After update to 5.4.4 on FAP221B and FAP321C the web console will not load.
Has it been removed or disabled??
Cleared computer cache and it still will not allow me to connect.
I tried SSH, TELNET, HTTP and HTTPS.. none of them worked.
Solved! Go to Solution.
These access options (telnet/http/https/ssh) can be enabled under wtp-profile
# config wireless-controller wtp-profile
(wtp-profile) # edit FAP221C-default
(FAP221C-default) # set allowaccess telnet http https ssh
(FAP221C-default) # end
By default, these options have been disabled for security purpose.
You can also overwrite these settings on a per access point (WTP) level by editing the WTP setting
config wireless-controller wtp
(wtp) # edit FP221B3X13009219
(FP221B3X13009219) # set override-allowaccess enable
(FP221B3X13009219) # set allowaccess telnet http https ssh
(FP221B3X13009219) #end
Do you mean you updated your FortiGate to 5.4.4? The FAPs are still only at 5.4.2.
Assuming you've got your FGT at 5.4.4 and FAPs at 5.4.2, are you able to config them from the FGT GUI?
OK, to clarify the firmware is FP320C-v5.4-build0354...
The problem is that all the remote software such as SSH, TELNET, HTTP, and HTTPS are disabled during the update.
I had to use a console cable to reenable the HTTP option. I say this is a bad decision on someones part.
@tanr The answer to your question is no, I can not access the configuration of the AP to change the IP address, VLAN etc..
These access options (telnet/http/https/ssh) can be enabled under wtp-profile
# config wireless-controller wtp-profile
(wtp-profile) # edit FAP221C-default
(FAP221C-default) # set allowaccess telnet http https ssh
(FAP221C-default) # end
By default, these options have been disabled for security purpose.
You can also overwrite these settings on a per access point (WTP) level by editing the WTP setting
config wireless-controller wtp
(wtp) # edit FP221B3X13009219
(FP221B3X13009219) # set override-allowaccess enable
(FP221B3X13009219) # set allowaccess telnet http https ssh
(FP221B3X13009219) #end
Thanks Wanglei_FTNT that worked like a charm. I understand the security side of things. In my case the radios/AP's are not accessible unless you have the privilege to connect to the "MGMT" VLAN.
Thanks for the update though the really helped me.
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1740 | |
1108 | |
752 | |
447 | |
240 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.