Managed device admin credentials
The admin credentials of a managed FortiGate are required when FortiManager initiates a connection through the FGFM tunnel and FortiGate does not have the FortiManager serial number recorded. If the FortiGate already trusts the serial number of the FortiManager the credentials are not required.
The admin credentials of a managed device can be manually updated in the FortiManager Device Manager. See Editing device information.
Keeping managed device admin credentials up-to-date is important for a number of scenarios, including:
-
Replacing (RMA) the FortiManager in the future.
-
Performing an HA failover of the FortiManager.
-
Replacing (RMA) a managed FortiGate.
In these scenarios, the serial number of the FortiManager will change or the FortiGate will no longer have the serial number recorded and the FGFM connection will require the admin credentials.
On the FortiGate, you can view the stored serial number of the FortiManager for central management using the following command:
get system central-management
mode : normal
type : fortimanager
serial-number : "FMGVMS0000000000"