Description
This article describes how to clear logons for an email harvesting captive portal.
Scope
FortiGate.
Solution
These logons are registered in the device authentication list. This list can be viewed with the command
diagnose user device list
To filter for a specific IP, use
diagnose user device filter addr <IP address>
To clear logons according to the filter, use:
diagnose user device clear
To clear the filter:
diagnose user device filter clear
If IP addresses are not included and MAC addresses show instead after running the following command...
diagnose user device list
... It will be necessary to clear sessions using the MAC addresses of the devices with the following command:
diagnose firewall auth mac clear