FortiGate
FortiGate Next Generation Firewall utilizes purpose-built security processors and threat intelligence security services from FortiGuard labs to deliver top-rated protection and high performance, including encrypted traffic.
clindt_FTNT
Staff & Editor
Staff & Editor
Article Id 191690

Description

 

This article explains how to display the command tree for a configuration section.

 

Scope

 

FortiGate.


Solution

 

To see the full command options for the DHCP server part, navigate to the DHCP server config section and enter the command:
 
config system dhcp server
tree
 
-- [server] --*id (0,4294967295)
            |- status
            |- lease-time (0,4294967295)
            |- mac-acl-default-action
            |- forticlient-on-net-status
            |- dns-service
            |- dns-server1
            |- dns-server2
            |- dns-server3
            |- wifi-ac1
            |- wifi-ac2
            |- wifi-ac3
            |- ntp-service
            |- ntp-server1
            |- ntp-server2
            |- ntp-server3
            |- domain (36)
            |- wins-server1
            |- wins-server2
            |- default-gateway
            |- next-server
            |- netmask
            |- interface (16)
            |- [ip-range] --*id (0,4294967295)
                          |- start-ip
                          +- end-ip
            |- timezone-option
            |- timezone
            |- tftp-server (64)
            |- filename (128)
            |- [options] --*id (0,4294967295)
                         |- code (0,4294967295)
                         |- type
                         |- value (313)
                         +- ip
            |- server-type
            |- ip-mode
            |- conflicted-ip-timeout (0,4294967295)
            |- ipsec-lease-hold (0,4294967295)
            |- auto-configuration
            |- ddns-update
            |- ddns-update-override
            |- ddns-server-ip
            |- ddns-zone (65)
            |- ddns-auth
            |- ddns-keyname (65)
            |- ddns-key
            |- ddns-ttl (60,86400)
            |- vci-match
            |- [vci-string] --*vci-string (256)
            |- [exclude-range] --*id (0,4294967295)
                               |- start-ip
                               +- end-ip
            +- [reserved-address] --*id (0,4294967295)
                                  |- ip
                                  |- mac
                                  |- action
                                  +- description
 
Note: After FortiOS version 6.4 and later the above command will not work. Use the following command:
 
tree system dhcp server
 
Note: For an expanded output to show the entire FortiGate command tree structure in the same output file, use the 'tree' command from the main CLI prompt (the first few lines of the output are below as an example):

 

tree

-- -- system |- [datasource] --*name (35)
+- type (0,4294967295)
|- <global> -- language
|- gui-ipv6
|- gui-replacement-message-groups
|- gui-local-out
|- gui-certificates
|- gui-custom-language
|- gui-wireless-opensecurity
|- gui-app-detection-sdwan
|- gui-display-hostname
|- gui-fortigate-cloud-sandbox
|- gui-firmware-upgrade-warning
|- gui-allow-default-hostname
|- gui-forticare-registration-setup-warning
|- gui-workflow-management
|- gui-cdn-usage
|- admin-https-ssl-versions
|- admin-https-ssl-ciphersuites
|- admin-https-ssl-banned-ciphers
|- admintimeout (1,480)
|- admin-console-timeout (15,300)
|- ssd-trim-freq
|- ssd-trim-hour (0,23)
|- ssd-trim-min (0,60)
|- ssd-trim-weekday
|- ssd-trim-date (1,31)
|- admin-concurrent
|- admin-lockout-threshold (1,10)
|- admin-lockout-duration (1,2147483647)
|- refresh (0,4294967295)
|- interval (0,4294967295)
|- failtime (0,4294967295)
|- daily-restart
|- restart-time
|- wad-restart-mode
|- wad-restart-start-time
|- wad-restart-end-time
|- radius-port (1,65535)
|- admin-login-max (1,100)
|- remoteauthtimeout (1,300)
|- ldapconntimeout (1,300000)
|- batch-cmdb
|- multi-factor-authentication
|- ssl-min-proto-version
|- autorun-log-fsck
|- timezone
|- traffic-priority
|- traffic-priority-level
|- anti-replay
|- send-pmtu-icmp
|- honor-df
|- pmtu-discovery
|- revision-image-auto-backup
|- revision-backup-on-logout
|- management-vdom (31)
|- hostname (35)
|- alias (35)
|- strong-crypto
|- ssl-static-key-ciphers