Hi, on a new installation (all new products never used) I can't get FortiAPs to appear on a FortiGate.
The FortiGate (100F) is connected via Fortilink to a FortiSwitch POE 8 port to which two new FortiAP 231K are connected.
I have as reference these guides which I have followed to the letter.
https://community.fortinet.com/t5/FortiAP/Technical-Tip-Manage-a-FortiAP-with-FortiGate/ta-p/223348
https://community.fortinet.com/t5/FortiGate/Technical-Tip-How-to-Integrate-FortiSwitch-and-FortiAP-i...
From the CLI of the Fortigate I see that the FortiAPs have taken the IP addresses of the DHCP Server configured on the VLAN and I can also connect.
But the FortiAPs are not shown in “Managed FortiAPs.”
The firmwares are:
Fortigate v7.2.11 build1740 (Mature)
FortiAP v7.4.5 build6183
FortiSwitch 7.6.1 build1047
What can I check?
Thank you.
It looks like your Fortigate version (7.2.11) cannot manage FortiAP version (7.4.5), look at the compatibility matrix https://docs.fortinet.com/document/fortiap/7.6.0/fortiap-and-fortios-compatibility-matrix/261175/for... according to which, you'd need your FGT to be at least 7.4.7 - 7.4.8 ForitOS.
In general, the upgrade order convention in such topologies is Fortigate -> FortiSwitch -> FortiAPs, bringing them to the compatible versions.
I don't know if it's right to continue in this thread but since it's all part of the same configuration I'll report it.
I connected a 24-port FortiSwitch and a 48-port FortiSwitch to the Fortigate on two other Fortilink-enabled ports.
But I often see the POE FortiSwitch go offline and therefore also the APs and sometimes these two added switches go offline.
Why? What should I check?
Thank you.
That is not normal behavior - do you see something at that time in Fortigate logs -> System Events?
And yes, it is better to create a new topic, as many people already read the original post and will not be reading again this thread.
Thank you for the clarification.
Would it be preferable to stay on 7.4.x or go to 7.6.x already at this point?
Created on 06-09-2025 02:17 AM Edited on 06-09-2025 02:18 AM
My personal opinion, and wisdom of masses, is not to go on FortiOS version before x.x.6, that is not before FortiOS 7.6.6. Otherwise you risk discovering new bugs and working as Fortinet QA for free. I run most of my clients' FGTs either on 7.0.17 or 7.2.11 and both are just fine, while 7.0.17 goes out of support in Sept 2025 so will have to upgrade, the 7.2. end of support is in Sept 2026, so plenty of time for me to upgrade.
In your case (Downgrading FortiAPs is painful, not to say some new versions come w/o older version firmware available) I'd go to 7.4.7 (7.4.8 is quite new and there are contradicting reports on strange bugs, I'd wait until it is confirmed stable enough).
I have clients with 7.4.7 as well, and all run fine.
I did some testing.
With both 7.4.8 and 7.4.7 the APs were captured.
However, 7.4.7 showed a problem: when I restore the configuration file then I lose access (password does not work) and have to reset.
Which does not happen with 7.4.8.
User | Count |
---|---|
2559 | |
1357 | |
795 | |
650 | |
455 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.