FortiGate
FortiGate Next Generation Firewall utilizes purpose-built security processors and threat intelligence security services from FortiGuard labs to deliver top-rated protection and high performance, including encrypted traffic.
mpeddalla
Staff
Staff
Article Id 271202
Description This article describes how to stop and restart the IPS engine.
Scope FortiGate.
Solution

There are scenarios where it is necessary to disable/stop/restart the IPS engine to optimize high CPU or memory.

 

  • To verify the status of the IPS engine:

 

diagnose test application ipsmonitor 1

 

chrome_zGkDIbYTkX.png

 

It is possible to see some status of the IPS engine.

 

  • In the Below screenshot, it is possible to see the information to start and stop the IPS engine:

 

chrome_W3EoB6LvbD.png

 

  • To stop the IPS engine, run this CLI command:

 

diagnose test application ipsmonitor 98

 

  • Verify if the IPSengine is stopped or not

 

diagnose sys top 1 20   <----- Ctrl+c to stop debug (by checking whether the daemon is running or not).

diagnose test application ipsmonitor 1  

 

  • In the below screenshot, the information status is missing which was visible in image 1.


chrome_KFYMsrn6CL.png

 

  • To restart  the IPSengine, run this CLI command:

 

diagnose test application ipsmonitor 99

 

image.png

 

  • To start the IPS engine service back, run the below CLI command:

diagnose test application ipsmonitor 97

 

  • Verify if the IPS engine works or not by running the below CLI command:

 

diagnose test application ipsmonitor 1


chrome_nlHdJSnNvf.png