Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
Karoui1989
New Contributor II

HA Management Interface Reservation

Hello experts,

I have a FortiGate Active-Passive cluster (FG-101F) running version 7.2.10.

I configured the mgmt port on the firewall for management purposes.

interface mgmt.jpg
 

In the HA configuration, I wanted to add the mgmt interface under Management Interface Reservation in order to manage each cluster member separately.

However, the mgmt interface does not appear in the list. I also tried to configure it via CLI, but I received an error message indicating that the interface is unavailable.

ha config.jpg

Thank you for your help.

1 Solution
saneeshpv_FTNT

@Karoui1989 , This could be also because your "mgmt1" interface is referenced somewhere in the configuration (for example, used in the static route configuration or a policy). You check the reference and delete any reference to this and then you should be able to see them available for "Management Interface reservation" under HA. 

 

Regards,

Saneesh

View solution in original post

4 REPLIES 4
funkylicious
SuperUser
SuperUser

hi,

if you want to manage each member separately using the current setup, i would suggest using the set management-ip <> under the mgmt interface for each member and assign a new ip, other than the one already set and then you can use them for invididual tasks/access.

https://docs.fortinet.com/document/fortigate/7.4.7/administration-guide/251230 

"jack of all trades, master of none"
"jack of all trades, master of none"
saneeshpv_FTNT

@Karoui1989 , This could be also because your "mgmt1" interface is referenced somewhere in the configuration (for example, used in the static route configuration or a policy). You check the reference and delete any reference to this and then you should be able to see them available for "Management Interface reservation" under HA. 

 

Regards,

Saneesh

Karoui1989

problem resolved , thank you so mcuh 

esalija
Staff
Staff

@Karoui1989 

 

Please run the below command and check the reference for the mgmt port:

diagnose sys cmdb refcnt show system.interface.name mgmt

 

Please check the KB - https://community.fortinet.com/t5/FortiGate/Technical-Tip-How-to-Check-Referenced-Objects/ta-p/19481...

 

For more details related to HA mgmt interface, check the KB - https://community.fortinet.com/t5/FortiGate/Technical-Tip-HA-Reserved-Management-Interface/ta-p/1901...

 

Best regards,

Erlin

Announcements
Check out our Community Chatter Blog! Click here to get involved
Labels
Top Kudoed Authors