FortiNAC-F
FortiNAC-F is a zero-trust network access solution that provides users with enhanced visibility into the Internet of Things (IoT) devices on their enterprise networks. For legacy FortiNAC articles prior to FortiNAC-F 7.2, see FortiNAC.
ebilcari
Staff
Staff
Article Id 371371
Description

This article explains how to check and solve issues caused by FortiNAC not having an updated list of OUIs.

Having an updated list of OUIs is important because FortiNAC will check the validity of the Hosts MAC address before proceeding further for example with Host registration or Agent communication.

Scope FortiNAC.
Solution

The OUI database is synchronized through a scheduled task that run once a week called 'Auto-Definition Synchronizer'. This database can be checked from GUI in System -> Settings -> Identification -> Vendor OUIs.

 

vendoroui.PNG

New deployment will not include the credentials for System Updates, more information can be found in the Administration Guide. This will also prevent the update of the Vendor OUI database. This setup will have an outdated version of this database and will not include Vendor OUIs that are recently registered (IEEE).

 

After getting the credentials from Customer Support, the 'Auto-Definition Synchronizer' can be manually run and the new Vendor OUI should be present on the Vendor OUIs list.

 

In newer versions of FortiNAC (7.6.3 and greater) the credentials can be configured in System -> Settings -> Updates -> Agent Packages:

 

Update 7.6-agent.PNG

 

Related articles:

Technical Tip: Upgrade FortiNAC from GUI Failed, Errors occurred during image upgrade. ret='-1'

Troubleshooting Tip: Persistent Agent not able to start communication

Technical Tip: 'Invalid Physical Address' error in event logs preventing host registration