Chris Wopat
2017-05-30 13:17:24 UTC
Two notes with Fortigate (fnrancid)- one a feature request, the other
an issue we're trying to pin down.
1) feature - i'd suggest changing the config it fetches from 'show
full-configuration' to just 'show', which will show only non-default
stuff. 'show full-configuration' is equivilant to IOS's 'show
running-config full'. 'show' seems to match better with how most
devices are handled.
2) issue with spacing / tabbing causing excessive diffs. This seemed
to have begun happening in FortiOS 5.4 and was not happening on 5.2.
It happens in both 5.4 and 5.6 and across various devices (half dozen,
1000d, 600d, 100d.).
Random sections of the config line wrap or change their spacing and
flip back and forth. It doesn't seem to be excessively wide lines, nor
any specific section of the config.
This is a change detected between two consecutive runs with no changes
made to a device:
config system global
- set admintimeout 35
+ set admintimeout
+ 35
config system global
- set admintimeout
- 35
+ set admintimeout 35
.. and another:
config system global
- set disk-usage wanopt
+ set disk-usage
+ wanopt
config system global
- set disk-usage
- wanopt
+ set disk-usage wanopt
.. and another:
- config
- system accprofile
+ config system accprofile
edit "prof_admin"
set mntgrp read-write
.. and so on
- next
+ next
end
- next
+ next
end
Curious if others are seeing this as well. I've opened a case w/
Fortinet as I believe it's on their side, but have a hard time
convincing them.
an issue we're trying to pin down.
1) feature - i'd suggest changing the config it fetches from 'show
full-configuration' to just 'show', which will show only non-default
stuff. 'show full-configuration' is equivilant to IOS's 'show
running-config full'. 'show' seems to match better with how most
devices are handled.
2) issue with spacing / tabbing causing excessive diffs. This seemed
to have begun happening in FortiOS 5.4 and was not happening on 5.2.
It happens in both 5.4 and 5.6 and across various devices (half dozen,
1000d, 600d, 100d.).
Random sections of the config line wrap or change their spacing and
flip back and forth. It doesn't seem to be excessively wide lines, nor
any specific section of the config.
This is a change detected between two consecutive runs with no changes
made to a device:
config system global
- set admintimeout 35
+ set admintimeout
+ 35
config system global
- set admintimeout
- 35
+ set admintimeout 35
.. and another:
config system global
- set disk-usage wanopt
+ set disk-usage
+ wanopt
config system global
- set disk-usage
- wanopt
+ set disk-usage wanopt
.. and another:
- config
- system accprofile
+ config system accprofile
edit "prof_admin"
set mntgrp read-write
.. and so on
- next
+ next
end
- next
+ next
end
Curious if others are seeing this as well. I've opened a case w/
Fortinet as I believe it's on their side, but have a hard time
convincing them.