Technical Tip: How to fix PH_AUDIT_DEVICE_MERGED_BY_IP_WITH_DIFF_NAME
| Description | This article describes how to fix the 'Device merged by IP' error. |
| Scope | FortiSIEM. |
| Solution | This error will occur when failing to add new devices, usually with an error (skipped) from the GUI:
Logs show the message below. Example:
The logs show a shared IP (10.1.1.1) between two devices: '[overlapIp]=10.1.1.1'.
To fix this issue, add this IP under Admin -> Settings -> Discovery -> Generic and add the shared IP 10.1.1.1 to 'Virtual IPs'.
Virtual IP indication will tell FortiSIEM not to merge devices if they contain the same IP in another interface, and will discover these two devices successfully.
Related document: |
