FortiGate
FortiGate Next Generation Firewall utilizes purpose-built security processors and threat intelligence security services from FortiGuard labs to deliver top-rated protection and high performance, including encrypted traffic.
caunon
Staff
Staff
Article Id 398554
Description

This article describes the situation where the confsyncd daemon with FortiGate firmware v7.2.11 build1740 crashes. It causes the newly joined HA slave to fail synchronization.

Scope

FortiGate v7.2.11.

Solution
  1. The confsyncd daemon crashes after upgrading FortiOS to v7.2.11 build1740.

The newly joined HA slave FortiGate unit can not be synchronized properly.

 

  1. Run the CLI command, and it shows the logs as below.

 

diagnose debug crashlog read

2425: 2025-05-15 15:54:45 <01113> firmware FortiGate-7000E v7.2.11,build1740b1740,250201 (Non-GA)

2426: 2025-05-15 15:54:45 (Release)

2427: 2025-05-15 15:54:45 <01113> application confsyncd

2428: 2025-05-15 15:54:45 <01113> *** signal 11 (Segmentation fault) received ***

2429: 2025-05-15 15:54:45 <01113> Register dump:

2430: 2025-05-15 15:54:45 <01113> RAX: 0000000000000fa0 RBX: 0000000000000400

2431: 2025-05-15 15:54:45 <01113> RCX: 000000002c461698 RDX: 000000002b3d3fa0

2432: 2025-05-15 15:54:45 <01113> R08: 00007f8748781000 R09: 00007f874c1a1be0

2433: 2025-05-15 15:54:45 <01113> R10: 0000000000000008 R11: 000000002c4606d0

2434: 2025-05-15 15:54:45 <01113> R12: 000000002b3d3fa0 R13: 000000002c4617b8

2435: 2025-05-15 15:54:45 <01113> R14: 000000002c4606d0 R15: 00007f87487ba080

2436: 2025-05-15 15:54:45 <01113> RSI: 000000002b3d3fa0 RDI: 000000002b3d3fa0

2437: 2025-05-15 15:54:45 <01113> RBP: 00007fffaa8e66b0 RSP: 00007fffaa8e6688

2438: 2025-05-15 15:54:45 <01113> RIP: 00007f874c131219 EFLAGS: 0000000000010287

2439: 2025-05-15 15:54:45 <01113> CS: 0033 FS: 0000 GS: 0000

2440: 2025-05-15 15:54:45 <01113> Trap: 000000000000000e Error: 0000000000000004

2441: 2025-05-15 15:54:45 <01113> OldMask: 0000000000000000

2442: 2025-05-15 15:54:45 <01113> CR2: 000000002b3d3fa0

2443: 2025-05-15 15:54:45 <01113> stack: 0x7fffaa8e6688 - 0x7fffaa8ede30

2444: 2025-05-15 15:54:45 <01113> Backtrace:

2445: 2025-05-15 15:54:45 <01113> [0x7f874c131219] => /usr/lib/x86_64-linux-gnu/libc.so.6 liboffset

2446: 2025-05-15 15:54:45 00158219

2447: 2025-05-15 15:54:45 <01113> [0x02cfb481] => /bin/confsyncd 

2448: 2025-05-15 15:54:45 <01113> [0x0241d362] => /bin/confsyncd 

2449: 2025-05-15 15:54:45 <01113> [0x0241dcf1] => /bin/confsyncd 

2450: 2025-05-15 15:54:45 <01113> [0x02432f17] => /bin/confsyncd 

2451: 2025-05-15 15:54:45 <01113> [0x008b9b5c] => /bin/confsyncd 

2452: 2025-05-15 15:54:45 <01113> [0x008b64af] => /bin/confsyncd 

2453: 2025-05-15 15:54:45 <01113> [0x008b8f43] => /bin/confsyncd 

2454: 2025-05-15 15:54:45 <01113> [0x008b376a] => /bin/confsyncd 

2455: 2025-05-15 15:54:45 <01113> [0x008b0dc3] => /bin/confsyncd 

2456: 2025-05-15 15:54:45 <01113> [0x008ae868] => /bin/confsyncd 

2457: 2025-05-15 15:54:45 <01113> [0x008b4383] => /bin/confsyncd 

2458: 2025-05-15 15:54:45 <01113> [0x0044d21f] => /bin/confsyncd 

2459: 2025-05-15 15:54:45 <01113> [0x004527b8] => /bin/confsyncd 

2460: 2025-05-15 15:54:45 <01113> [0x004530a6] => /bin/confsyncd 

2461: 2025-05-15 15:54:45 <01113> [0x004557f8] => /bin/confsyncd 

2462: 2025-05-15 15:54:45 <01113> [0x004562ac] => /bin/confsyncd 

2463: 2025-05-15 15:54:45 <01113> [0x7f874bffce1b] => /usr/lib/x86_64-linux-gnu/libc.so.6

2464: 2025-05-15 15:54:45 (__libc_start_main+0x000000eb) liboffset 00023e1b

2465: 2025-05-15 15:54:45 <01113> [0x00448afa] => /bin/confsyncd 

2466: 2025-05-15 15:54:45 <01113> fortidev 6.0.2.0008

2467: 2025-05-15 16:05:05 the killed daemon is /bin/getty: status=0x9

2468: 2025-05-15 16:06:15 the killed daemon is /bin/getty: status=0x9

Crash log interval is 3600 seconds

confsyncd crashed 24 times. The last crash was at 2025-05-15 16:06:19

Max crash log line number: 19354

 

For a permanent fix, it is necessary to upgrade the FortiGate firmware version to v7.2.12, v7.4.8, v7.6.4, and above.

 

Related article:

Technical Tip: Short list of processes on the FortiGate