Fortinet white logo
Fortinet white logo

CLI Reference

system global

system global

Use this command to view global system settings.

Syntax

get system global

Example

This example shows the output for get system global:

admin-host: (null)

admin-lockout-duration: 60

admin-lockout-method: ip

admin-lockout-threshold: 3

admin-ssh-grace-time: 120

adom-mode : normal

adom-rev-auto-delete: by-revisions

adom-rev-max-backup-revisions: 5

adom-rev-max-revisions: 120

adom-status : disable

apache-mode : event

api-ip-binding : enable

clone-name-option : default

clt-cert-req : disable

console-output : standard

contentpack-fgt-install: disable

country-flag : enable

create-revision : disable

daylightsavetime : enable

default-disk-quota : 1000

detect-unregistered-log-device: enable

device-view-mode : regular

dh-params : 2048

disable-module : none

enc-algorithm : high

faz-status : disable

fcp-cfg-service : disable

fgfm-ca-cert:

fgfm-cert-exclusive: disable

fgfm-deny-unknown : disable

fgfm-local-cert : (null)

fgfm-peercert-withoutsn: disable

fgfm-ssl-protocol : tlsv1.2

fortiservice-port : 8013

gui-curl-timeout: 30

gui-polling-interval: 5

ha-member-auto-grouping: enable

hostname : FMG-VM64

import-ignore-addr-cmt: disable

language : english

latitude : (null)

ldap-cache-timeout : 86400

ldapconntimeout : 60000

log-checksum : none

log-checksum-upload : disable

log-forward-cache-size : 0

longitude : (null)

management-ip : (null)

management-port : 443

max-running-reports : 1

multiple-steps-upgrade-in-autolink : disable

no-copy-permission-check: disable

no-vip-value-check : disable

normalized-intf-zone-only: disable

object-revision-db-max: 100000

object-revision-mandatory-note: enable

object-revision-object-max: 100

object-revision-status: enable

oftp-ssl-protocol : tlsv1.2

partial-install : disable

partial-install-rev : disable

perform-improve-by-ha: disable

policy-object-icon : disable

policy-object-in-dual-pane: disable

pre-login-banner : disable

private-data-encryption : disable

remoteauthtimeout : 10

save-last-hit-in-adomdb: disable

search-all-adoms : disable

ssh-enc-algo : chacha20-poly1305@openssh.com aes256-ctr aes256-gcm@openssh.com

ssh-hostkey-algo : ecdsa-sha2-nistp521 rsa-sha2-256 rsa-sha2-512 ssh-ed25519

ssh-kex-algo : diffie-hellman-group14-sha256 diffie-hellman-group16-sha512 diffie-hellman-group18-sha512 diffie-hellman-group-exchange-sha256 curve25519-sha256@libssh.org ecdh-sha2-nistp256 ecdh-sha2-nistp384 ecdh-sha2-nistp521

ssh-mac-algo : hmac-sha2-256 hmac-sha2-256-etm@openssh.com hmac-sha2-512 hmac-sha2-512-etm@openssh.com

ssh-strong-crypto : enable

ssl-low-encryption : disable

ssl-protocol : tlsv1.3 tlsv1.2

ssl-static-key-ciphers: enable

table-entry-blink: enable

task-list-size : 2000

timezone : (GMT-8:00) Pacific Time (US & Canada).

tunnel-mtu : 1500

usg : disable

vdom-mirror : disable

webservice-proto : tlsv1.3 tlsv1.2

workspace-mode : disabled

system global

system global

Use this command to view global system settings.

Syntax

get system global

Example

This example shows the output for get system global:

admin-host: (null)

admin-lockout-duration: 60

admin-lockout-method: ip

admin-lockout-threshold: 3

admin-ssh-grace-time: 120

adom-mode : normal

adom-rev-auto-delete: by-revisions

adom-rev-max-backup-revisions: 5

adom-rev-max-revisions: 120

adom-status : disable

apache-mode : event

api-ip-binding : enable

clone-name-option : default

clt-cert-req : disable

console-output : standard

contentpack-fgt-install: disable

country-flag : enable

create-revision : disable

daylightsavetime : enable

default-disk-quota : 1000

detect-unregistered-log-device: enable

device-view-mode : regular

dh-params : 2048

disable-module : none

enc-algorithm : high

faz-status : disable

fcp-cfg-service : disable

fgfm-ca-cert:

fgfm-cert-exclusive: disable

fgfm-deny-unknown : disable

fgfm-local-cert : (null)

fgfm-peercert-withoutsn: disable

fgfm-ssl-protocol : tlsv1.2

fortiservice-port : 8013

gui-curl-timeout: 30

gui-polling-interval: 5

ha-member-auto-grouping: enable

hostname : FMG-VM64

import-ignore-addr-cmt: disable

language : english

latitude : (null)

ldap-cache-timeout : 86400

ldapconntimeout : 60000

log-checksum : none

log-checksum-upload : disable

log-forward-cache-size : 0

longitude : (null)

management-ip : (null)

management-port : 443

max-running-reports : 1

multiple-steps-upgrade-in-autolink : disable

no-copy-permission-check: disable

no-vip-value-check : disable

normalized-intf-zone-only: disable

object-revision-db-max: 100000

object-revision-mandatory-note: enable

object-revision-object-max: 100

object-revision-status: enable

oftp-ssl-protocol : tlsv1.2

partial-install : disable

partial-install-rev : disable

perform-improve-by-ha: disable

policy-object-icon : disable

policy-object-in-dual-pane: disable

pre-login-banner : disable

private-data-encryption : disable

remoteauthtimeout : 10

save-last-hit-in-adomdb: disable

search-all-adoms : disable

ssh-enc-algo : chacha20-poly1305@openssh.com aes256-ctr aes256-gcm@openssh.com

ssh-hostkey-algo : ecdsa-sha2-nistp521 rsa-sha2-256 rsa-sha2-512 ssh-ed25519

ssh-kex-algo : diffie-hellman-group14-sha256 diffie-hellman-group16-sha512 diffie-hellman-group18-sha512 diffie-hellman-group-exchange-sha256 curve25519-sha256@libssh.org ecdh-sha2-nistp256 ecdh-sha2-nistp384 ecdh-sha2-nistp521

ssh-mac-algo : hmac-sha2-256 hmac-sha2-256-etm@openssh.com hmac-sha2-512 hmac-sha2-512-etm@openssh.com

ssh-strong-crypto : enable

ssl-low-encryption : disable

ssl-protocol : tlsv1.3 tlsv1.2

ssl-static-key-ciphers: enable

table-entry-blink: enable

task-list-size : 2000

timezone : (GMT-8:00) Pacific Time (US & Canada).

tunnel-mtu : 1500

usg : disable

vdom-mirror : disable

webservice-proto : tlsv1.3 tlsv1.2

workspace-mode : disabled