Created on
08-08-2024
05:54 AM
Edited on
09-10-2025
10:13 PM
By
Jean-Philippe_P
Description |
This article describes the different API endpoints that can lead to a failure in dynamic address update from the awsd process (Aws sdn connector). |
Scope | FortiGate, SDN Connector, AWS, IAM, STS. |
Solution |
To identify the actual error, enable debugging for the awsd process:
diagnose debug application awsd -1 diagnose debug enable
If there are reachability issues, the following outputs will appear:
aws curl failed, 28
In this case, the STS API endpoint of AWS is not reachable.
Note: The awsd process uses curl queries and relies on the DNS server configured on the management port to resolve the FQDN into IP addresses.
For proper operation, ensure HTTPS (port 443) access to the following AWS API endpoints: ec2.[region].amazonaws.com
|
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.