I need help resolving this issue. Please see the error log below:
Copy device global objects
validation error on firewall policy 5, by dynamic interface check
Vdom copy failed:
error 15 - used
Copy objects for VDOM root
"firewall ssl-ssh-profile", "certificate-inspection", id=3586, SKIP - (null)
"firewall SSL-ssh-profile", "deep-inspection", id=3595, SKIP - (null)
"endpoint-control FCTEMS", "1", id=4831, SKIP - (null)
....
Nominating a forum post submits a request to create a new Knowledge Article based on the forum post topic. Please ensure your nomination includes a solution within the reply.
it is hard to say but looks like something is wrong with the interfaces in that policy.
Anyway your FMG did install the Policy Package & Device Settings. It just skipped the erroneous policy.
--
"It is a mistake to think you can solve any major problems just with potatoes." - Douglas Adams
@sw2090 thanks for your comment. I could not proceed with the installation of the Policy Package & Device Settings because of the error. So FMG did install the Policy Package & Device Settings. It still says "Never Installed".
Hi,
According to the error message it says something about a interface in rule id #5 that uses a dynamic interface object that maybe is not mapped/created for the device in question ?
Also, take a look at this to see what does "Never installled" means.
The issue was caused by Rule id #5. To resolve it, I re-imported the policy package and cloned a new policy that does not include rule #5. Thank you for your response.
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1732 | |
1106 | |
752 | |
447 | |
240 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.