Technical Tip: Missing contracts when update from FortiManager
| Description | This article describes how to solve the missing contract when getting update from FortiManager. |
| Scope | FortiGate. |
| Solution | In some of the user's closed environments or with no internet access to get an update from FortiGuard, it is required to get an update from FortiManager.
The connection between FortiGate and FortiManager can be troubleshoot using update debug, and missing contracts can be observed as shown in the example below:
upd_status_set_ha_expiry[1511]-Serial Number: FGXXX- contract processed do_update[678]-UPDATE failed
The update debug to be used on FortiGate:
diagnose debug reset diagnose debug console timestamp enable diagnose debug enable execute update-now
To disable the debug:
diagnose debug disable
The issue is caused by FortiManager only updating 1 contract out of 2; it is required to request account entitlement or contract and upload to FortiManager: Requesting account entitlement files
|