Hi Fortinet community,
I was reading the Delayed remediation | FortiNAC-F 7.6.0 | Fortinet Document Library
But in my testing, the dissolvable agent keeps dissolved after scanning even though the host status is Pending At Risk. Am I doing correctly?
I am expecting the agent will stay in the host until user has resolved the issues.
FortiNAC
Are you referring to the DA getting closed (not running) or the executable file gets deleted from the downloaded folder? If the host status is at risk, the browser will be redirected to the remediation page and the DA will be downloaded again if required.
Some details are also shown here: Technical Tip: A simple network example of deploying VPN management with FortiGate
I am referring to the executable file deleted itself after the first scanning. And the host is then put into Pending At Risk. Based on the guide, the agent exec will remain in the host until the issue is resolved.
The use of delayed remediation and the host status Pending At Risk may change the normal behavior. Have you tried a scan that does not delay remediation?
Have you tried using different Dissolvable Agent versions, do you get the same results?
You can also enable the DA logs to get more details, like shown here: Troubleshooting Tip: Agent logs on end hosts
So far in my testing, the DA keeps delete itself after register for every version even though they are in delayed remediation.
If the DA is gone how would the user able to rescan?
| User | Count |
|---|---|
| 2895 | |
| 1448 | |
| 848 | |
| 825 | |
| 455 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2026 Fortinet, Inc. All Rights Reserved.