Skip to main content
Niv_E
New Member
January 22, 2023
Question

Error Activating Evaluation Fortigate VM license 7.2.3

  • January 22, 2023
  • 9 replies
  • 4932 views

Hello, while trying to activate my fortigate VM license 7.2.3 that is running on Vmware I get the following Error:

Niv_E_0-1674404659444.png

However when trying to execute a ping to Forticare domain I get a response.

 

Thank you for the help !

9 replies

abarushka
Staff
Staff
January 23, 2023

Hello,

 

You may consider to run the commands below and check the error message.

 

diagnose debug application update -1

diagnose debug enable

execute update-now

Niv_E
Niv_EAuthor
New Member
January 26, 2023

Im getting the following logs:

 

 

Do you want to continue? (y/n)y  Requesting FortiCare Trial license, proxy:(null) ssl_connect_fds[407]-Poll timeout [205] __ssl_data_ctx_free: Done [1057] ssl_free: Done [197] __ssl_cert_ctx_free: Done [1067] ssl_ctx_free: Done upd_comm_connect_fds[478]-Failed SSL connect upd_vm_cfg_set_status[279]-Saved status code 502 do_setup[348]-Failed setup upd_sched_time_to_update[268]-Config changed, next_upd_time=Thu Jan 26 23:16:30 2023  upd_daemon[1844]-Received update request from pid=7060 upd_daemon[1844]-Received update request from pid=7037 do_setup[344]-Starting SETUP upd_fds_load_default_server6[1046]-Resolve and add fds usupdate.fortiguard.net ipv6 address failed. upd_comm_connect_fds[459]-Trying FDS 12.34.97.16:443 [114] __ssl_cert_ctx_load: Added cert /etc/cert/factory/root_Fortinet_Factory.cer, root ca Fortinet_CA, idx 0 (default) [482] ssl_ctx_use_builtin_store: Loaded Fortinet Trusted Certs [488] ssl_ctx_use_builtin_store: Enable CRL checking. [495] ssl_ctx_use_builtin_store: Enable OCSP Stapling. [766] ssl_ctx_create_new_ex: SSL CTX is created [793] ssl_new: SSL object is created [184] ssl_add_ftgd_hostname_check: Add hostname checking 'usupdate.fortiguard.net'...  ssl_connect_fds[407]-Poll timeout [205] __ssl_data_ctx_free: Done [1057] ssl_free: Done [197] __ssl_cert_ctx_free: Done [1067] ssl_ctx_free: Done upd_comm_connect_fds[478]-Failed SSL connect upd_comm_connect_fds[459]-Trying FDS 208.184.237.66:443 [114] __ssl_cert_ctx_load: Added cert /etc/cert/factory/root_Fortinet_Factory.cer, root ca Fortinet_CA, idx 0 (default) [482] ssl_ctx_use_builtin_store: Loaded Fortinet Trusted Certs [488] ssl_ctx_use_builtin_store: Enable CRL checking. [495] ssl_ctx_use_builtin_store: Enable OCSP Stapling. [766] ssl_ctx_create_new_ex: SSL CTX is created [793] ssl_new: SSL object is created [184] ssl_add_ftgd_hostname_check: Add hostname checking 'usupdate.fortiguard.net'... curl forticare failed, 28 curl forticare failed, 28  ssl_connect_fds[407]-Poll timeout [205] __ssl_data_ctx_free: Done [1057] ssl_free: Done [197] __ssl_cert_ctx_free: Done [1067] ssl_ctx_free: Done upd_comm_connect_fds[478]-Failed SSL connect do_setup[348]-Failed setup upd_daemon[2075]-Disabling remaining actions 11 do_setup[344]-Starting SETUP upd_fds_load_default_server6[1046]-Resolve and add fds usupdate.fortiguard.net ipv6 address failed. upd_comm_connect_fds[459]-Trying FDS 12.34.97.16:443 [114] __ssl_cert_ctx_load: Added cert /etc/cert/factory/root_Fortinet_Factory.cer, root ca Fortinet_CA, idx 0 (default) [482] ssl_ctx_use_builtin_store: Loaded Fortinet Trusted Certs [488] ssl_ctx_use_builtin_store: Enable CRL checking. [495] ssl_ctx_use_builtin_store: Enable OCSP Stapling. [766] ssl_ctx_create_new_ex: SSL CTX is created [793] ssl_new: SSL object is created [184] ssl_add_ftgd_hostname_check: Add hostname checking 'usupdate.fortiguard.net'... curl forticare failed, 28 Failed to request forticare license 28. Failed to download VM license.

 

abarushka
Staff
Staff
January 26, 2023

Hello,

 

DNS entry was successfully resolved, however TLS session failed to establish. I would recommend to sniff traffic on ESXi host:

 

https://community.fortinet.com/t5/FortiGate/Technical-Tip-How-to-sniff-traffic-on-hypervisor-ESXi-using/ta-p/193813

abarushka
Staff
Staff
February 5, 2023

Hello,

 

I was referring whether there is a firewall between the VM and Internet. In case there is firewall between VM and Internet which performs deep inspection TLS session won't be established.

wrabelo
Visitor III
February 23, 2023

i have the same issue   i could not fix i opened ticket with the fortigate

 

lqiqi
Staff
Staff
July 31, 2024

May I ask if your issue has been resolved? How to solve it, please let me know

Thought Leadership Security Summit. Outpace New Threats with AI - enhanced defense. Tuesday, Septmeber 15, 8:30 AM - 2:30 PM PT. The Golf Club at Newcastle, WA.
Fortinet Flag the Hack. Wednesday, August 26, 9:00 AM - 5:00 PM ET, COSM, Atlanta, GA.