Hello,
I have downloaded the VM image for FortiAnalyzer from the support.fortinet.com center. I installed it on VMware and it all went fine and I can now see the CLI. I set the port1 (which is bridged to the hosts interface) to get an IP from the LAN subnet and allowaccess everything (http, https, ping, ssh, etc.) and I can now ping the VM from another device and it replies. I set a default route (dst: 0.0.0.0/0.0.0.0 to port1 and gateway the IP of my router). I can still ping and I can also SSH.
However, I cannot visit the WebUI at all, neither at port 80 with http nor at port 443 with https.
I tried the following:
Any tips or ides as to what might be missing or needs fixing?
Thank you.
Can you provide the following:
"diagnose system print df"
"diagnose system process list"
"exec top"
You could also try to run "diag system fsck harddisk"
FAZVM64 # diagnose system print df
Filesystem 1K-blocks Used Available Use% Mounted on
rootfs 980948 980948 0 100% /
none 980960 0 980960 0% /dev
none 1360400 0 1360400 0% /dev/shm
none 65536 40 65496 0% /tmp
/dev/sda1 1007512 314060 693452 31% /data
rootfs 980948 980948 0 100% /drive0
rootfs 980948 980948 0 100% /Storage
FAZVM64 # diagnose system process list
PID USER VSZ STAT COMMAND
1 root 124m S /bin/initXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXX
2 root 0 SW [kthreadd]
4 root 0 IW< [kworker/0:0H]
5 root 0 IW [kworker/u8:0]
6 root 0 IW< [mm_percpu_wq]
7 root 0 SW [ksoftirqd/0]
8 root 0 IW [rcu_sched]
9 root 0 IW [rcu_bh]
10 root 0 SW [migration/0]
11 root 0 SW [cpuhp/0]
12 root 0 SW [cpuhp/1]
13 root 0 SW [migration/1]
14 root 0 SW [ksoftirqd/1]
16 root 0 IW< [kworker/1:0H]
17 root 0 SW [cpuhp/2]
18 root 0 SW [migration/2]
19 root 0 SW [ksoftirqd/2]
21 root 0 IW< [kworker/2:0H]
22 root 0 SW [cpuhp/3]
23 root 0 SW [migration/3]
24 root 0 SW [ksoftirqd/3]
26 root 0 IW< [kworker/3:0H]
27 root 0 SW [kdevtmpfs]
28 root 0 IW< [netns]
29 root 0 IW [kworker/0:1]
30 root 0 SW [oom_reaper]
31 root 0 IW< [writeback]
32 root 0 SW [kcompactd0]
33 root 0 IW< [crypto]
34 root 0 IW< [kblockd]
35 root 0 IW< [ata_sff]
36 root 0 SW [kswapd0]
57 root 0 IW [kworker/2:1]
70 root 0 IW< [kthrotld]
71 root 0 IW< [acpi_thermal_pm]
72 root 0 SW [scsi_eh_0]
73 root 0 IW< [scsi_tmf_0]
74 root 0 IW< [vmw_pvscsi_wq_0]
75 root 0 SW [scsi_eh_1]
77 root 0 IW< [scsi_tmf_1]
79 root 0 SW [scsi_eh_2]
80 root 0 IW< [scsi_tmf_2]
81 root 0 IW [kworker/u8:3]
83 root 0 IW [kworker/1:1]
84 root 0 IW< [dm_bufio_cache]
86 root 0 IW< [ipv6_addrconf]
88 root 0 IW< [kworker/1:1H]
89 root 0 IW< [kworker/3:1H]
90 root 0 SW [jbd2/sda1-8]
91 root 0 IW< [ext4-rsv-conver]
93 root 0 IW< [kworker/2:1H]
95 root 0 IW< [kworker/0:1H]
99 root 0 IW [kworker/3:2]
237 root 82676 S /bin/cmdbsvr
735 redis 52716 S /bin/redis-server 127.0.0.1:6379
740 root 146m S gui control
741 root 362m S gui websocket
742 root 202m S gui webworker
746 root 130m S gui webevent
749 root 59472 S /bin/dns
754 root 124m S svc main
755 root 124m S svc authd
757 root 59376 S /bin/vmlicensed
758 root 59288 S /bin/vmd
759 root 124m S svc dvmdb reader
760 root 60116 S /usr/sbin/sshd -D
761 root 124m S svc dvmdb writer
762 root 124m S svc task reader
763 root 124m S svc task writer
764 root 124m S svc ncmdb reader
765 root 124m S svc ncmdb writer
766 root 124m S svc cmdb reader
767 root 124m S svc cmdb writer
768 root 124m S svc dbcache reader
769 root 124m S svc dbcache writer
770 root 124m S svc cache reader
771 root 124m S svc cache writer
772 root 124m S svc cdb reader
773 root 124m S svc cdb writer
774 root 124m S svc pkg reader
775 root 124m S svc pkg writer
776 root 124m S svc tmplgrp reader
777 root 124m S svc tmplgrp writer
778 root 124m S svc fazcmd reader
780 root 124m S svc fazcmd writer
781 root 59356 S /bin/authd
782 root 124m S svc csf reader
783 root 124m S svc csf writer
784 root 124m S svc httpd
785 root 124m S svc httpd --port 9999
786 root 124m S securityconsole
789 root 138m S dmworker
790 root 124m S connector
791 root 124m S svc sys daemon
792 root 81684 S /bin/fgfmd
793 root 60068 S /bin/ddmd
794 root 72412 S /bin/alertmail
795 root 59368 S /bin/alertd
796 root 4072 S /bin/chronyd -n
797 root 125m S scheduled
801 root 132m S FortiManagerWS
802 redis 52716 S /bin/redis-server 127.0.0.1:6380
803 redis 52716 S /bin/redis-server 127.0.0.1:6383
804 redis 52716 S /bin/redis-server 127.0.0.1:6382
806 root 82768 S /bin/logfetchd
807 root 76500 S /bin/fazwatchd
808 root 83176 S /bin/rptchkd
809 root 82932 S /bin/filefwd
810 root 78716 S /bin/execmd
811 root 87144 S /bin/scansched
812 root 76500 S /bin/apiproxyd
813 root 82856 S /bin/syncsched
818 redis 52716 S /bin/redis-server 127.0.0.1:6381
819 root 76376 SN /bin/cpumemond
820 root 60088 S /bin/fdsdevlist
821 root 53236 S /bin/syslogd -n -f /fdsroot/data/etc/syslogd.conf
822 root 59392 S /bin/logrolling /var/log 10M 10 /var/umlog 5M 1
823 root 70148 S /bin/um_db_stat
830 root 60980 S fgdlinkd
831 root 61820 S fgdsvr (Main Process)
836 root 77696 S /bin/fgdhttpd
837 root 59596 S fgdupd
838 root 6212 S /bin/webconsoled
845 root 124m S srchd
846 root 58956 S /bin/login
847 root 82704 S -newcli admin admin --userfrom=console --adminprof=Super_User --adom=root
848 root 58956 S /bin/login
849 root 59480 S /bin/ha
850 root 83504 S /bin/fazcfgd
851 root 76952 S /bin/fortilogd
852 root 77048 S {logfwd.main} /bin/logfwd
853 root 66696 S {clusterd.mon} /bin/clusterd
855 root 76700 S /bin/rptschedler
856 root 83500 S /bin/oftpd
857 root 82500 S /bin/logfiled
858 root 754m S /bin/uploadd
859 root 104m S /bin/sqllogd
860 root 83136 S /bin/sqlrptcached
862 root 132m S /bin/sqlreportd
863 root 92104 S /bin/fazsvcd
864 root 290m SN /bin/archd
865 root 89160 S /bin/fazmaild
866 root 89288 S /bin/faznotify
867 root 76536 S /bin/fileparsed
868 root 90384 S /bin/siemagentd
869 root 98.5m S /bin/siemdbd
871 root 59204 S /bin/hwmonitor
877 root 83568 S {clusterd.main} /bin/clusterd
896 root 2324 S /bin/cron
899 root 3056 S /bin/klog
2711 root 0 IW [kworker/2:2]
3025 root 0 IW [kworker/1:0]
3080 root 0 IW [kworker/0:0]
3125 root 0 IW [kworker/3:1]
4072 root 0 IW [kworker/u8:1]
4464 root 0 IW [kworker/2:0]
4532 root 64480 S fgdsvr (worker Webfilter)
4533 root 61820 S fgdsvr (worker Antispam)
4534 root 61820 S fgdsvr (worker Antivirus)
4535 root 61820 S fgdsvr (worker FileQuery)
4536 root 61820 S fgdsvr (worker AV2)
4537 root 61820 S fgdsvr (worker IOT)
4582 root 83568 S {clusterd.main} /bin/clusterd
4683 root 0 IW [kworker/1:2]
4839 root 0 IW [kworker/0:2]
4864 root 60116 R sshd: admin@pts/0
4878 root 117m S /bin/sqlplugind
4887 root 82556 S -newcli admin admin --userfrom=ssh(10.0.0.31) --adminprof=Super_User --adom=root
4946 root 0 IW [kworker/3:0]
4957 root 116m S /bin/pgsvrd
4960 root 0 Z [httpd]
4961 root 0 Z [httpd]
4962 root 42812 S /bin/dvmcore
4963 root 124m S /bin/initXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXX
4964 root 0 Z [miglogd]
4965 root 0 Z [clickhouse-serv]
4966 root 0 Z [fds_svrd]
4967 root 0 Z [fwmsvrd]
4968 root 4332 R ps
exec top refreshes regularly as it show recent process, below are the top few lines
FAZVM64 # exec top
top - 06:52:41 up 14 min, 0 users, load average: 0.45, 0.28, 0.17
Tasks: 172 total, 2 running, 170 sleeping, 0 stopped, 0 zombie
%Cpu(s): 2.3 us, 1.3 sy, 0.0 ni, 96.3 id, 0.0 wa, 0.0 hi, 0.1 si, 0.0 st
MiB Mem : 2000.9 total, 382.0 free, 582.4 used, 1036.5 buff/cache
MiB Swap: 0.0 total, 0.0 free, 0.0 used. 414.8 avail Mem
PID USER PR NI VIRT RES %CPU %MEM TIME+ S COMMAND
1 root 20 0 124.7m 60.4m 4.7 3.0 0:45.79 S /bin/initXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXX
5846 root 20 0 116.8m 39.6m 0.7 2.0 0:00.02 S /bin/pgsvrd
237 root 20 0 80.7m 29.4m 0.3 1.5 0:02.96 R /bin/cmdbsvr
735 redis 20 0 51.5m 6.5m 0.3 0.3 0:01.54 S /bin/redis-server 127.0.0.1:6379
802 redis 20 0 51.5m 6.6m 0.3 0.3 0:00.92 S /bin/redis-server 127.0.0.1:6380
5292 root 20 0 3.7m 2.3m 0.3 0.1 0:00.30 R /bin/top
2 root 20 0 0.0m 0.0m 0.0 0.0 0:00.00 S [kthreadd]
4 root 0 -20 0.0m 0.0m 0.0 0.0 0:00.00 I [kworker/0:0H]
5 root 20 0 0.0m 0.0m 0.0 0.0 0:00.02 I [kworker/u8:0]
6 root 0 -20 0.0m 0.0m 0.0 0.0 0:00.00 I [mm_percpu_wq]
During booting I get the following errors:
Thank you
Hi, im experiencing the same issue. were you able to fix it and access the webui of the FAZ vm? thanks
nvm i got the vm working. you just have to follow the vm requirement (cpu/disk/memory)
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1737 | |
1107 | |
752 | |
447 | |
240 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.