Technical Tip: Firewall SSH local-key host-key are not syncing over HA for G series FortiGate on FortiOS version 7.4
Description | This article demonstrates the behavior of configuring SSH host-key or local-key on G series FortiGate HA cluster running firmware version 7.4. When this is configured on a G-series FortiGate HA cluster running firmware version 7.4, the host/local-key does not get synced over HA. This is fixed in FortiOS version 7.6.5 onwards. |
Scope | FortiGate G series on firmware version 7.4. |
Solution |
![]()
![]()
![]()
![]()
 Workaround: Manually configure the ‘firewall ssh host/local-key’ on the secondary firewall in the HA cluster. |





