Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
CL1
New Contributor III

Non configurable Switch integration with fortiNAC

Hello FortiNAC community,

 

Recently i started a new projet where i have to deploy and configure FortiNAC, keep in mind i know nothing abt FortiNAC so bear with me please

 

I encountered an issue when i was trying to add a device(Switch in this case) in the inventory, my client told me that they have unconfigurable Switches

 

Does anyone have a solution on how to add a Switch that you can't configure an IP address in ?

 

Thank you in advance

Best regards,

3 REPLIES 3
ebilcari
Staff
Staff

FNAC can not have visibility or make enforcement in devices that are not manageable (SNMP/CLI/API/RADIUS). In such cases you can try to gain visibility or manage the connected hosts through the network device where these hosts terminate (another L2 switch or the L3 device that is the gateway).

Some details are shown here.

- Emirjon
If you have found a solution, please like and accept it to make it easily accessible for others.
CL1
New Contributor III

Hello,

 

Thank you for your answer, after a while we managed to connect all those switches with the ProCurve switch 1800-24g

 

I encountered another issue 

 

FNAC recognised some devices, but the issue is FortiNAC didn't register them, they're still in the "rogue" states, i used SNMP and Vendor OUI methods, Any tips please ?

 

Kind regards,

Sx11
Staff
Staff

Hello @CL1,

 

registration options are described in following article in section "Stage 4. Define Registration Methods."

https://community.fortinet.com/t5/FortiNAC/Technical-Tip-Comprehensive-guide-for-a-simple-FortiNAC/t...

 

The most commonly used are automatic 802.1x which will register you hosts immediately after they authenticate successfully or use the Device profiler with a Location and Vendor OUI combinations.

This article shows example to profile devices in OT/IoT environments:

https://community.fortinet.com/t5/FortiNAC-F/Technical-Tip-Device-profiling-methods-for-IoT-OT-devic...

 

Regards

sx11
Announcements

Select Forum Responses to become Knowledge Articles!

Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.

Labels
Top Kudoed Authors