Created on
07-20-2021
08:51 PM
Edited on
08-27-2025
12:25 AM
By
Jean-Philippe_P
Description
Solution
diagnose vpn tunnel flush <my-phase2-name>
The command 'diagnose vpn tunnel flush' might not flush the tunnel in some FortiOS versions. Use 'diagnose vpn ike gateway clear name <my-phase1-name>' instead. Check the output when both commands are used on v7.4.3.
In the multi-VDOM environment, the command is found in the corresponding VDOM, or the VPN gateway can be cleared or flushed from the management VDOM. The CLI commands do not appear in the global VDOM.
Note: A configuration backup should be created before running this command. It is recommended to run the command during a maintenance window or for troubleshooting purposes.
Related articles:
Technical Tip: How to bring down the shortcut VPN tunnel created by Auto-Discovery VPN (ADVPN)
Technical Tip: Different methods to bring down an IPsec tunnel after a WAN connectivity failure
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.