Hier werden die Unterschiede zwischen zwei Versionen angezeigt.
| Beide Seiten der vorigen Revision Vorhergehende Überarbeitung Nächste Überarbeitung | Vorhergehende Überarbeitung | ||
|
fortigate [2025/02/14 10:22] jango [CLI] |
fortigate [2025/09/19 12:40] (aktuell) jango [CLI] |
||
|---|---|---|---|
| Zeile 34: | Zeile 34: | ||
| end | end | ||
| + | // testen | ||
| + | show system global | ||
| // other commands | // other commands | ||
| Zeile 51: | Zeile 53: | ||
| show | grep address | show | grep address | ||
| set vlanid 1 | set vlanid 1 | ||
| + | |||
| + | edit next # erstellt ein objekt mit der nächst verfügbaren ID | ||
| </ | </ | ||
| + | Debugging | ||
| + | < | ||
| + | diagnose debug enable | ||
| + | |||
| + | get vpn ipsec tunnel summary | ||
| + | diagnose vpn tunnel list [name < | ||
| + | diagnose vpn ike gateway | ||
| + | diagnose vpn ike stats | ||
| + | |||
| + | diagnose debug application ike -1 | ||
| + | diagnose debug disable | ||
| + | |||
| + | diagnose sniffer packet any 'host 10.0.0.1 and host 10.0.0.2' | ||
| + | diagnose sniffer packet any 'net 10.0.0.0/ | ||
| + | diagnose sniffer packet < | ||
| + | execute policy-packet-capture delete-all | ||
| + | </ | ||
| =====Interfaces===== | =====Interfaces===== | ||
| Zeile 149: | Zeile 170: | ||
| set subnet 192.168.1.0 255.255.255.0 | set subnet 192.168.1.0 255.255.255.0 | ||
| next | next | ||
| - | edit "subnet_192.168.2.0_24" | + | edit "host_192.168.1.10" |
| - | set subnet 192.168.2.0 255.255.255.0 | + | set subnet 192.168.1.10 255.255.255.255 |
| next | next | ||
| end | end | ||
| Zeile 156: | Zeile 177: | ||
| ====Policy Rule==== | ====Policy Rule==== | ||
| + | |||
| < | < | ||
| config firewall policy | config firewall policy | ||
| Zeile 169: | Zeile 191: | ||
| set nat enable | set nat enable | ||
| next | next | ||
| + | end | ||
| + | </ | ||
| + | |||
| + | Move policy | ||
| + | < | ||
| + | config firewall policy | ||
| + | move 15 before 10 | ||
| end | end | ||
| </ | </ | ||
| Zeile 259: | Zeile 288: | ||
| </ | </ | ||
| + | Show references of an IPSec Tunnel | ||
| + | |||
| + | < | ||
| + | show | grep " | ||
| + | </ | ||
| =====SD WAN===== | =====SD WAN===== | ||
| Zeile 360: | Zeile 394: | ||
| <code bash> | <code bash> | ||
| + | |||
| + | # Interfaces | ||
| + | cmdb/ | ||
| + | |||
| + | # Router | ||
| + | cmdb/ | ||
| + | cmdb/ | ||
| + | cmdb/ | ||
| + | cmdb/ | ||
| + | cmdb/ | ||
| + | |||
| # Firewall | # Firewall | ||
| cmdb/ | cmdb/ | ||