- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Forimanager fails with unknown error on policy install.
When trying to install any policy package, including a blank one, after validation tests I get the following error from FortiManager .
Copy device global objects Vdom copy failed: error 0 - invalid value Copy objects for vdom root "firewall ssl-ssh-profile", "certificate-inspection", id=12317, SKIP - (null) "firewall ssl-ssh-profile", "deep-inspection", id=12332, SKIP - (null) "dynamic interface", "Mapped External", id=19266, INVALID MAPPING - (null)
The relevant section of the security consule debug output gives me this:
copy cli template 'XXX - CLI Config v2' to device[8002, 3]
SECURITY_CONSOLE: Installing user radius
SECURITY_CONSOLE: Installing user radius completed - 0 entries installed, 0 errors
SECURITY_CONSOLE: Installing endpoint-control fctems
SECURITY_CONSOLE: Installing endpoint-control fctems completed - 7 entries installed, 0 errors
SECURITY_CONSOLE: Installing system replacemsg-group
SECURITY_CONSOLE: Installing system replacemsg-group completed - 0 entries installed, 0 errors
SECURITY_CONSOLE: Installing authentication setting
SECURITY_CONSOLE: Installing authentication setting completed - 1 entries installed, 0 errors
SECURITY_CONSOLE: copy_shared_obj_2_dev_vdom: 0 hours 0 minutes 0.147314 seconds.
SECURITY_CONSOLE: Installing dynamic interface
SECURITY_CONSOLE: [XXX-Test-FW2[copy] root] Compiling dynamic interface (seq 12, id Mapped External) fail: invalid value
SECURITY_CONSOLE: Installing dynamic interface completed - 11 entries installed, 1 errors
SECURITY_CONSOLE: copy all policies: 0 hours 0 minutes 0.003060 seconds.
SECURITY_CONSOLE: (1) [XXX-Test-FW2[copy] root] vdom copy error: invalid value (reason:none)
add 0 fail references back to pending list
copy cli template 'XXX - CLI Config v2' to device[8002, 3]
SECURITY_CONSOLE: (1) [XXX-Test-FW2[copy] root] Copy rollbacked, due to error (reason:none)
SECURITY_CONSOLE: (1) Compile time: 0 hours 0 minutes 1.367617 seconds.
SECURITY_CONSOLE: (1) Import time: 0 hours 0 minutes 0.041091 seconds.
SECURITY_CONSOLE: (1) Change dvm status time: 0 hours 0 minutes 0.000001 seconds.
SECURITY_CONSOLE: (1) Aborted due to previous error
SECURITY_CONSOLE: (1) Prepare dev install file time: 0 hours 0 minutes 0.005119 seconds.
SECURITY_CONSOLE:
Any suggestions on how I can hunt down this "Mapped External" interface?
- Labels:
-
FortiGate
-
FortiManager
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
I should say I am running FMG version 7.4.2 and the FTG is on 7.4.3