FortiNAC
NOTE: FortiNAC is now named FortiNAC-F. For post-9.4 articles, see FortiNAC-F. FortiNAC is a zero-trust network access solution that provides users with enhanced visibility into the Internet of Things (IoT) devices on their enterprise networks.
Sheikh
Staff
Staff
Article Id 218936
Description This article describes how to add/update Operating Systems list in Endpoint compliance configurations.
Scope Version: 8.X.
Solution

In some scenarios, the Operating System list in FortiNAC is not updated automatically or in some situations, Windows 11 and/or Windows 2019 Operating systems are not showing in the list.

 

1) Login to FortiNAC web console, select Policy configurations, under Policy tab.

 

Sheikh_0-1659080603025.png

 

2) Select 'Scans', select 'Add' or' Modify' existing Scan and select Windows tab.

 

Sheikh_1-1659081032878.png

 

3) In the list below, Operating Systems list will appear.

 

4) In some scenarios, FortiNAC is in restricted environment, where internet is not allowed or Auto-Definition scheduled task was never run or could be disabled, so this list is not updated automatically and may not be showing the latest Operating Systems e.g. Windows 11, Windows 2019 and Windows 2022 etc..

 

5) Something like this will appear, where Windows 11 is missing in the list. 

 

Sheikh_2-1659081271284.png

 

So in order to update the OS list, Internet must be allowed on FortiNAC appliance.

 

6) It is possible to check it by selecting System -Settings, select Updates,  select System and on the right hand side, select Test.

 

Sheikh_0-1659095208578.png

 

If the connection is successful, this message will appear. Otherwise it is necessary to check internet access from FortiNAC.

 

Sheikh_1-1659095252991.png

 

7) Next, it is necessary to schedule the task to download latest definitions from Fortinet.

In the FortiNAC Web Console, select System and then select Scheduler.

 

Sheikh_0-1659093650764.png

 

7) First, ensure that Auto-Definition Synchronizer task is not disabled, if it is disabled, then 'right click' the task and select Enable.

 

8) Now 'right click' Auto-Definition Synchronizer task and select Run Now.

 

9) This will start the process to download latest Auto-Definitions from Fortinet.

 

10) To check the status of this task, select Logs and then select Events.

 

Sheikh_1-1659094042479.png

 

11) Select Update and the tasks will be shown.

 

Sheikh_2-1659094372974.png

 

After the completion of task, it is possible to go to CLI of FortiNAC to check whether latest files are downloaded.

 

12) Login to the CLI session of FortiNAC and go to this directory:

>cd /bsc/campusMgrUpdates

 

Sheikh_2-1659095727963.png

 

13) Check the date of 'AutoDefSynUpdates_7.tar.gz', it should show the latest date.

 

14) It is also possible tounzip this file to see the list of Operating Systems inside it:

tar xvzf AutoDefSynUpDates_7.tar.gz

 

Sheikh_3-1659096005755.png

 

Sheikh_4-1659096078354.png

 

It i possible to see that Windows 11 is now showing in the list.

 

Sheikh_5-1659096243400.pngSheikh_7-1659096364055.png
Contributors