FortiGate
FortiGate Next Generation Firewall utilizes purpose-built security processors and threat intelligence security services from FortiGuard labs to deliver top-rated protection and high performance, including encrypted traffic.
iskandar_lie
Staff
Staff
Article Id 226238
Description This article describes how to fix CLI console when it's not accessible from FortiGate GUI.
Scope

FortiGate

Solution

Scenario:

  1. The administrator is able to access and log in to the GUI.
  2. SSH is accessible via the terminal.
  3. When CLI is opened from the GUI, it is not responding, showing the error 'Connection lost. Enter to start a new session.'
iskandar_lie_0-1665431261827.png

 

 

  1. Access CLI via SSH: Technical Tip: How to connect to FortiGate using SSHChange the 'admin-sport' in global settings. Make sure that the port does not have a port conflict (SSL VPN, VIP and other services). In this case, 443 --> 4433:

 

sport.PNG

 

 

It now possible to close the GUI and try to re-login using the new admin-sport.

 

new sport.PNG

 

Clear the browsing history of the browser, and restart it. It should work fine. If not, try another browser or open a new incognito tab on the preferred browser.

 

  1. Restart httpsd daemon.

 

fnsysctl killall httpsd

 

  1. Change the admin-server certificate in the system global settings.

 

cert.PNG

 

If the issue persists, contact Fortinet TAC for further assistance.

 

Related documents:

Technical Tip: How to open the CLI window in GUI

Connecting to the CLI
Technical Tip: How to fix CLI error message 'Connection lost. Press Enter to start a new connection'...