Fortinet white logo
Fortinet white logo

CLI Reference

diagnose vpn ssl

diagnose vpn ssl

Agentless VPN.

This topic includes the following commands:

diagnose vpn ssl app-session

List all app session in db.

diagnose vpn ssl app-session <all|vdom-name|vfid>

Parameter

Description

Type

Size

<all|vdom-name|vfid>

Display all app session for all VDOMs or given VDOM name or VDOM ID. Without argument, app session for current VDOM is shown.

string

diagnose vpn ssl blocklist

Agentless VPN blocklist information

diagnose vpn ssl blocklist

diagnose vpn ssl blocklist count

Print counts of Agentless VPN blocklist

diagnose vpn ssl blocklist count <all|vdom-name|vfid>

Parameter

Description

Type

Size

<all|vdom-name|vfid>

Display Agentless VPN blocklist entries count for all VDOMs, given VDOM name or VDOM ID. Without argument, count for current VDOM is shown.

string

diagnose vpn ssl blocklist del

Del Agentless VPN blocklist

diagnose vpn ssl blocklist del <all|vfid|addr>

Parameter

Description

Type

Size

<all|vfid|addr>

Delete block list entries for all VDOMs, given VDOM ID or address.

string

diagnose vpn ssl blocklist list

List Agentless VPN blocklist

diagnose vpn ssl blocklist list <all|vdom-name|vfid>

Parameter

Description

Type

Size

<all|vdom-name|vfid>

Display Agentless VPN blocklist information for all VDOMs, given VDOM name or VDOM ID. Without argument, information for current VDOM is shown.

string

diagnose vpn ssl cmdb-cache-log

Enable/disable Agentless VPN cmdb cache log.

diagnose vpn ssl cmdb-cache-log <enable>

Parameter

Description

Type

Size

<enable>

Enable Agentless VPN cmdb cache log. disable Disable Agentless VPN cmdb cache log.

string

diagnose vpn ssl debug-filter

Agentless VPN debug message filter.

diagnose vpn ssl debug-filter

diagnose vpn ssl debug-filter clear

Erase the current filter.

diagnose vpn ssl debug-filter clear

diagnose vpn ssl debug-filter list

Display the current filter.

diagnose vpn ssl debug-filter list

diagnose vpn ssl debug-filter negate

Negate the specified filter parameter.

diagnose vpn ssl debug-filter negate

diagnose vpn ssl debug-filter negate src-addr4

IPv4 source address.

diagnose vpn ssl debug-filter negate src-addr4

diagnose vpn ssl debug-filter negate src-addr6

IPv6 source address.

diagnose vpn ssl debug-filter negate src-addr6

diagnose vpn ssl debug-filter negate vd

Virtual domain.

diagnose vpn ssl debug-filter negate vd

diagnose vpn ssl debug-filter src-addr4

IPv4 source address range.

diagnose vpn ssl debug-filter src-addr4 <ipv4-address>

Parameter

Description

Type

Size

<ipv4-address>

source IPv4 address (from)

string

diagnose vpn ssl debug-filter src-addr6

IPv6 source address range.

diagnose vpn ssl debug-filter src-addr6 <ipv6-address>

Parameter

Description

Type

Size

<ipv6-address>

source IPv6 address (from)

string

diagnose vpn ssl debug-filter vd

Name of virtual domain.

diagnose vpn ssl debug-filter vd <vdom name>

Parameter

Description

Type

Size

<vdom name>

Name of virtual domain.

string

diagnose vpn ssl dist-usr

Agentless VPN distinct user information

diagnose vpn ssl dist-usr

diagnose vpn ssl dist-usr count

Print counts of Agentless VPN distinct user

diagnose vpn ssl dist-usr count <all|vdom-name|vfid>

Parameter

Description

Type

Size

<all|vdom-name|vfid>

Display Agentless VPN distinct user count for all VDOMs, given VDOM name or VDOM ID. Without argument, count for current VDOM is shown.

string

diagnose vpn ssl dist-usr del

Del Agentless VPN distinct user

diagnose vpn ssl dist-usr del <all|vdom-name|vfid>

Parameter

Description

Type

Size

<all|vdom-name|vfid>

Delete distinct user for all VDOMs, given VDOM name or VDOM ID.

string

diagnose vpn ssl dist-usr list

List Agentless VPN distinct users

diagnose vpn ssl dist-usr list <all|vdom-name|vfid>

Parameter

Description

Type

Size

<all|vdom-name|vfid>

Display Agentless VPN distinct user information for all VDOMs, given VDOM name or VDOM ID. Without argument, information for current VDOM is shown.

string

diagnose vpn ssl info

Agentless VPN information

diagnose vpn ssl info <all|vdom-name|vfid>

Parameter

Description

Type

Size

<all|vdom-name|vfid>

Display Agentless VPN information for all VDOMs, given VDOM name or VDOM ID. Without argument, information for current VDOM is shown.

string

diagnose vpn ssl list

List current connections.

diagnose vpn ssl list

diagnose vpn ssl peer-name

Agentless VPN Peer information

diagnose vpn ssl peer-name

diagnose vpn ssl peer-name count

Print counts of Agentless VPN peer information

diagnose vpn ssl peer-name count

diagnose vpn ssl peer-name del

Del Agentless VPN peer information

diagnose vpn ssl peer-name del

diagnose vpn ssl peer-name list

List Agentless VPN peer information

diagnose vpn ssl peer-name list

diagnose vpn ssl saml-metadata

Display Agentless VPN SAML SP metadata for given SAML name.

diagnose vpn ssl saml-metadata <SAML name>

Parameter

Description

Type

Size

<SAML name>

Name of SAML user.

string

diagnose vpn ssl statistics

Agentless VPN statistics

diagnose vpn ssl statistics <all|vdom-name|vfid>

Parameter

Description

Type

Size

<all|vdom-name|vfid>

Display Agentless VPN statistics for all VDOMs or given VDOM name or VDOM ID. Without argument, statistics for current VDOM is shown.

string

diagnose vpn ssl user-session

List all user session in db.

diagnose vpn ssl user-session <all|vdom-name|vfid>

Parameter

Description

Type

Size

<all|vdom-name|vfid>

Display all user session for all VDOMs or given VDOM name or VDOM ID. Without argument, user session for current VDOM is shown.

string

diagnose vpn ssl usr-chg

Agentless VPN user information with password modification

diagnose vpn ssl usr-chg

diagnose vpn ssl usr-chg count

Print counts of Agentless VPN user change information

diagnose vpn ssl usr-chg count <all|vdom-name|vfid>

Parameter

Description

Type

Size

<all|vdom-name|vfid>

Display Agentless VPN user change count for all VDOMs, given VDOM name or VDOM ID. Without argument, count for current VDOM is shown.

string

diagnose vpn ssl usr-chg del

Del Agentless VPN user change information

diagnose vpn ssl usr-chg del <all|vdom-name|vfid>

Parameter

Description

Type

Size

<all|vdom-name|vfid>

Delete Agentless VPN user change information for all VDOMs, given VDOM name or VDOM ID.

string

diagnose vpn ssl usr-chg list

List Agentless VPN user change information

diagnose vpn ssl usr-chg list <all|vdom-name|vfid>

Parameter

Description

Type

Size

<all|vdom-name|vfid>

Display Agentless VPN user change information for all VDOMs, given VDOM name or VDOM ID. Without argument, information for current VDOM is shown.

string

diagnose vpn ssl web-mode-test

Enable/disable random session ID in proxy URL for testing.

diagnose vpn ssl web-mode-test <enable>

Parameter

Description

Type

Size

<enable>

Enable random session ID in proxy URL for testing. disable Disable random session ID in proxy URL for testing.

string

diagnose vpn ssl

diagnose vpn ssl

Agentless VPN.

This topic includes the following commands:

diagnose vpn ssl app-session

List all app session in db.

diagnose vpn ssl app-session <all|vdom-name|vfid>

Parameter

Description

Type

Size

<all|vdom-name|vfid>

Display all app session for all VDOMs or given VDOM name or VDOM ID. Without argument, app session for current VDOM is shown.

string

diagnose vpn ssl blocklist

Agentless VPN blocklist information

diagnose vpn ssl blocklist

diagnose vpn ssl blocklist count

Print counts of Agentless VPN blocklist

diagnose vpn ssl blocklist count <all|vdom-name|vfid>

Parameter

Description

Type

Size

<all|vdom-name|vfid>

Display Agentless VPN blocklist entries count for all VDOMs, given VDOM name or VDOM ID. Without argument, count for current VDOM is shown.

string

diagnose vpn ssl blocklist del

Del Agentless VPN blocklist

diagnose vpn ssl blocklist del <all|vfid|addr>

Parameter

Description

Type

Size

<all|vfid|addr>

Delete block list entries for all VDOMs, given VDOM ID or address.

string

diagnose vpn ssl blocklist list

List Agentless VPN blocklist

diagnose vpn ssl blocklist list <all|vdom-name|vfid>

Parameter

Description

Type

Size

<all|vdom-name|vfid>

Display Agentless VPN blocklist information for all VDOMs, given VDOM name or VDOM ID. Without argument, information for current VDOM is shown.

string

diagnose vpn ssl cmdb-cache-log

Enable/disable Agentless VPN cmdb cache log.

diagnose vpn ssl cmdb-cache-log <enable>

Parameter

Description

Type

Size

<enable>

Enable Agentless VPN cmdb cache log. disable Disable Agentless VPN cmdb cache log.

string

diagnose vpn ssl debug-filter

Agentless VPN debug message filter.

diagnose vpn ssl debug-filter

diagnose vpn ssl debug-filter clear

Erase the current filter.

diagnose vpn ssl debug-filter clear

diagnose vpn ssl debug-filter list

Display the current filter.

diagnose vpn ssl debug-filter list

diagnose vpn ssl debug-filter negate

Negate the specified filter parameter.

diagnose vpn ssl debug-filter negate

diagnose vpn ssl debug-filter negate src-addr4

IPv4 source address.

diagnose vpn ssl debug-filter negate src-addr4

diagnose vpn ssl debug-filter negate src-addr6

IPv6 source address.

diagnose vpn ssl debug-filter negate src-addr6

diagnose vpn ssl debug-filter negate vd

Virtual domain.

diagnose vpn ssl debug-filter negate vd

diagnose vpn ssl debug-filter src-addr4

IPv4 source address range.

diagnose vpn ssl debug-filter src-addr4 <ipv4-address>

Parameter

Description

Type

Size

<ipv4-address>

source IPv4 address (from)

string

diagnose vpn ssl debug-filter src-addr6

IPv6 source address range.

diagnose vpn ssl debug-filter src-addr6 <ipv6-address>

Parameter

Description

Type

Size

<ipv6-address>

source IPv6 address (from)

string

diagnose vpn ssl debug-filter vd

Name of virtual domain.

diagnose vpn ssl debug-filter vd <vdom name>

Parameter

Description

Type

Size

<vdom name>

Name of virtual domain.

string

diagnose vpn ssl dist-usr

Agentless VPN distinct user information

diagnose vpn ssl dist-usr

diagnose vpn ssl dist-usr count

Print counts of Agentless VPN distinct user

diagnose vpn ssl dist-usr count <all|vdom-name|vfid>

Parameter

Description

Type

Size

<all|vdom-name|vfid>

Display Agentless VPN distinct user count for all VDOMs, given VDOM name or VDOM ID. Without argument, count for current VDOM is shown.

string

diagnose vpn ssl dist-usr del

Del Agentless VPN distinct user

diagnose vpn ssl dist-usr del <all|vdom-name|vfid>

Parameter

Description

Type

Size

<all|vdom-name|vfid>

Delete distinct user for all VDOMs, given VDOM name or VDOM ID.

string

diagnose vpn ssl dist-usr list

List Agentless VPN distinct users

diagnose vpn ssl dist-usr list <all|vdom-name|vfid>

Parameter

Description

Type

Size

<all|vdom-name|vfid>

Display Agentless VPN distinct user information for all VDOMs, given VDOM name or VDOM ID. Without argument, information for current VDOM is shown.

string

diagnose vpn ssl info

Agentless VPN information

diagnose vpn ssl info <all|vdom-name|vfid>

Parameter

Description

Type

Size

<all|vdom-name|vfid>

Display Agentless VPN information for all VDOMs, given VDOM name or VDOM ID. Without argument, information for current VDOM is shown.

string

diagnose vpn ssl list

List current connections.

diagnose vpn ssl list

diagnose vpn ssl peer-name

Agentless VPN Peer information

diagnose vpn ssl peer-name

diagnose vpn ssl peer-name count

Print counts of Agentless VPN peer information

diagnose vpn ssl peer-name count

diagnose vpn ssl peer-name del

Del Agentless VPN peer information

diagnose vpn ssl peer-name del

diagnose vpn ssl peer-name list

List Agentless VPN peer information

diagnose vpn ssl peer-name list

diagnose vpn ssl saml-metadata

Display Agentless VPN SAML SP metadata for given SAML name.

diagnose vpn ssl saml-metadata <SAML name>

Parameter

Description

Type

Size

<SAML name>

Name of SAML user.

string

diagnose vpn ssl statistics

Agentless VPN statistics

diagnose vpn ssl statistics <all|vdom-name|vfid>

Parameter

Description

Type

Size

<all|vdom-name|vfid>

Display Agentless VPN statistics for all VDOMs or given VDOM name or VDOM ID. Without argument, statistics for current VDOM is shown.

string

diagnose vpn ssl user-session

List all user session in db.

diagnose vpn ssl user-session <all|vdom-name|vfid>

Parameter

Description

Type

Size

<all|vdom-name|vfid>

Display all user session for all VDOMs or given VDOM name or VDOM ID. Without argument, user session for current VDOM is shown.

string

diagnose vpn ssl usr-chg

Agentless VPN user information with password modification

diagnose vpn ssl usr-chg

diagnose vpn ssl usr-chg count

Print counts of Agentless VPN user change information

diagnose vpn ssl usr-chg count <all|vdom-name|vfid>

Parameter

Description

Type

Size

<all|vdom-name|vfid>

Display Agentless VPN user change count for all VDOMs, given VDOM name or VDOM ID. Without argument, count for current VDOM is shown.

string

diagnose vpn ssl usr-chg del

Del Agentless VPN user change information

diagnose vpn ssl usr-chg del <all|vdom-name|vfid>

Parameter

Description

Type

Size

<all|vdom-name|vfid>

Delete Agentless VPN user change information for all VDOMs, given VDOM name or VDOM ID.

string

diagnose vpn ssl usr-chg list

List Agentless VPN user change information

diagnose vpn ssl usr-chg list <all|vdom-name|vfid>

Parameter

Description

Type

Size

<all|vdom-name|vfid>

Display Agentless VPN user change information for all VDOMs, given VDOM name or VDOM ID. Without argument, information for current VDOM is shown.

string

diagnose vpn ssl web-mode-test

Enable/disable random session ID in proxy URL for testing.

diagnose vpn ssl web-mode-test <enable>

Parameter

Description

Type

Size

<enable>

Enable random session ID in proxy URL for testing. disable Disable random session ID in proxy URL for testing.

string