There are 5 sites IPsec between all of them.
There is a DC at the head office with a collector agent.
I am trying to get FSSO to work between all sites. The fortigate at headoffice has FSSO working correctly however the remote fortigates wont.
I can ping the Head office DC from remote sites but its as if the fortigates cant communicate with the head office DC on port 8000 looking at th debugs :
[fsae_server_init_spec:116]: num 1, idx 0, 127.0.0.1:8000 disconnect_server_only[KCM FSSO]: disconnecting _event_error[Local FSSO Agent]: error occurred in read: Connection refused
All policies do not have specific ports configure(all ports allowed)
The Windows firewall on the DC is turned off.
Please help
Solved! Go to Solution.
Nominating a forum post submits a request to create a new Knowledge Article based on the forum post topic. Please ensure your nomination includes a solution within the reply.
Eugene.milon wrote:This was it thank you
https://travelingpacket.c...so-and-ldap-source-ip/ Maybe the source ip needs to be set for the fsso session.
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1705 | |
1093 | |
752 | |
446 | |
230 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.