Created on
09-28-2018
02:29 AM
Edited on
11-05-2024
11:40 PM
By
Anthony_E
Description
This article describes that Upon installation of the Persistent Agent, the following message displays on the endstation: 'The computer name in the certificate, bradfordnetworks.com, does not match the name of the target computer, <NAC server name>. Unable to connect.'
This message will appear when FortiNAC does not have a valid SSL Certificate installed for the Persistent Agent target.
The general process the Persistent Agent uses to communicate is as follows:
*If the Security Registry Key setting on the endstations installing the agent is disabled, SSL certificates are not required.
** Agent v5.x and later with NAC 8.2 and later uses TCP 4568 only
Scope
FortiNAC, Persistent Agent v3.x and higher.
Solution
Option 1: Install or renew the SSL Certificate in NAC for the Persistent Agent target. Refer to Cookbook Recipe Installing SSL Certificates.
Option 2: Disable the Security Registry Key setting on the endstations installing the agent. This can only be done via software push. Refer to Cookbook Recipe Distributing Agent and Registry Settings.
For additional information, refer to the related articles below.
Related articles:
Technical Note: Persistent Agent message stating names do not match
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.