Skip to main content
xkalib3r
New Member
November 20, 2018
Question

AP Manager issues

  • November 20, 2018
  • 1 reply
  • 3500 views

Hi All

 

We've been running a FortiManager for our customers for some time now. We've also run units at some big clients that have multiple sites. Generally speaking we know the unit quite well.

 

We decided to try out the AP Manager feature but have already hit a snag...

 

Basically, we are having an issue deploying SSID's, AP profiles etc to devices. We've tried with customers that have existing FortiAP deployments as well as with a new customer where we are rolling out FortiAP's. 

 

We can successfully create or import SSID's profiles etc, but...When modifying or creating new SSID's or profiles, there does not seem to be a way to push this to the device. After creating the SSID/Profile, we have tried the install wizard within the AP Manager section as well as trying to re-install config from the Device Manager pane but no device is available in the list when asked where you want to install said config. This leads us to believe that there are no known config changes to be pushed to the relevant Fortigate - This is further confirmed by trying to install policy and device settings which comes back saying there are no changes to install.

 

Has anyone perhaps seen and gotten around this issue? Perhaps we're just missing something fundamental here. 

 

FortiManager is currently running V6.0.3 (We had the issue on 6.0.2 as well)

Firewalls are running mixed code, most common or 5.4.9, 5.6.4 and a handful on 6.0.3. We've tried the AP Manager on all versions.

    1 reply

    xkalib3r
    xkalib3rAuthor
    New Member
    November 23, 2018

    So...Update on this so far.

     

    I smell bugs. Lots of them :p

     

    I had some luck by turning off AP management on an ADOM and re-enabling it. After that I was able to deploy one SSID and AP profile. I thought we had made progress until I tried to create the second SSID for a customer (WPA2 Enterprise) - This was going well until I needed to select a RADIUS server which according to the Manager did not exist...Yet if I went to device manager, CLI objects it was there clear as day. Checked on the Fortigate as well and there it was.

     

    I thought I'd give this all a bash again this morning only to find that we had the original issue again. Tried creating a new SSID but the Manager would not let me install this - The device is simply not in the list when trying to install the new config. Yesterday when I came right, as soon as I had created a new SSID, the Manager popped up with a window and started pushing config to the Fortigate straight away.

     

    I think I might just give up on this unless someone has had any luck with this. 

     

    I need to log this with TAC, but currently have an issue where our support contract on the unit was somehow not applied :\