Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
Thilina
New Contributor

Ipsec monitor displays 2 phase2' s,but one is deleted one from config

In my fortigate 600c FW,im seeing 2 phase2' s but one is a deleted one from config,how can i remove it from ipsec monitoring?,follow is a screen shot of it
2 REPLIES 2
Carl_Wallmark
Valued Contributor

Hi, In older firmwares there was this bug, which did not delete the phase2 from monitor. You can try this from the CLI: (warning, this will restart all vpn tunnels) diagnos vpn ike restart

FCNSA, FCNSP
---
FortiGate 200A/B, 224B, 110C, 100A/D, 80C/CM/Voice, 60B/C/CX/D, 50B, 40C, 30B
FortiAnalyzer 100B, 100C
FortiMail 100,100C
FortiManager VM
FortiAuthenticator VM
FortiToken
FortiAP 220B/221B, 11C

FCNSA, FCNSP---FortiGate 200A/B, 224B, 110C, 100A/D, 80C/CM/Voice, 60B/C/CX/D, 50B, 40C, 30BFortiAnalyzer 100B, 100CFortiMail 100,100CFortiManager VMFortiAuthenticator VMFortiTokenFortiAP 220B/221B, 11C
ede_pfau
SuperUser
SuperUser

Or ' diag vpn tunnel flush' ? as it pertains to phase2 only...
Ede Kernel panic: Aiee, killing interrupt handler!
Ede Kernel panic: Aiee, killing interrupt handler!
Announcements

Select Forum Responses to become Knowledge Articles!

Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.

Labels
Top Kudoed Authors