Fortinet white logo
Fortinet white logo

CLI Reference

system global

system global

Use this command to view global system settings.

Syntax

get system global

Example

This example shows the output for get system global:

admin-host : (null)

admin-lockout-duration: 60

admin-lockout-method: ip

admin-lockout-threshold: 3

admin-ssh-grace-time: 120

adom-mode : normal

adom-status : disable

apache-mode : event

apache-wsgi-processes: 10

api-ip-binding : enable

auth-dev-restapi-allowlist: disable

backup-compression : normal

backup-to-subfolders: disable

cli-auth : disable

clone-name-option : default

clt-cert-req : disable

console-output : standard

contentpack-fgt-install: disable

country-flag : enable

create-revision : enable

daylightsavetime : enable

debug-tool : disable

default-logview-auto-completion: enable

default-search-mode : filter-based

detect-unregistered-log-device: enable

device-view-mode : tree

dh-params : 2048

disable-module : none

enc-algorithm : high

event-correlation-cache-size: 1

fabric-storage-pool-quota: 0

fabric-storage-pool-size: 20

fcp-cfg-service : disable

fgfm-ca-cert :

fgfm-cert-exclusive : disable

fgfm-local-cert : (null)

fgfm-ssl-protocol : follow-global-ssl-protocol

fmg-fabric-port : 8893

fortiservice-port : 8013

global-ssl-protocol : tlsv1.2

gui-curl-timeout : 30

gui-feature-visibility-mode: per-adom

gui-install-preview-concurrency 20

ha-member-auto-grouping: enable

hostname : FAZVM64-HV

httpd-ssl-protocol : tlsv1.3 tlsv1.2

jsonapi-log : disable

language : english

latitude : (null)

ldap-cache-timeout : 86400

ldapconntimeout : 60000

log-checksum : none

log-checksum-upload : disable

log-forward-cache-size: 1

log-forward-plugin-workers: 10

log-mode : analyzer

longitude : (null)

management-ip : (null)

management-port : 443

mapclient-ssl-protocol: follow-global-ssl-protocol

max-aggregation-tasks: 0

max-running-reports : 1

multiple-steps-upgrade-in-autolink: disable

no-copy-permission-check: enable

no-vip-value-check : disable

normalized-intf-zone-only: disable

object-revision-db-max: 100000

object-revision-mandatory-note: enable

object-revision-object-max: 100

object-revision-status: enable

oftp-ssl-protocol : tlsv1.2

policy-object-icon : disable

policy-object-in-dual-pane: disable

pre-login-banner : disable

private-data-encryption: disable

remoteauthtimeout : 10

rpc-log : enable

search-all-adoms : disable

skip-ip-check-in-session: disable

ssh-enc-algo : chacha20-poly1305@openssh.com aes256-ctr aes256-gcm@openssh.com

ssh-hostkey-algo : ecdsa-sha2-nistp521 rsa-sha2-256 rsa-sha2-512 ssh-ed25519

ssh-kex-algo : diffie-hellman-group14-sha256 diffie-hellman-group16-sha512 diffie-hellman-group18-sha512 diffie-hellman-group-exchange-sha256 curve25519-sha256@libssh.org ecdh-sha2-nistp256 ecdh-sha2-nistp384 ecdh-sha2-nistp521

ssh-mac-algo : hmac-sha2-256 hmac-sha2-256-etm@openssh.com hmac-sha2-512 hmac-sha2-512-etm@openssh.com

ssl-low-encryption : disable

ssl-static-key-ciphers: enable

storage-age-limit: 0

table-entry-blink : enable

task-list-size : 2000

timezone : (GMT-8:00) Pacific Time (US & Canada).

tunnel-mtu : 1500

usg : enable

system global

system global

Use this command to view global system settings.

Syntax

get system global

Example

This example shows the output for get system global:

admin-host : (null)

admin-lockout-duration: 60

admin-lockout-method: ip

admin-lockout-threshold: 3

admin-ssh-grace-time: 120

adom-mode : normal

adom-status : disable

apache-mode : event

apache-wsgi-processes: 10

api-ip-binding : enable

auth-dev-restapi-allowlist: disable

backup-compression : normal

backup-to-subfolders: disable

cli-auth : disable

clone-name-option : default

clt-cert-req : disable

console-output : standard

contentpack-fgt-install: disable

country-flag : enable

create-revision : enable

daylightsavetime : enable

debug-tool : disable

default-logview-auto-completion: enable

default-search-mode : filter-based

detect-unregistered-log-device: enable

device-view-mode : tree

dh-params : 2048

disable-module : none

enc-algorithm : high

event-correlation-cache-size: 1

fabric-storage-pool-quota: 0

fabric-storage-pool-size: 20

fcp-cfg-service : disable

fgfm-ca-cert :

fgfm-cert-exclusive : disable

fgfm-local-cert : (null)

fgfm-ssl-protocol : follow-global-ssl-protocol

fmg-fabric-port : 8893

fortiservice-port : 8013

global-ssl-protocol : tlsv1.2

gui-curl-timeout : 30

gui-feature-visibility-mode: per-adom

gui-install-preview-concurrency 20

ha-member-auto-grouping: enable

hostname : FAZVM64-HV

httpd-ssl-protocol : tlsv1.3 tlsv1.2

jsonapi-log : disable

language : english

latitude : (null)

ldap-cache-timeout : 86400

ldapconntimeout : 60000

log-checksum : none

log-checksum-upload : disable

log-forward-cache-size: 1

log-forward-plugin-workers: 10

log-mode : analyzer

longitude : (null)

management-ip : (null)

management-port : 443

mapclient-ssl-protocol: follow-global-ssl-protocol

max-aggregation-tasks: 0

max-running-reports : 1

multiple-steps-upgrade-in-autolink: disable

no-copy-permission-check: enable

no-vip-value-check : disable

normalized-intf-zone-only: disable

object-revision-db-max: 100000

object-revision-mandatory-note: enable

object-revision-object-max: 100

object-revision-status: enable

oftp-ssl-protocol : tlsv1.2

policy-object-icon : disable

policy-object-in-dual-pane: disable

pre-login-banner : disable

private-data-encryption: disable

remoteauthtimeout : 10

rpc-log : enable

search-all-adoms : disable

skip-ip-check-in-session: disable

ssh-enc-algo : chacha20-poly1305@openssh.com aes256-ctr aes256-gcm@openssh.com

ssh-hostkey-algo : ecdsa-sha2-nistp521 rsa-sha2-256 rsa-sha2-512 ssh-ed25519

ssh-kex-algo : diffie-hellman-group14-sha256 diffie-hellman-group16-sha512 diffie-hellman-group18-sha512 diffie-hellman-group-exchange-sha256 curve25519-sha256@libssh.org ecdh-sha2-nistp256 ecdh-sha2-nistp384 ecdh-sha2-nistp521

ssh-mac-algo : hmac-sha2-256 hmac-sha2-256-etm@openssh.com hmac-sha2-512 hmac-sha2-512-etm@openssh.com

ssl-low-encryption : disable

ssl-static-key-ciphers: enable

storage-age-limit: 0

table-entry-blink : enable

task-list-size : 2000

timezone : (GMT-8:00) Pacific Time (US & Canada).

tunnel-mtu : 1500

usg : enable