Fortinet black logo

New Features

FQDN for FortiPresence server IP address in FortiAP profiles 7.0.2

Copy Link
Copy Doc ID 4f6cd3c1-22cb-11eb-96b9-00505692583a:777278
Download PDF

When defining the FortiPresence server for location based services, the server address can be configure as an FQDN. This means that the wireless controller configuration does not need to be changed when the FortiPresence server IP address changes but it keeps the same domain name.

To configure a wireless controller profile with a FortiPresence server FQDN:
config wireless-controller wtp-profile
    edit "FAP431F-default"
        config lbs
            set fortipresence foreign
            set fortipresence-server-addr-type fqdn
            set fortipresence-server-fqdn "test.fortipresence.com"
            set fortipresence-port 10443
        end
    next
end
To verify that FortiAP receives the FortiPresence server domain name and resolves the IP address:
FortiAP-431F # wcfg
WTP Configuration
    name                 : FortiAP-431F
    ...
    fsm-state            : RUN 75
    wtp-ip-addr          : 10.19.20.20:5246 - 10.19.20.20:53582
    ac-ip-addr           : 172.18.56.42:5246 - 172.18.56.42:5247        STATIC
    ...
    fortipresence        : foreign, ble enabled, rogue disabled, unassoc_sta enabled, freq 30
                           server 0172.16.200.133(test.fortipresence.com):10443 secret csum [0xc6a7] project [fortipresence]
    LAN mode             : WAN LAN, ESL
    ...

When defining the FortiPresence server for location based services, the server address can be configure as an FQDN. This means that the wireless controller configuration does not need to be changed when the FortiPresence server IP address changes but it keeps the same domain name.

To configure a wireless controller profile with a FortiPresence server FQDN:
config wireless-controller wtp-profile
    edit "FAP431F-default"
        config lbs
            set fortipresence foreign
            set fortipresence-server-addr-type fqdn
            set fortipresence-server-fqdn "test.fortipresence.com"
            set fortipresence-port 10443
        end
    next
end
To verify that FortiAP receives the FortiPresence server domain name and resolves the IP address:
FortiAP-431F # wcfg
WTP Configuration
    name                 : FortiAP-431F
    ...
    fsm-state            : RUN 75
    wtp-ip-addr          : 10.19.20.20:5246 - 10.19.20.20:53582
    ac-ip-addr           : 172.18.56.42:5246 - 172.18.56.42:5247        STATIC
    ...
    fortipresence        : foreign, ble enabled, rogue disabled, unassoc_sta enabled, freq 30
                           server 0172.16.200.133(test.fortipresence.com):10443 secret csum [0xc6a7] project [fortipresence]
    LAN mode             : WAN LAN, ESL
    ...