Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
ZohebSk
New Contributor

Unable to re-add FortiGate to FortiManager Cloud - Certificate Serial Number Mismatch Error

I am running into an issue re-adding a FortiGate (running v7.4.8) to my FortiManager Cloud. The device was previously managed by this FMG but was removed temporarily for maintenance.

Now, when I try to re-link them from the FortiGate side (Security Fabric > Fabric Connectors > FortiManager), I receive the following error:

"The FortiManager's access to the FortiGate will be authenticated by the FortiManager certificate. The serial number from the certificate must match the serial number observed on the FortiManager. Could not connect to the FortiManager to retrieve its serial number."

3 REPLIES 3
joshbergm
New Contributor III

Hi!

Is the entry still visible in the FortiManager Cloud? You can try to delete the FortiGate in FortiManager Cloud and re-add it after. 

ZohebSk

Entry is not visible in fortimanager cloud

 

farhanahmed
Staff
Staff

@ZohebSk  Usually this error indicates the FGT is not able to reach FMG.


1. Try setting fmg-source-ip on the FGT and see if that helps.

2. Make sure the FGT can resolve 'fortimanager.forticloud.com'.
3. Find the IP of your FMG Cloud instance and run sniffer to see if there are any issues.

4. Also run the FGFM debugs on the FGT and see if it shows any details.


Refer to the KB article  to tshoot:
https://community.fortinet.com/t5/FortiManager/Troubleshooting-Tip-How-to-connect-FortiGate-to-Forti...
https://community.fortinet.com/t5/FortiManager/Troubleshooting-Tip-How-to-troubleshoot-connectivity-...

FA
Announcements
Check out our Community Chatter Blog! Click here to get involved
Labels
Top Kudoed Authors