Troubleshooting Tip: Configuration push from switch controller to FortiSwitch fails
| Description | This article describes how to handle configuration push failures towards the FortiSwitch via a FortiGate switch controller or via FortiManager. The failure returns the following error in the CLI:
|
| Scope | FortiGate. |
| Solution | While pushing the configuration from FortiGate or FortiManager to the FortiSwitch the commit of the operation might fail and the error 'object set operator error, -7624 discard the setting' may observed.
Additionally, the same error can appear even after allowing the right service on the right place, due to the FortiGate 'flcfg' process failing to push the configuration to FortiSwitch. The process 'flcfg' termination in FortiOS causes configuration push towards the FortiSwitch and MAC sync fails on switches in the Sync-Error state. FortiGate caputp is possibly not connected to FortiSwitch, or FortiSwitch REST API login is not possible.
Debug logs needed to be collected once the above error appears and the behavior matches what has been shared below.
To disable the debugging processes:
Part reports that indicate the issue:
This issue can appear in earlier FortiOS versions on 7.4 series or 7.2 series and below. This issue was resolved in FortiOS version 7.4.9.
If a similar error appears and the debugging prints similar reports, run below commands and contact Fortinet technical support via Welcome to Fortinet Support to verify and confirm the issue.
SSH to both FortiGate/FortiSwitch and run below commands.
FortiGate:
FortiSwitch:
|
