Technical Tip: Download Debug Logs and 'execute tac report'
Description
To run the TAC report command on a FortiGate device, super_admin privileges are required.
A comprehensive snapshot of the system's current state is collected by this command, including diagnostics such as memory and CPU usage, firmware version, interface errors, and more.
It is important to run this command when the issue is present.
- Serial number.
- Firmware version.
- FortiGuard updates state.
- Memory and CPU usage.
- Global Configuration.
- Hardware features.
- Interface errors.
- Traffic statistics.
- Device performance status.
- HA diagnostics.
- Process crash log.
Scope
FortiGate v7.
Solution
There are two steps to obtaining the debug logs and TAC report. Note that 'super_admin' permission is required to download Debug Logs and run 'execute tac report', and 'diagnose debug report' commands.
- From the GUI interface: Go to System -> Advanced -> Debug Logs, select 'Download Debug Logs' and save the file.
- From the CLI management interface via SSH or console connection: Connect to the FortiGate (see related article).
On the command line run the following command and let the script run until complete. This will take a few seconds, depending on the amount of data.
' beside the circle. As highlighted in the picture below, by default, all the logs would be saved in the download folder.


For v7.4.x and v7.6.x :
Method 1: Go to System -> Settings -> FortiCare Debug Report and then select the 'Download' option. It is also possible to download it by selecting the question mark on the top right and selecting FortiCare Debug Report.

Method 2. On the Top Right corner Navigate to Help -> Additional Support -> FortiCare Debug Report.

Related articles:
Technical Note: How to create a log file of a session using PuTTY
Technical Tip: How to download Logs from FortiGate GUI.
Related video:
