Options
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Cannot delete VPN tunnel configuration
I cannot delete the PH1 of an existing tunnel configuration.
All rules have been deleted.
Routing also.
When I try the command:
XXX-XXXX(phase1-interface)#delete TUNNEL-NAME
this is what I get:
This phase1-interface is currently used
command_cli_delete:3724 delete table entry TUNNEL-NAME unset oper error ret=-23
Command fail. Return code -23
Reboot the box would be a nightmare, anyone has a solution to this?
Thanks!
4 REPLIES 4
Options
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Hi,
welcome to the forums.
A phase1 in interface mode is an interface. You can attach several objects to an interface, including
- addresses
- VIPs
- IP pools
- a DHCP server
- policies
- routes
- policy routing
I' d get a backup of the config and search it with an editor for the phase1 name. Aside, does it really bug you to have a dangling phase1?
Ede Kernel panic: Aiee, killing interrupt handler!
Ede Kernel panic: Aiee, killing interrupt handler!
Options
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Hi Thanks for the hints
I would not bother actually...but a customer is flogging me!!
This is also why I am looking for a silver bullet.
Every change I do has to be scheduled and approved and it would look very bad if I gave the impression to rummage in his configuration rather then make some aimed changes.
Thanks!

Options
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
ORIGINAL: ede_pfau Bob, there' s a diag command to check the dependency of an object, could you post it?Take a look here: http://kb.fortinet.com/kb/microsites/microsite.do?cmd=displayKC&externalId=FD30620
Bob - self proclaimed posting junkie!
See my Fortigate related scripts at: http://fortigate.camerabob.com
Bob - self proclaimed posting junkie!See my Fortigate related scripts
at: http://fortigate.camerabob.com
Options
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content

