Description | This article describes the cause of the 'Bad application ID' error while configuring the SD-WAN rule. |
Scope | FortiOS, FortiManager. |
Solution |
While trying to configure the SD-WAN rule using the app ID either from FortiManager or locally from FortiGate:
config system sdwan
The installation might fail due to the following error in the install log:
Start installing FTG-1 (service) end ---> generating verification report
(vdom root: system sdwan service 1:internet-service-app-ctrl)
remote original: 28554 28587 28597 37065
to be installed: 28554 28587 28597 43540 37065 43541
<--- done generating verification report
install failed <- Installation failed.
Step 1: Check from the FortiGate CLI if the App ID is in the Application Database.
FTG-1# config application list
FTG-1(list) # edit 0 new entry '0' added FTG-1(0) # config entries FTG-1(entries) # edit 0 new entry '0' added FTG-1(0) # set application ? <- This will provide all the available App IDs present in FortiGate. ID Select application ID
10005874 1Home.Devices 38614 1kxun 29025 1und1.Mail [...] Download the full list and search the IDs that are throwing errors.
Step 2: If the App ID is not seen in the list, the Application definitions might be outdated.
Run the command below to check the application definition version currently installed.
diag autoupdate version
[...]
Application Definitions
--------- Version: 30.00958 signed <- Version. Contract Expiry Date: Fri Feb 13 2026 Last Updated using scheduled update on Tue Feb 25 06:59:00 2025 <- Last update time. Last Update Attempt: Tue Feb 25 06:59:00 2025 Result: Updates Installed [...]
Make sure the FortiGate has the latest definitions installed.
Step 3: If the application control definition is outdated, follow the steps in How To Upgrade Application Control Definitions Manually to update application control definitions.
Step 4: Once the definitions are updated, the config should not show any error.
If it does, go thorough Step 1 to identify if the ID is present or not. Sometime old IDs might be removed due to merging with another Application ID, similar to Warning message on bad application ID 48976 and 48977.
|