FortiManager
FortiManager supports network operations use cases for centralized management, best practices compliance, and workflow automation to provide better protection against breaches.
Nur
Staff
Staff
Article Id 241878
Description

This article describes how to run CDB check from FortiManager and be stuck to the IPS DB level.

 

# diagnose pm2 check-integrity all

 

Nur_1-1672803644242.png

Scope

The command needs to be run from FortiManager to check the integrity of the object configuration database and global policy assignment table. 

 

Usually, it only takes 5 minutes to complete the CDB check to complete. However, It can hang or stuck.

Solution

It is necessary to check which level the CDB has been stuck on.

 

For this example, the CDB has been stuck at the IPS DB level.

The issue occurred as a lot of IPS packages had not been used existed to the FortiManager.

 

To fix the issue run the below command:

 

# diagnose dvm remove unused-ips-packages 

 

After completing, run again the CDB check to complete the integrity check.

 

Related article:

Technical Tip : How to reduce FortiManager config backup size (.dat file)