Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
David_P28
New Contributor II

FortiAP through VPN

Hello Fortinet community,

I try to connect a FortiAP (FAP221E) to a Fortigate 60F, working as the controller through a VPN IPsec connection.

I changed the AC Discovery Type to manual on the AP, with the IP of the controller. The AP is well displayed in the Managed Forti APs list on the controller, i can authorize it, but it still stay offline.

Can you please help me to understand (and solve of course) what happens and why the AP stays offline ?

Thank you.

BR,

David.

1 Solution
David_P28

Dear All,

I found the solution. The security fabric was not activated in my Ipsec tunnel interface... And in the 6.4.7, it includes the capwap. All is ok now.

Thank you for your advices....

View solution in original post

7 REPLIES 7
boneyard
Valued Contributor

im wondering if this can't be your issue:

https://help.fortinet.com...revent-capwap-frag.htm

David_P28
New Contributor II

Hello Boneyard,

Thank you for your answer, but it doesn't solve my problem. The distant AP stays offline.

i am still searching....

 

boneyard
Valued Contributor

what settings did you try and where?

 

if you have support this might a good one for them, they can look at your environment with you and be able to easier point you to the correct direction.

rwpatterson
Valued Contributor III

Are the OS version levels close? I had issues with a FortiAP 220B on version 4.x and the Fortigate was on version 5.2.x. I could see the FortiAP, but could do nothing until I upgraded the code on it to something newer. Once I upgraded, everything went as I hoped. This was a local install, so your mileage may vary. Always try to keep the firmware levels close. Also make sure CAPWAP is enabled on the interface that the AP is located on as well.

Bob - self proclaimed posting junkie!
See my Fortigate related scripts at: http://fortigate.camerabob.com

Bob - self proclaimed posting junkie!See my Fortigate related scripts at: http://fortigate.camerabob.com
yzhang_FTNT

Which builds are used? If not recent builds, try the latest 6.4 or 7.0 GA builds. 

 

David_P28

Dear All,

I found the solution. The security fabric was not activated in my Ipsec tunnel interface... And in the 6.4.7, it includes the capwap. All is ok now.

Thank you for your advices....

boneyard
Valued Contributor

thanks for reporting back

Labels
Top Kudoed Authors