I use a product from Solarwinds called Cattools to automate nightly backups of the firewall configurations. This software handles most every device on our network including Dell switches, Cisco Switches/Routers/Firewalls/Access Points, and FortiGates. The software runs as a service on Windows Server 2008 R2. Every night at 8PM, the schedule kicks off. The software opens an SSH session to each device and does a Cisco equivalent of "show run" and saves the output to a file on the server. I have 60D Fortigates running 5.0.7 and 2 800Cs in HA running 5.2.4. All of these devices work fine. I just deployed a FortiWiFi 60D running 5.2.5 and I cannot get this to work at all. I contacted Solarwinds and they stated that this is documented as a bug by Fortinet. The number they provided is 0300588. I have support for this device, but I've been unable to get good information about this bug and when it will be fixed from support. 1. I wondered from anyone out here if there was a secure page that customers can go to do bug research? I can do this on Cisco's web page. 2. If not, does anyone know anything about this. We have to have this ability to backup the configuration for PCI compliance. Cattools sends a report every day after the backups and will tell us if the configuration has changed. There are some other file management things that the software does as well.
Thanks
mrandrew
Andrew
Nominating a forum post submits a request to create a new Knowledge Article based on the forum post topic. Please ensure your nomination includes a solution within the reply.
I know anything about the bug. But since you mentioned it works with 800C/5.2.4, I would recommend trying 5.2.4, or even 5.2.3. Either 5.2.4 or 5.2.5 introduced a different problem to our 60D installation to our customers. So we went back to 5.2.3.
Issue was resolved. Received this from Fortinet:
“We are not supporting 1024 SSH algorithm in 5.2.7 or any new firmware beyond this via General Release (on 5.2.x family) You need to use tools that can support 2048”
Solarwinds released an update for Cattools that fixed the issue. Version 3.11.
Andrew
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1547 | |
1031 | |
749 | |
443 | |
210 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.