FortiGate Connector for Cisco ACI

Basic Troubleshooting

Verify Service Graph deployed

If Service Graph Deployed failed:

Navigate under Tenant > Deployed Graph Instances to check the state of the deployed graph.

If state is failed apply, then go down one level to the Deployed Graph Instances and navigate to the Fault tab to check the error log. Any error code in 1000 range are relating to FortiGate while others belong to APIC Currently we only have the following error code:

Error Code Definition
1010 Configuration Error in device configuration
1020 Configuration Error in function configuration
1030 Internal Error -3
1040 Internal Error -4
1050 Internal Error -5
1070 Feature not available

Service deployed but parameters missing                                                                                Basic Troubleshooting

Service deployed but parameters missing

If Service deployed but certain parameters not showing up on Fortigate, please follow the below steps:

  1. Navigate to Tenant> Provider EPG>L4-L7 Parameters, ensure the missing parameters are listed.If not, double check the functional profile to confirm the configuration.
  1. If yes, login on to Cisco APIC controller to examine the debug log. The debug log is located at

/data/devicescript/Fortinet.FGAPIC.1.0/logs and the log file name is debug.log. Examine the log file and grab fields with “[10.160.11.103, <xxxx>]:” formats and scan through the logs associated to the parameters in question.

  1. If all failed, please forward the entire captured log to Fortinet Technical Assistance Center for further troubleshooting.

Leave a Reply

Your email address will not be published. Required fields are marked *

This site uses Akismet to reduce spam. Learn how your comment data is processed.