Skip to main content
memo44
New Member
April 14, 2013
Question

monitor and kill sessions

  • April 14, 2013
  • 4 replies
  • 75469 views
Hi guys, I' m monitoring my sessions and I can see that I have too many active sessions. My two questions are: 1- how can I kill a session (in general)? I tried clicking on the delete button on the session monito, but it doesn' t work. any cli command? 2- one of the sessions Im concern about, is a web console connection. Why there is more than 20 sessions for the web console (im connected remotely from the wan) As you can see on the screen shot, my ip address (50....45) has like 20 connections and I only have one web browser open to the web console. thanks for your help.

    4 replies

    Robert_Cerny
    New Member
    April 24, 2013
    Hi, you can limit session TTL but I don' t think you can actually delete a session. It' s not surprising that you have more than one opened session from your browser to a single web page - it' s the way how browsers work nowadays to speed up page loading.
    memo44
    memo44Author
    New Member
    April 25, 2013
    Thanks for the reply, I understand about multiple connections to a site, but more that 30 connections to the forti dashboard web console seems a little too much.
    rwpatterson
    New Member
    April 25, 2013
    Each time you refresh the page it adds more.
    billp
    New Member
    April 25, 2013
    This KB doc shows you how to kill sessions via the CLI: http://kb.fortinet.com/kb/microsites/search.do?cmd=displayKC&docType=kc&externalId=FD31635&sliceId=1&docTypeID=DT_KCARTICLE_1_1&dialogID=48659605&stateId=0%200%2048661386 It' s also possible to limit sessions using a DOS policy, but this is only useful if you have a workstation generating many hundreds of sessions that are impacting the firewall' s performance.
    ede_pfau
    SuperUser
    SuperUser
    April 26, 2013
    Nice post Bill. I was just too lazy to write it all down. But frankly, I wouldn' t mind a few hundred sessions on that box. 99% of them are idle anyway.