Question
FSSO on multiple DC' s
Hi One of our clients are in the process of upgrading from Windows 2003 to Windows 2008 R2 servers and I' m having some issues with FSSO under Windows 2008 R2. Keeping in mind this is the first time I' ve installed multiple collector agents (they only had 1 DC before), and am aware that version mis-matches may be part of the issue. I' m planning to fix that tonight, but would like to clarify before I upgrade the old FSAE to FSSO Old (working) setup: FortiGate 60C - 4.0 MR2 Patch 8 Windows 2003 DC running FSAE 3.5.059 New setup: FortiGate 60C - 4.0 MR2 Patch 8 2 x Windows 2008 DC' s running FSSO 4.0.0108 (Windows firewall is disabled at present) Windows 2003 DC running FSAE 3.5.059 (still running) On the FortiGate I' ve setup the " FSAE Collector IP" with all three servers - with the Windows 2008 servers first and the old Windows 2003 server last. The Collector agent on both 2008 servers are set to monitor the DC Agent on both 2008 servers (due to version mis-matches they don' t monitor the 2003 server). The 2003 server is only monitoring itself. When I run FSAE / FSSO on the servers and click on " Show Service Status" I don' t see the FortiGate listed on either Windows 2008 server, but do see it listed on the Windows 2003 server. If I look under " Set Group Filters" - all three servers show the same thing - ie: the FortiGate and the groups. If I upgrade FSAE 3.5.059 on the Windows 2003 server to 4.3.0108 I presume I can get the Collector Agent on all of the DC' s to montor all of the DC' s. When I do that should I then see the FortiGate listed on all three DC' s under " Show Service status" ? OR Will it only show on the server that the FortiGate is actively using ? If it' s only the server the FortiGate is actively using - is there any reason why it' s connecting to the Windows 2003 box at the moment given this is the last of three servers listed on the FortiGate under Directory Services ? Thanks in advance.
