Diagnosing FortiIdentity Cloud
Use the following commands to diagnose and troubleshoot FIC issues.
debug Enable/disable debug output. server IP address port number and https. show Display diagnostics information. delete Command to delete a user. clear Clear server connection settings for diagnostics. migrate-ftm Perform FTM license migration. set-http Set HTTP status return code for diagnostics only. sync Synchronize user information with FortiToken Cloud.
Examples
FG100D3G00000000 (global) # diag fortitoken-cloud debug {enable | disable}
FG100D3G00000000 (global) # diag fortitoken-cloud server
FG100D3G00000000 (global) # diag fortitoken-cloud show {server | realm | users | user <username> <VDOM>}
FG100D3G00000000 (global) # diag fortitoken-cloud delete <username>
FG100D3G00000000 (global) # diag fortitoken-cloud set-http <number>
FG100D3G00000000 (global) # diag fortitoken-cloud clear <Enter>
FG100D3G00000000 (global) # diag fortitoken-cloud sync { <Enter> | all | local | remote }
The diag fortitoken-cloud sync command requires you to specify the type of user to sync to FortiIdentity Cloud:
diagnose fortitoken-cloud sync ?
<user type> {Enter <return> | all | local | remote} FGVM01TM00000000 (global) # diagnose fortitoken-cloud migrate-ftm <string> Enter command: show, start, abort, add-users, delete-users, ftm2ftc. FGVM01TM00000000 (global) # diagnose fortitoken-cloud migrate-ftm show <string> FTM license number. FGVM01TM00000000 (global) # diagnose fortitoken-cloud migrate-ftm start <string> FTM license number. FGVM01TM00000000 (global) # diagnose fortitoken-cloud migrate-ftm abort <string> FTM license number. FGVM01TM00000000(global) # diagnose fortitoken-cloud migrate-ftm add-users <string> FTM license number. FGVM01TM00000000 (global) # diagnose fortitoken-cloud migrate-ftm delete-users <string> FTM license number. FGVM01TM00000000 (global) # diagnose fortitoken-cloud migrate-ftm ftm2ftc <string> FTM license number.
The above diagnose CLI command shows FTM license migration status, start migration process, abort migration process, add-users into FIC and delete-users from FIC, and force to covert two-factor authentication from FortiToken to FortiIdentity Cloud during the migration.