FortiGate
FortiGate Next Generation Firewall utilizes purpose-built security processors and threat intelligence security services from FortiGuard labs to deliver top-rated protection and high performance, including encrypted traffic.
SAJUDIYA
Staff
Staff
Article Id 232183
Description

This article describes How to delete sniffer from CLI.

 

In 7.0.X and 7.2.X, there is a different options for packet capture.

 

- In 7.0.x or below, it was possible to see Network -> Packet Capture.

-After 7.2.x, Network -> Diagnostics Options.

 

When a unit is upgraded from 7.0.x to 7.2.x, the old sniffer can be removed from Network -> Diagnostics section but the reference will still show the sniffer used.

Scope FortiGate v7.2.x.
Solution

To remove references that are already removed but still appear as sniffers, remove it from CLI as mentioned in the screenshot:

 

# config firewall sniffer

# show

# delete <problematic ID>

 

Here is a screenshot from FortiGate GUI that shows sniffer as a reference which is missing from Network -> Diagnostic Section:

 

SAJUDIYA_1-1670102840571.jpeg

 

Then the sniffer that was showing on the object reference should be removed.

Contributors