Guten Tag zusammen,
leider kommen wir über die Central beim Firewall-Management nicht weiter.
Auf uns warten ab jetzt diverse Kunden Migrationen von den UTMs auf die XGS.
Die Vorkonfiguration über das Management der Central bietet an der Stelle einige Vorteile, wenn das hinzufügen der neuen Hardware dann funktioniert.
Wir sind nach Standardanleitung des Light Touch Prozesses vorgegangen.
0. Central User ist SuperAdmin
1. Neuen Kunden anlegen
2. Firewall per Serial hinzufügen
3. Registrierung erfolgt auf das Konto des Super Admin
3. Grundinfos eintragen
4. Lighttouch Config download - dann auf weiter
4. Config Datei auf einen in FAT32 formatierten USB Stick kopieren
5. Firewall online auf Port 2 mit eingestecktem USB Stick starten.
An dem Punkt hängt man fest in dem in der Central ausschließlich warten auf Bereitstellung steht.
USB Stick mit Config erstellt ein log, in dem sind diverse Fehler zu erkennen, allerdings wird aber auch ein abschließender Erfolg ausgegeben.
-------------------- mdev.log -------------------- 2023-04-17 14:47:11Z config_from_USB: Selecting the first partition available, sdb1 2023-04-17 14:47:11Z config_from_USB: Devnode of USB, /dev/sdb1, created. 2023-04-17 14:47:11Z config_from_USB: USB directory mounted successfully. 2023-04-17 14:47:11Z config_from_USB: Import file found, configuration_X10121GCYK3MJ93.config 2023-04-17 14:47:11Z config_from_USB: Import file size is acceptable. 2023-04-17 14:47:11Z config_from_USB: Networkd service is running. Proceeding to apply the configurations 2023-04-17 14:47:11Z apply_configuration: Extraction of /content/configuration_X10121GCYK3MJ93.config to /content/usb_config_files successful. 2023-04-17 14:47:11Z apply_configuration: EULA is accepted. 2023-04-17 14:47:11Z apply_configuration: Initiating Zerotouch flow. 2023-04-17 14:47:11Z import_configuration: Importing configurations from /content/usb_config_files/pre_config.tar 2023-04-17 14:47:11Z import_configuration: { "status": 200, "statusmessage": "Restore file uploaded successfully" } 2023-04-17 14:47:11Z dump_logs_on_USB: Dumping logs on USB succeded. 2023-04-17 14:47:11Z import_configuration: Configurations imported successfully. 2023-04-17 14:48:23Z check_server_availability: after '1' try connectivity of central:'false' and up2date:'false'. 2023-04-17 14:48:23Z check_server_availability: Central server is not reachable after '1' try. Connectivity check will be done again after '5' seconds. 2023-04-17 14:48:40Z check_server_availability: Central server is reachable on '2' try. ZT: Central Activity: Beacon request : The operation timed out, please try again later : Failed 2023-04-17 14:47:11Z apply_zerotouch_configuration: Failed to initiate beacon request. -------------------- apiparser.log -------------------- /content/usb_config_files/pre_config.tar: INFO Apr 17 14:47:24Z [11484]: Sanity check not required. And XML file is valid. xml: /sdisk/api-2023-04-17-15-47-24/Entities.xml. INFO Apr 17 14:47:24Z [11484]: Start Set Handler,Component : Interface ERROR Apr 17 14:47:24Z [11484]: Key:ISCrEntity is not found in RequestMap File for Interface. WARNING Apr 17 14:47:24Z [11484]: Can't get the <Add/Update> element from map file, So Mode value is 'Add'. WARNING Apr 17 14:47:24Z [11484]: Mode value for 'Add' is not there, So Mode value is 'Update'. ERROR Apr 17 14:47:24Z [11484]: Parser Error: xmlvalue for jsonkey="bootproto_ip6", xmlelement="/Interface/IPv6Assignment" cannot be found in request file. ERROR Apr 17 14:47:24Z [11484]: type != const in logicaloperator.So string comparision is done. ERROR Apr 17 14:47:24Z [11484]: type != const in logicaloperator.So string comparision is done. ERROR Apr 17 14:47:24Z [11484]: type != const in logicaloperator.So string comparision is done. ERROR Apr 17 14:47:24Z [11484]: type != const in logicaloperator.So string comparision is done. ERROR Apr 17 14:47:24Z [11484]: Parser Error: xmlvalue for jsonkey="gatewayip", xmlelement="/Interface/GatewayIP" cannot be found in request file. ERROR Apr 17 14:47:24Z [11484]: type != const in logicaloperator.So string comparision is done. ERROR Apr 17 14:47:24Z [11484]: json object not found with key="bootproto_ip6" to handle logicaloperator. ERROR Apr 17 14:47:24Z [11484]: type != const in logicaloperator.So string comparision is done. ERROR Apr 17 14:47:24Z [11484]: type != const in logicaloperator.So string comparision is done. ERROR Apr 17 14:47:24Z [11484]: type != const in logicaloperator.So string comparision is done. ERROR Apr 17 14:47:24Z [11484]: type != const in logicaloperator.So string comparision is done. ERROR Apr 17 14:47:24Z [11484]: type != const in logicaloperator.So string comparision is done. ERROR Apr 17 14:47:25Z [11484]: Flag setting for this opcode is 18. INFO Apr 17 14:47:46Z [11484]: Opcode response: status:200 INFO Apr 17 14:47:46Z [11484]: Import for this component is done sucessfully!!!INFO Apr 17 14:47:46Z [11484]: End SET Handler, Status : Success, Component : Interface, Transaction : , Operation : NONE. MESSAGE Apr 17 14:47:46Z [11484]: ENTITY 'Interface' IMPORT Success INFO Apr 17 14:47:46Z [11484]: Start Set Handler,Component : Interface ERROR Apr 17 14:47:46Z [11484]: Key:ISCrEntity is not found in RequestMap File for Interface. WARNING Apr 17 14:47:46Z [11484]: Can't get the <Add/Update> element from map file, So Mode value is 'Add'. WARNING Apr 17 14:47:46Z [11484]: Mode value for 'Add' is not there, So Mode value is 'Update'. ERROR Apr 17 14:47:46Z [11484]: Parser Error: xmlvalue for jsonkey="bootproto_ip6", xmlelement="/Interface/IPv6Assignment" cannot be found in request file. ERROR Apr 17 14:47:46Z [11484]: type != const in logicaloperator.So string comparision is done. ERROR Apr 17 14:47:46Z [11484]: type != const in logicaloperator.So string comparision is done. ERROR Apr 17 14:47:46Z [11484]: type != const in logicaloperator.So string comparision is done. ERROR Apr 17 14:47:46Z [11484]: type != const in logicaloperator.So string comparision is done. ERROR Apr 17 14:47:46Z [11484]: Parser Error: xmlvalue for jsonkey="interfaceip", xmlelement="/Interface/IPAddress" cannot be found in request file. ERROR Apr 17 14:47:46Z [11484]: Parser Error: xmlvalue for jsonkey="netmask", xmlelement="/Interface/Netmask" cannot be found in request file. ERROR Apr 17 14:47:46Z [11484]: Parser Error: xmlvalue for jsonkey="gatewayip", xmlelement="/Interface/GatewayIP" cannot be found in request file. ERROR Apr 17 14:47:46Z [11484]: type != const in logicaloperator.So string comparision is done. ERROR Apr 17 14:47:46Z [11484]: json object not found with key="bootproto_ip6" to handle logicaloperator. ERROR Apr 17 14:47:46Z [11484]: type != const in logicaloperator.So string comparision is done. ERROR Apr 17 14:47:46Z [11484]: type != const in logicaloperator.So string comparision is done. ERROR Apr 17 14:47:46Z [11484]: type != const in logicaloperator.So string comparision is done. ERROR Apr 17 14:47:46Z [11484]: type != const in logicaloperator.So string comparision is done. ERROR Apr 17 14:47:46Z [11484]: type != const in logicaloperator.So string comparision is done. ERROR Apr 17 14:47:46Z [11484]: Flag setting for this opcode is 18. INFO Apr 17 14:48:14Z [11484]: Opcode response: status:200 INFO Apr 17 14:48:14Z [11484]: Import for this component is done sucessfully!!!INFO Apr 17 14:48:14Z [11484]: End SET Handler, Status : Success, Component : Interface, Transaction : , Operation : NONE. MESSAGE Apr 17 14:48:14Z [11484]: ENTITY 'Interface' IMPORT Success
This thread was automatically locked due to age.