FortiGate
FortiGate Next Generation Firewall utilizes purpose-built security processors and threat intelligence security services from FortiGuard labs to deliver top-rated protection and high performance, including encrypted traffic.
SAJUDIYA
Staff
Staff
Article Id 344386
Description

This article describes the issue with missing SSL VPN process from  /var/run directory in CLI, from GUI after enabling SSL VPN.

 

missing sslvpn process from GUI.PNG

 

Missing from cli.PNG

 

The SSL VPN process cannot be added directly to the  /var/log directory. Rebooting or upgrading firmware can also not fix the issue.

Scope All versions.
Solution

By default, FortiGate cannot open PID for SSL VPN daemon even after enabling SSL VPN. To start the process, configure at least a firewall policy using ssl.root as the source interface.

Once it is created, the process will start showing up in GUI and CLI.

 

policy created.PNG

 

SSL VPN process can be seen in CLI and GUI:

 

GUI.PNG

 

CLI.PNG

 

To find the process ID, refer to the following articles:

Technical Tip: Find and restart/kill a process on a FortiGate by the process ID (PID) via pidof

Technical Tip: How to list processes in FortiOS