Description

When attempting to run either an enrollment script or a disenrollment script for Sky ATP, an immediate error returns 'error: File-fetch failed'.

Symptoms

root@SRX> op url https://amer.sky.junipersecurity.net/v2/skyatp/ui_api/bootstrap/disenroll/........a4box/.......197phafj.slax
error: File-fetch failed

Solution

This error is triggered when another new enroll/disenroll script has been generated in the Sky ATP portal after the one which is attempting to be executed.

Each time either an enroll or disenroll script is generated in a SkyATP customer realm, it invalidates all previously generated scripts of either type. 

For example, if you generate a "disenroll" script, then immediately generate an "enroll" script, the "disenroll" script will become invalid.  If you try to run it on an SRX device the "error: File-fetch failed" error message will be returned.

Generate and execute enroll/disenroll scripts as you create them. Do not attempt to create multiple scripts at a time.