Created on 11-24-2014 05:31 PM Edited on 09-13-2024 07:23 AM By AlexC-FTNT
Description
FortiGate, FortiSwitch, FortiController, FortiProxy.
The following models are known to support this functionality (the list may be incomplete):
FortiGate.
(Note: xxx1 is the same model as xxx0, with an additional HDD, and does not change the comlog availability) .
B Series, Models: 5001B Gen 2.
C Series, Models: 1000, 3240, 5001C, 5101C.
D Series, Models: 300, 400, 500, 600, 800, 900, 1000, 1200, 1500, 3000, 3100, 3200, 3700, 3800, 3810, 3815, 3960, 3980, 5001.
E Series, Models: 300,500,1100,2000,2200,2500,3300,3400,3600,3960,3980,5001.
F Series, Models: 400, 600, 1000, 1800, 2200, 2600, 3000, 3500, 3700, 4200, 4400, 4800, 6300, 6500, 7121.
FortiGate VM does not support the comlog feature.
FortiSwitch-5003B Gen 2.
FortiSwitch-5203B Gen 2.
FortiController-5103B.
FortiController-5902D.
FortiController-5903C.
FortiProxy does not support the comlog feature.
Solution
This flash drive will not be erased during the format from the BIOS menu or as a result of a software upgrade. It is configurable per physical unit and cannot be used for reporting or remote logging.
If enabled, the log contains all console output starting from the time it is enabled to the time it is disabled. It also writes a timestamp every hour to confirm that logging was enabled.
If the unit encounters unexpected behavior such as sudden reboots or non-responsiveness, the output of the following might show some clues as to why the issue happened.
Enable and use COMLog from the CLI:
diag debug comlog enable/disable
diag debug comlog info
diag debug comlog clear
diag debug comlog read
Note:
This command is not visible, will not show if '?' is used, and will not auto-complete with the Tab key.
The last word, 'read', must be typed.
config system console
set output standard
end
It is recommended to use the WEB GUI or SSH connection to collect the output instead of the console port.
Since the console speed is limited, displaying the COMLog can take a significant amount of time.
WARNING: While comlog is enabled, avoid configuring passwords and license keys as these would be in plaintext and readable in the log. It is possible to disable comlog before configuring passwords and license keys and enable the comlog after the configuration.
Enable COMLog from the Web-based Manager:
zlib-flate -uncompress < IN_FILE > OUT_FILE
IN_FILE: the COMLog file downloaded via GUI.
OUT_FILE: the COMLog file to be saved in text format.
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.