FortiGate
FortiGate Next Generation Firewall utilizes purpose-built security processors and threat intelligence security services from FortiGuard labs to deliver top-rated protection and high performance, including encrypted traffic.
Quint021
Staff
Staff
Article Id 389565
Description This article describes how to resolve FortiToken Cloud License validation issues for FortiGates in HA due to cluster conflict in the FortiToken Cloud Portal.
Scope FortiGate, FortiToken Cloud.
Solution

From the GUI -> System -> FortiGuard, the FortiToken Cloud license may show as not licensed, although the devices have entitlement.

Upon debugging the issue with the following commands:


diagnose debug console timestamp enable

diagnose fortitoken-cloud debug enable
diagnose debug enable 
execute fortitoken-cloud sync all

 

The error 'The request cluster members ['FG101FTK######', 'FG101FTK######'] belong to multiple clusters, please correct the cluster members at FTC GUI http://ftc.fortinet.com", "error_name": 400}' can be observed:

clustererror.PNG

 

This error indicates that the devices are being associated with different clusters in the FortiToken Cloud portal. To address this issue, navigate to FortiToken Cloud Portal and remove the secondary device from its cluster and add it to the primary device's cluster: Move a device between clusters.

 

Related document: 

Diagnose FortiToken Cloud