_DISCOVERY_TYPE=1

# cfg -a AC_IPADDR_1= 192.168.6.1      <- FortiGate interface IP.

 

# cfg -s   <- to verify if the config is correct or not.

# cfg -c   <- to save the config on FortiAP, the FortiAP will disconnect and rediscover the FortiAP after the change.

 

The screenshots on how to do it from FortiAP GUI are as below:

 

tkanneganti_0-1669360556772.png

 

Select 'save' to save the config to take effect.

 

Once the FortiAP is online on FortiGate, it is possible to follow the below documents to configure the FortiAP accordingly based on the requirement:

 

https://fortinetweb.s3.amazonaws.com/docs.fortinet.com/v2/attachments/89ea0dba-bc2e-11ec-9fd1-fa163e15d75b/FortiWiFi_and_FortiAP-7.2.0-Configuration_Guide.pdf

Thought Leadership Security Summit. Outpace New Threats with AI - enhanced defense. Tuesday, Septmeber 15, 8:30 AM - 2:30 PM PT. The Golf Club at Newcastle, WA.
Virtual event | September 2026. SASE summit. The age of autonomous trust. Register here!