Description |
In some cases with managed devices in FortiManager or FortiAnalyzer, a device is linked to a Serial Number no longer used in a cluster. This article describes typical causes and ways to resolve the issue (delete this serial number). |
Scope | FortiManager and FortiAnalyzer 7.X |
Solution |
Typical case: There is a FortiGate HA cluster, the device was registered initially with the first FortiGate serial number FG81EP4Q00000000 and the second FortiGate Serial Number FG81EP4Q00000001. Eventually bad luck, the first device failed and had to be replaced with a new one (RMA) with serial number FG81EP4Q00000011.
Instead of following the correct procedure (see related KB article:) the new device was just added to the cluster.
This results in the following :
A few remarks about this screenshot: - Device #1 has no available action, i.e. It is not possible to delete it even if there are 2 other devices listed. This is the Device Manager normal behavior. - It seems to indicate a 3 units cluster even if in fact there are 2 active units (#2 and #3, remember #1 is long gone back to Fortinet as it was broken).
In CLI:
FAZ-MONTREAL # diagnose dvm device list QUEBEC
Resolve the issue
To resolve the issue, execute the following steps: - Take note of the serial number of an active unit and delete it under Device Manager -> [device name] -> Edit.
- In the CLI, use the command # execute device replace sn <device name> <serial number> using the serial number just taken before deleting the unit.
Confirm success!
FAZ-MONTREAL # diagnose dvm device list QUEBEC |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2023 Fortinet, Inc. All Rights Reserved.