Skip to main content
FortiZiq
Staff
Staff
July 24, 2025

Troubleshooting Tip: Install Wizard fails with error “policy dstaddr's vip/vipgrp interface xxxxx not found from policy srcintf'

  • July 24, 2025
  • 0 replies
  • 700 views
Description

This article describes how to troubleshoot the error 'policy dstaddr's vip/vipgrp interface xxxxx not found from policy srcintf”.

Scope FortiManager.
Solution

The following error may be encountered when trying to perform Policy Installation.

 

error.png

 

From the error message, the issue is related to the interface configuration of a Virtual IP (VIP) object.

 

vip_config.png

 

Ensure the interface referenced has the correct device mapping. In the example, Policy Installation is being performed for the device 'Cameron-kvm48'.

 

interface_mapping.png

 

If it is confirmed that there is mapping for the device, the next step is to confirm the actual interface that is mapped to the Normalized Interface.

 

In the example, the Normalized Interface 'normalized_test_zone' is mapped to a zone on the FortiGate named 'actual_test_zone'.

 

actual_mapping.png

 

FortiGate does not allow Zones to be configured as a VIP’s interface. Hence why FortiManager is throwing the error during the Installation.

 

To solve this, change the interface configuration on the VIP object to a Physical/VLAN interface, or simply set it to ‘any’.

 

changed_any.png

 

The Install Wizard should no longer show the error seen previously.

 

no_error.png

 

Related document:

Normalized interfaces

Thought Leadership Security Summit. Outpace New Threats with AI - enhanced defense. Tuesday, Septmeber 15, 8:30 AM - 2:30 PM PT. The Golf Club at Newcastle, WA.
Fortinet Flag the Hack. Wednesday, August 26, 9:00 AM - 5:00 PM ET, COSM, Atlanta, GA.
Virtual event | September 2026. SASE summit. The age of autonomous trust. Register here!