Hello Dears
I have two fortigate nodes and have an issue in HA as show in debug could anyone help me to tshoot it ?
FortiGate-601E-1 # get system ha status
HA Health Status: OK
Model: FortiGate-601E
Mode: HA A-P
Group: 0
Debug: 0
Cluster Uptime: 1 days 3:8:52
Cluster state change time: 2022-09-19 11:21:18
Primary selected using:
<2022/09/19 11:21:18> vcluster-1: FGXX is selected as the primary because its uptime is larger than peer member FG6H1ETB21908174.
<2022/09/19 11:21:18> vcluster-1: FGXX is selected as the primary because the value 0 of link-failure + pingsvr-failure is less than peer member FGXX.
<2022/09/19 10:28:47> vcluster-1: FGXX is selected as the primary because it's the only member in the cluster.
<2022/09/19 10:28:25> vcluster-1: FGXX is selected as the primary because the value 0 of link-failure + pingsvr-failure is less than peer member FGXX.
ses_pickup: disable
override: disable
Configuration Status:
FG6H1ETB21903183(updated 2 seconds ago): in-sync
FG6H1ETB21908174(updated 3 seconds ago): out-of-sync
System Usage stats:
FG6H1ETB21903183(updated 2 seconds ago):
sessions=709, average-cpu-user/nice/system/idle=0%/0%/0%/100%, memory=29%
FG6H1ETB21908174(updated 3 seconds ago):
sessions=3, average-cpu-user/nice/system/idle=0%/0%/0%/100%, memory=28%
HBDEV stats:
FGXX(updated 2 seconds ago):
ha: physical/1000auto, up, rx-bytes/packets/dropped/errors=27683685/57192/0/0, tx=23226902/62417/0/0
FGXX(updated 3 seconds ago):
ha: physical/1000auto, up, rx-bytes/packets/dropped/errors=5866259/16129/0/0, tx=7558516/14969/0/0
MONDEV stats:
FG6H1ETB21903183(updated 2 seconds ago):
ha: physical/1000auto, up, rx-bytes/packets/dropped/errors=27683685/57192/0/0, tx=23226902/62417/0/0
FGXX(updated 3 seconds ago):
ha: physical/1000auto, up, rx-bytes/packets/dropped/errors=5866259/16129/0/0, tx=7558516/14969/0/0
Primary : FortiGate-601E-1, FGXX, HA cluster index = 1
Secondary : FortiGate-601E-1, FGXX, HA cluster index = 0
number of vcluster: 1
vcluster 1: work 169.254.0.2
Primary: FGXX, HA operating index = 0
Secondary: FGXX, HA operating index = 1
Bests
Nominating a forum post submits a request to create a new Knowledge Article based on the forum post topic. Please ensure your nomination includes a solution within the reply.
Hi,
This one could be a good starting point: https://community.fortinet.com/t5/FortiGate/Troubleshooting-Tip-HA-synchronization-issue-cluster-out...
Hi,
If the cluster is still staying out of sync, the below article could help drill down and identify which object(s) are not getting synchronised.
Technical Tip: Troubleshooting a checksum mismatch... - Fortinet Community
Best regards,
Jin
Hi MustphaBassim,
>> May I know since when the issue started?
>> Were there any recent upgrade performed ?
>> Is the issue intermittent or persistent ?
>> Does the issue occurs at specific time and then resolve automatically ?
>> Kindly share the output of below:
#config sys ha
#show full
#end
#diag sys ha history read
Regards,
Parteek
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1732 | |
1105 | |
752 | |
447 | |
240 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.