Skip to main content
FortiKoala
Staff
Staff
October 1, 2018

Technical Tip: ConfigWizard Settings Do Not Synchronize Between Servers

  • October 1, 2018
  • 0 replies
  • 954 views

Description

 
This article describes the Config Wizard configurations that do not synchronize between servers that are member of an HA cluster.


Scope

 

FortiNAC.


Solution


After running Config Wizard on the Primary Server, the Secondary Server's Config Wizard settings do not reflect the changes. This is expected behavior.
In a High Availability (HA) environment, Config Wizard does not synchronize settings between the Primary and Secondary Servers.

Config Wizard need to be run on both Primary and Secondary Server in System -> Config Wizard:
 
configwizard.PNG
 
The recommended procedure is to make the changes firstly in the primary node and than proceed on the secondary node. After making the changes a reboot is required. After the reboot the control should be changed to the secondary node, more information is shown at the High Availability guide or this section of the guide Perform failover. This method is recommended because the changes can also be tested when the secondary node is in control. This will require a maintenance window at least for 30 minutes.
 
The second option is to follow the procedure that enables the Admin UI in the secondary node and does not require a failover. This can configured by running the following command in the secondary node CLI:
 
> systemctl start nac-secondary-admingui
 
Thought Leadership Security Summit. Outpace New Threats with AI - enhanced defense. Tuesday, Septmeber 15, 8:30 AM - 2:30 PM PT. The Golf Club at Newcastle, WA.
Fortinet Flag the Hack. Wednesday, August 26, 9:00 AM - 5:00 PM ET, COSM, Atlanta, GA.
Virtual event | September 2026. SASE summit. The age of autonomous trust. Register here!