FortiGate
FortiGate Next Generation Firewall utilizes purpose-built security processors and threat intelligence security services from FortiGuard labs to deliver top-rated protection and high performance, including encrypted traffic.
sreddi
Staff
Staff
Article Id 197841

Description

 

This article describes how to delete a VDOM that is no longer required in a configuration.    


Solution

 
Ensure there is no configuration associated with the VDOM such as firewall policies or firewall objects.

If there is any reference on the VDOM, 'Delete' button will be greyed out.
The number of reference is visible under 'Reference' column.
 
 
Select 'Reference' to see the details.
 
 
Based on the example given above, port 9 and port 10 need to be removed from VDOM2.

Go to Network -> Interfaces, select port 9  & port 10, and move the port from VDOM2 to root.
 
 
Follow the above procedure and check if there is any physical interface associated with VDOM2.
 
JeanPhilippe_P_0-1702459190379.png

 

Sometimes, it is possible to encounter some reference that cannot be deleted from GUI, and it can only be done from CLI. To find out what is referencing the VDOM from CLI  :
 
On Global VDOM's CLI:
Fortigate (global) # sh full | grep <insert VDOM name> -f
 
This will show which config is still referencing the VDOM. For example, the VDOM name is VDOM2 :
 
grep.png
Proceed to delete VDOM2 from the referenced section as pointed out above.
 
Delete the VDOM2 from the VDOM configuration :

Go to System -> VDOM -> highlight VDOM2 and select 'Delete'.
 
 
This VDOM is now successfully removed from the configuration.

 

If the VDOM is configured on the HA cluster with the vcluster option, make sure that the VDOM that has to be deleted is active on the same cluster member, where the management VDOM is.

 

Note.

The 'root' VDOM cannot be deleted.

This is the default VDOM where interface binding reverts to when disabling a multi-vdom environment.

 

Related Articles:

Troubleshooting Tip : verifying FortiGate configuration objects references and dependencies with the...