I got a weired scenario where two post deployed fortiswitches are showing offline on my fortigate.
When I run both exec switch-controller debug commands, they show me everything is OK literally. Fortilink OK, NTP OK.. but still the CAPWAP interface doesn't get an IP.
The fortilink is allowing security fabric thru, but still CAPWAP ain't forming.
What other troubleshooting could I perform? I've checked so many posts and the solutions rely on the diagnostic commands telling you what's wrong, in my case, nothing shows otherwise.
Hi,
Please follow the below article for your help-:
Fix FortiSwitch showing with the 'Off... - Fortinet Community
Regards
Rakesh
Hi, please check on the fortiswitch as well like the management port number on the switch and the time sync on it, if it is still the same issue please open a ticket with the fortiswitch team probably there is some thing wrong with the topology
You can collect a sniffer on FGT and check if you see capwap response. For example, FSW ip is 1.1.1.1, so on FGT CLI you can run:-
FGT# diag sniffer packet any "port 5246 and host 1.1.1.1" 4 0 a (ctrl+c to stop)
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1751 | |
1114 | |
766 | |
447 | |
241 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.