Hei, am new here and have a question to EMS and clienter.
I see that Clients are online but EMS do not see them as active.
DNS is OK, firewall is disabled, its possible to ping the Clients with their domanenames, Remote registry service is running.
What is the problem and how can I fix that.
Was surching now for many hours...
Thanks Peter
Solved! Go to Solution.
AD has different forest functional levels etc and FortiClient is most likely current if you are deploying with EMS itself. Was just curious to gain more information while I do some digging.
Mike Pruett
Hey Peter, Sounds like you've hit the same issue as us. We've had a TAC ticket open since November but still not fixed. After a few false starts I believe TAC have found the issue and that's duplicate UID's within FortiClient. Initially we were blamed as FN thought we were deploying FC via an image but this isn't the case, we deploy FC using the EMS software creator so it would seem like an EMS bug, although they haven't confirmed this yet. We're not so bothered about the client being shown as 'Not Installed' in EMS but what continues to cause us real pain is the constant VPN disconnects as EMS keeps pushing the same profile to the client. Possibly using the default profile for all clients would help but this isn't an option for us. I'm a great fan of the FortiGate firewalls but this EMS ticket has been open for 7 months and currently no sign of a fix on the horizon. Not sure how long our business will tolerate constantly disconnecting (IPSec) VPN Connections.
If if helps here's the ticket number for the above ticket, might help you get some traction with support 1969466.
What version of EMS / FortiClient?
What version of Windows / AD?
Mike Pruett
Not sure who you're asking! We're running EMS 1.0.5 (latest release). All clients are Windows 7, EMS server is running 2012 not sure which version of AD though.
AD has different forest functional levels etc and FortiClient is most likely current if you are deploying with EMS itself. Was just curious to gain more information while I do some digging.
Mike Pruett
I've checked with one of the AD chaps and the functional level is currently 2003.
Hy, we have the same Version as Steve, just updatet.
And I see another issue here, that fucking https://server:10443/installers certificate problem. Not one of my Clients has updatet the FC. Why not just using the lokal share for download?
Did you ever get a fix for this? I think we might be in the same boat.
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1737 | |
1108 | |
752 | |
447 | |
240 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.