Created on
02-26-2025
09:06 PM
Edited on
02-27-2025
05:29 AM
By
Jean-Philippe_P
Description |
This article discusses a change in FortiNAC agent communication in Agent vF 7.6.0. TLSv1.2 has been disabled and requires TLSv1.3.
Note: FortiNAC CentOS systems (FNC-CA) do not support Dissolvable and Passive Agent vF 7.6.0 and above.
TLSv1.3 is not supported for the Portal on FortiNAC CentOS systems due to limitations in CentOS 7. Dissolvable and Passive agents interact with the FortiNAC Portal and are affected by this limitation.
Persistent Agents using vF 7.6 are supported on FortiNAC systems running either CentOS (FNC-CA) or FortiNAC-OS (FNC-CAX). |
Scope | Agent vF 7.6.0 +. |
Solution |
Verify that TLSv1.3 is enabled in FortiNAC before the upgrade. This will avoid communication disruption between FortiNAC and the agents.
Persistent Agents:
Certificate Alias: agent TLS Protocols: TLSv1.3
Dissolvable and Passive Agents (FortiNAC-OS systems only):
Certificate Alias: portal TLS Protocols: TLSv1.3
For more details, see the Transport configurations in the FortiNAC Administration Guide and the Agent release notes. |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.