Fortinet black logo

CLI Reference

system global

system global

Use this command to view global system settings.

Syntax

get system global

Example

This example shows the output for get system global:

admin-lockout-duration: 60

admin-lockout-method: ip

admin-lockout-threshold: 3

adom-mode : normal

adom-status : disable

apache-mode : event

api-ip-binding : enable

backup-compression : normal

backup-to-subfolders: disable

clone-name-option : default

clt-cert-req : disable

console-output : standard

contentpack-fgt-install: disable

country-flag : enable

create-revision : disable

daylightsavetime : enable

default-logview-auto-completion : enable

default-search-mode : filter-based

detect-unregistered-log-device: enable

device-view-mode : regular

dh-params : 2048

disable-module : none

enc-algorithm : high

event-correlation-cache-size : 4

fgfm-ca-cert:

fgfm-cert-exclusive: disable

fgfm-local-cert : (null)

fgfm-ssl-protocol : tlsv1.2

fortiservice-port : 8013

gui-curl-timeout: 30

gui-polling-interval: 5

ha-member-auto-grouping: enable

hostname : FAZVM64

language : english

latitude : (null)

ldap-cache-timeout : 86400

ldapconntimeout : 60000

log-checksum : none

log-checksum-upload : disable

log-forward-cache-size: 15

log-forward-plugin-workers: 10

log-mode : analyzer

longitude : (null)

management-ip : (null)

management-port : 443

max-aggregation-tasks: 0

max-running-reports : 1

multiple-steps-upgrade-in-autolink: disable

no-copy-permission-check: disable

no-vip-value-check : disable

normalized-intf-zone-only: disable

object-revision-db-max : 100000

object-revision-mandatory-note : enable

object-revision-object-max : 100

object-revision-status : enable

oftp-ssl-protocol : tlsv1.2

policy-object-icon : disable

policy-object-in-dual-pane: disable

pre-login-banner : disable

private-data-encryption : disable

remoteauthtimeout : 10

search-all-adoms : disable

ssh-enc-algo : chacha20-poly1305@openssh.com aes256-ctr aes256-gcm@openssh.com

ssh-hostkey-algo : ecdsa-sha2-nistp521 rsa-sha2-256 rsa-sha2-512 ssh-ed25519

ssh-kex-algo : diffie-hellman-group14-sha256 diffie-hellman-group16-sha512 diffie-hellman-group18-sha512 diffie-hellman-group-exchange-sha256 curve25519-sha256@libssh.org ecdh-sha2-nistp256 ecdh-sha2-nistp384 ecdh-sha2-nistp521

ssh-mac-algo : hmac-sha2-256 hmac-sha2-256-etm@openssh.com hmac-sha2-512 hmac-sha2-512-etm@openssh.com

ssh-strong-crypto : enable

ssl-low-encryption : enable

ssl-protocol : tlsv1.3 tlsv1.2

ssl-static-key-ciphers: enable

table-entry-blink: enable

task-list-size : 2000

timezone : (GMT-8:00) Pacific Time (US & Canada).

tunnel-mtu : 1500

usg : disable

webservice-proto : tlsv1.3 tlsv1.2

system global

Use this command to view global system settings.

Syntax

get system global

Example

This example shows the output for get system global:

admin-lockout-duration: 60

admin-lockout-method: ip

admin-lockout-threshold: 3

adom-mode : normal

adom-status : disable

apache-mode : event

api-ip-binding : enable

backup-compression : normal

backup-to-subfolders: disable

clone-name-option : default

clt-cert-req : disable

console-output : standard

contentpack-fgt-install: disable

country-flag : enable

create-revision : disable

daylightsavetime : enable

default-logview-auto-completion : enable

default-search-mode : filter-based

detect-unregistered-log-device: enable

device-view-mode : regular

dh-params : 2048

disable-module : none

enc-algorithm : high

event-correlation-cache-size : 4

fgfm-ca-cert:

fgfm-cert-exclusive: disable

fgfm-local-cert : (null)

fgfm-ssl-protocol : tlsv1.2

fortiservice-port : 8013

gui-curl-timeout: 30

gui-polling-interval: 5

ha-member-auto-grouping: enable

hostname : FAZVM64

language : english

latitude : (null)

ldap-cache-timeout : 86400

ldapconntimeout : 60000

log-checksum : none

log-checksum-upload : disable

log-forward-cache-size: 15

log-forward-plugin-workers: 10

log-mode : analyzer

longitude : (null)

management-ip : (null)

management-port : 443

max-aggregation-tasks: 0

max-running-reports : 1

multiple-steps-upgrade-in-autolink: disable

no-copy-permission-check: disable

no-vip-value-check : disable

normalized-intf-zone-only: disable

object-revision-db-max : 100000

object-revision-mandatory-note : enable

object-revision-object-max : 100

object-revision-status : enable

oftp-ssl-protocol : tlsv1.2

policy-object-icon : disable

policy-object-in-dual-pane: disable

pre-login-banner : disable

private-data-encryption : disable

remoteauthtimeout : 10

search-all-adoms : disable

ssh-enc-algo : chacha20-poly1305@openssh.com aes256-ctr aes256-gcm@openssh.com

ssh-hostkey-algo : ecdsa-sha2-nistp521 rsa-sha2-256 rsa-sha2-512 ssh-ed25519

ssh-kex-algo : diffie-hellman-group14-sha256 diffie-hellman-group16-sha512 diffie-hellman-group18-sha512 diffie-hellman-group-exchange-sha256 curve25519-sha256@libssh.org ecdh-sha2-nistp256 ecdh-sha2-nistp384 ecdh-sha2-nistp521

ssh-mac-algo : hmac-sha2-256 hmac-sha2-256-etm@openssh.com hmac-sha2-512 hmac-sha2-512-etm@openssh.com

ssh-strong-crypto : enable

ssl-low-encryption : enable

ssl-protocol : tlsv1.3 tlsv1.2

ssl-static-key-ciphers: enable

table-entry-blink: enable

task-list-size : 2000

timezone : (GMT-8:00) Pacific Time (US & Canada).

tunnel-mtu : 1500

usg : disable

webservice-proto : tlsv1.3 tlsv1.2