Description | This article describes how to automate the manual synchronization of a High Availability (HA) cluster by using an automation stitch. This ensures that whenever HA out of sync is detected, the system automatically runs a manual sync using a CLI Script. |
Scope | FortiGate, High Availability, Automation Stitches |
Solution |
Note: This solution is not a replacement for investigating the root cause of why the FortiGate is going out of sync. The underlying issue should still be thoroughly examined.
When an HA cluster is out of sync, it displays the following behavior, as shown below:
In such a case, a manual sync can be used to keep the HA synchronized. This can be automated using an automation stitch that runs as soon as an alert is triggered indicating HA is out of sync.
Note: The above automation script needs to be configured on both the FortiGate in the HA cluster, for both the FortiGate to be able to run the script individually.
Once this configuration process is complete, the system will automatically run the manual synchronization script when the HA cluster goes out of sync, ensuring minimal manual intervention.
Related documents: Use FortiGate automation stitches for alert emails Procedure for HA manual synchronization How to troubleshoot HA synchronization issue using GUI FortiGate HA synchronization messages and cluster verification steps |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.