Fortinet black logo
9.4.0

Debugging

Debugging

Use the following KB article to gather the appropriate logs using the debugs below.

Gather logs for debugging and troubleshooting

Note: Debugs disable automatically upon restart of FortiNAC control and management processes.

Function

Syntax

Log File

Syslog activity

nacdebug –name SyslogServer true

/bsc/logs/output.master

RADIUS Authentication activity

nacdebug –name RadiusManager true

/bsc/logs/output.master

LDAP synchronization and lookup

nacdebug –name DirectoryManager true

/bsc/logs/output.master

SSH/Telnet CLI activity

nacdebug –name TelnetServer true

/bsc/logs/output.master

SNMP activity

nacdebug –name SnmpV1 true

/bsc/logs/output.master

Persistent Agent activity

nacdebug -name PersistentAgent true

/bsc/logs/output.nessus

Dissolvable Agent activity

nacdebug -name AgentServer true

/bsc/logs/output.nessus

Syslog activity

nacdebug -name SyslogServer true

/bsc/logs/output.master

VPN activity

nacdebug -name RemoteAccess true

/bsc/logs/output.master

FortiGate VPN specific activity

nacdebug -name FortinetVPN true

/bsc/logs/output.master

FortiNAC Network association to each FortiGate

nacdebug -name DeviceInterface true

/bsc/logs/output.master

SSO activity

nacdebug -name SSOManager true

/bsc/logs/output.master

Disable debug

nacdebug –name <debug name> false

N/A

Debugging

Use the following KB article to gather the appropriate logs using the debugs below.

Gather logs for debugging and troubleshooting

Note: Debugs disable automatically upon restart of FortiNAC control and management processes.

Function

Syntax

Log File

Syslog activity

nacdebug –name SyslogServer true

/bsc/logs/output.master

RADIUS Authentication activity

nacdebug –name RadiusManager true

/bsc/logs/output.master

LDAP synchronization and lookup

nacdebug –name DirectoryManager true

/bsc/logs/output.master

SSH/Telnet CLI activity

nacdebug –name TelnetServer true

/bsc/logs/output.master

SNMP activity

nacdebug –name SnmpV1 true

/bsc/logs/output.master

Persistent Agent activity

nacdebug -name PersistentAgent true

/bsc/logs/output.nessus

Dissolvable Agent activity

nacdebug -name AgentServer true

/bsc/logs/output.nessus

Syslog activity

nacdebug -name SyslogServer true

/bsc/logs/output.master

VPN activity

nacdebug -name RemoteAccess true

/bsc/logs/output.master

FortiGate VPN specific activity

nacdebug -name FortinetVPN true

/bsc/logs/output.master

FortiNAC Network association to each FortiGate

nacdebug -name DeviceInterface true

/bsc/logs/output.master

SSO activity

nacdebug -name SSOManager true

/bsc/logs/output.master

Disable debug

nacdebug –name <debug name> false

N/A