Fortinet black logo

System commands

System commands

The following system commands are available:

Command

Description

backup-sysconf

Upload system configuration backup to remote server.

cleandb

Clean up the internal database and job information. This command erases all stored data and reboots the device.

This command only works on devices that are in standalone mode.

client-lenc

Enable/disable OFTPD supporting FG-LENC devices , TLS 1.3 protocol and specific SSL CBC Suites protocol.

cm-status

List the status of units joining the Global Threat Information Network.

config-reset

Reset the FortiSandbox configuration to factory default settings. Job data is kept.

For installed VM images, their clone numbers and Scan Profile settings are set back to default.

confirm-id

Set confirm ID for Microsoft Windows or Office activation.

device-authorization

Configure new client device authorization .

factory-reset

Reset the FortiSandbox configuration to factory default settings. All data is deleted.

For installed VM images, only Default VMs are kept and their clone number and Scan Profile settings are set back to default.

fsck-storage

Check the file system on the hard disk and repair it if it's not clean. System reboots immediately.

fw-upgrade

Upgrade or re-install the FortiSandbox firmware via Secure Copy (SCP) or File Transfer Protocol (FTP) server.

iptables

Enable/disable IP tables.

log-dropped

Enable/disable the log file drop event.

log-purge

Delete all system logs.

oftpd-con-mode

Enable/disable conserve mode of OFTPD.

For details, see oftpd-con-mode.

ps-status

Use this command to display power supply status.

reboot

Reboot the FortiSandbox. All sessions will be terminated. The unit goes offline and there is a delay while it restarts.

remote-auth-timeout

Set the timeout for remote authentication.

rename-admin

Administrators with the Super Admin profile can use this command to rename other administrators.

reset-sandbox-engine

Reset the tracer/rating engine back to firmware default.

reset-scan-profile

Reset the scan flow settings to firmware default values.

reset-widgets

Reset the GUI widgets.

restore-sysconf

Restore system configuration from remote server.

For details, see restore-sysconf.

sandbox-engines

Display FortiSandbox FortiGuard component versions including the Tracer Engine, Rating Engine, Traffic Sniffer, Botnet Signature Database, IPS Signature Database, and Android engine versions.

set-cfg-backup-key

Set your own passphrase that openSSL uses to encrypt or decrypt a configuration backup file.

set-maintainer

Enable/disable the maintainer account.

set-tcp-timestamp-response

Set tcp timestamp reponse.

set-tlsver

Set the allowed TLS version for HTTPS service.

shutdown

Shutdown the FortiSandbox.

status

Display the FortiSandbox firmware version, serial number, system time, disk usage, disk inode usage, image status check, Microsoft Windows VM status, VM network access configuration, and RAID information.

system-admin

Create/Delete an Administrator.

upload-settings

Configure data upload settings to community cloud.

usg-license

Convert the unit to be USG licensed.

System commands

The following system commands are available:

Command

Description

backup-sysconf

Upload system configuration backup to remote server.

cleandb

Clean up the internal database and job information. This command erases all stored data and reboots the device.

This command only works on devices that are in standalone mode.

client-lenc

Enable/disable OFTPD supporting FG-LENC devices , TLS 1.3 protocol and specific SSL CBC Suites protocol.

cm-status

List the status of units joining the Global Threat Information Network.

config-reset

Reset the FortiSandbox configuration to factory default settings. Job data is kept.

For installed VM images, their clone numbers and Scan Profile settings are set back to default.

confirm-id

Set confirm ID for Microsoft Windows or Office activation.

device-authorization

Configure new client device authorization .

factory-reset

Reset the FortiSandbox configuration to factory default settings. All data is deleted.

For installed VM images, only Default VMs are kept and their clone number and Scan Profile settings are set back to default.

fsck-storage

Check the file system on the hard disk and repair it if it's not clean. System reboots immediately.

fw-upgrade

Upgrade or re-install the FortiSandbox firmware via Secure Copy (SCP) or File Transfer Protocol (FTP) server.

iptables

Enable/disable IP tables.

log-dropped

Enable/disable the log file drop event.

log-purge

Delete all system logs.

oftpd-con-mode

Enable/disable conserve mode of OFTPD.

For details, see oftpd-con-mode.

ps-status

Use this command to display power supply status.

reboot

Reboot the FortiSandbox. All sessions will be terminated. The unit goes offline and there is a delay while it restarts.

remote-auth-timeout

Set the timeout for remote authentication.

rename-admin

Administrators with the Super Admin profile can use this command to rename other administrators.

reset-sandbox-engine

Reset the tracer/rating engine back to firmware default.

reset-scan-profile

Reset the scan flow settings to firmware default values.

reset-widgets

Reset the GUI widgets.

restore-sysconf

Restore system configuration from remote server.

For details, see restore-sysconf.

sandbox-engines

Display FortiSandbox FortiGuard component versions including the Tracer Engine, Rating Engine, Traffic Sniffer, Botnet Signature Database, IPS Signature Database, and Android engine versions.

set-cfg-backup-key

Set your own passphrase that openSSL uses to encrypt or decrypt a configuration backup file.

set-maintainer

Enable/disable the maintainer account.

set-tcp-timestamp-response

Set tcp timestamp reponse.

set-tlsver

Set the allowed TLS version for HTTPS service.

shutdown

Shutdown the FortiSandbox.

status

Display the FortiSandbox firmware version, serial number, system time, disk usage, disk inode usage, image status check, Microsoft Windows VM status, VM network access configuration, and RAID information.

system-admin

Create/Delete an Administrator.

upload-settings

Configure data upload settings to community cloud.

usg-license

Convert the unit to be USG licensed.