Description | This article describes the initial troubleshooting steps for GUI or CLI access issue. |
Scope | FortiGate. |
Solution |
To check the GUI or CLI access issues:
show system interface
config system global show full-configuration | grep 'set admin-\(port\|sport\|ssh-port\|telnet-port\)'
Check if the above administrative accesses are enabled at the interface level:
show system interface
show system admin
Note: Check if the user IP address is getting S-NAT before reaching FortiGate. If yes, make sure that the IP address is part of the trusted host list.
show firewall local-in-policy
diagnose debug reset diagnose debug app httpsd -1 diagnose debug flow filter addr <Fortigate's mgmt IP address> ddiagnose iag debug flow show function-name enable diagnose debug flow trace start 1000 diagnose debug enable diagnose debug disable <----- To stop the debug flow. diagnose sniffer packet any "host <Fortigate's mgmt IP address>" 6 0 l <----- Press Ctrl+C to stop the capture.
|
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.