Created on
08-11-2022
06:44 AM
Edited on
05-11-2023
01:33 AM
By
Jean-Philippe_P
Description |
This article describes how to change the IP Address in Asset Management and re-apply the corrected FortiManager/FortiAnalyzer license file.
In some scenarios, the FortiManager/FortiAnalyzer VM may need to be migrated to a new network and assigned new IP address.
|
Scope | FortiManager/FortiAnalyzer. |
Solution |
1) Change the IP under FortiCloud Asset Management (Support Portal). - Under https://support.fortinet.com/ log in with the FortiCloud credentials.
- Go to Asset Management -> My Assets, select the device, in the 'Product information' widget, select the 'pen' icon, and update the new IP Address (this IP does not need to be a routed one and or active one, only must be configured on any interface of the FortiManager/FortiAnalyzer).
- Back in the 'Product information' widget, download the new license file from the 'License File Download' hyperlink.
Keep that new '.lic' file where it can be easily accessible.
2) Change the IP for the management interface:
Once updated, select 'OK' to save the changes:
Note. FortiManager will reboot automatically at this point since the new IP invalidates the old license file.
- When FortiManager/FortiAnalyzer boots up, log in to GUI with system-level admin (i.e. 'Super_User' profile).
Note: FortiManager will reboot automatically at this point since the new license file matches the new IP.
If FortiManager can not initiate the tunnels to the managed FortiGates from its new IP, the below command should be run in the FortiManager CLI:
If the FortiGate to FortiManager tunnels become up after running the above command, the new FortiManager IP will be automatically updated on all managed FortiGates.
Troubleshooting:
diag debug vminfo
For FortiGate-FortiManager connectivity issues, collect the following debugs: Debug on FortiGate: diag debug reset diag debug application fgfm 255 diag debug en
Debug on FortiManager:
diag debug reset diag debug application fgfm 255 <IP> diag debug en
To restart the connection from the FortiGate CLI by restarting the 'FGFM' daemon.
fnsysctl killall fgfmd
|
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2023 Fortinet, Inc. All Rights Reserved.