[rancid] Fortinet Firewall Question.

Alan McKinnon alan.mckinnon at gmail.com
Mon Nov 25 23:25:20 UTC 2013


On 25/11/2013 21:53, Chris Davis wrote:
> I have configured Rancid to process my Fortinet Firewalls.  I was
> running 2.3.6 and it was reporting every hour with changes because of
> the time and keys in my HA cluster.  Well, I finally had the time to
> look at upgrading it to 2.3.8 today.  I waited until after the hourly
> processing, and configured, made and installed the upgrade. 
> 
>  
> 
> I let it run, and voila, no firewall change.   The end of the hourly
> config diffs has finally ended.  So then I went in and deleted a
> disabled record, hoping to see it on the next hourly run.   But I got
> nothing.  The firewall itself emailed me the change, but I saw nothing
> reported in Rancid. 
> 
>  
> 
> Any ideas?




There are two main possibilities for the behaviour you describe:

- regexes have been updated to remove that annoying cycling data
- 2.3.8 is not sending mail (or you are not getting it).

A few simple questions to determine which it is:

- do you still receive other mail from rancid?
- are the line of interest appearing in rancid's output file? Do they
change there after you make a config change on the device?



-- 
Alan McKinnon
alan.mckinnon at gmail.com



More information about the Rancid-discuss mailing list