FortiGate
FortiGate Next Generation Firewall utilizes purpose-built security processors and threat intelligence security services from FortiGuard labs to deliver top-rated protection and high performance, including encrypted traffic.
asostizzo_FTNT
Article Id 198794

Description

 
This article describes how to view the banned user list through the CLI. As of v 5.4, the banned user list is viewed with a new CLI command.

The commands for v5.0 and v5.2 for viewing and manipulating the list are no longer available.
 
Scope
 
FortiGate.


Solution

 
On v5.4, the command below may be used:
 
diagnose user quarantine list
 
Other available commands for deleting/adding to the list, clearing the list, and obtaining statistics can be viewed by typing the following command with the question mark at the end:
 
diagnose user quarantine ?
 
Output:
 
list     List user quarantine entries.
add      Add user quarantine entry.
delete   Delete user quarantine entry.
clear    Clear all user quarantine entries
stat     Stat

 

For modern versions of FortiOS (7.2 onwards), the syntax changed to:

 

diagnose user banned-ip 

 

new syntax.png

 

Related articles:

Technical Note: Viewing Banned User List using the CLI in v5.2 - diagnose firewall ip_host
Technical Tip: How to ban or quarantine an IP with FortiView in FortiGate