FortiGate
FortiGate Next Generation Firewall utilizes purpose-built security processors and threat intelligence security services from FortiGuard labs to deliver top-rated protection and high performance, including encrypted traffic.
tpatel
Staff
Staff
Article Id 348907
Description

This article describes how to troubleshoot when the admin user cannot see the checksum of all VDOMs when HA is out of sync.

Scope FortiGate.
Solution

The admin user can only see 2 VDOM checksums with global checksum. Run the Checksum command on FortiGate:

 

diag sys ha checksum cluster

 

Picture7.png

 

There are 3 VDOMs configured on FortiGate.

 

Challenger-kvm119 # config vdom

Challenger-kvm119 (vdom) # edit

<vdom>    Virtual Domain Name

root

test1

test2

 

Check if users have permission for all VDOM. If not, users will not be able to see the checksum of all VDOM:

 

Picture8.png

 

To see all VDOM checksum users need to log in through an account that has global access.

 

Related article:

Create per-VDOM administrators.