[rancid] Fortigate updates Antivirus db IPS db hogging rancid

heasley heas at shrubbery.net
Fri Mar 29 16:24:47 UTC 2019


Fri, Mar 29, 2019 at 01:45:26PM +0200, Linux Threads:
> Hi Rancid Community,
> 
> I am backing up Fortigate devices with the new Debian Rancid ver. 3.9.1,
> 
> but the updates for antivirus IPS are hogging rancid, I have commented out
> "get system status" as below however I am still getting system statuses
> 
> help would be apprenticed greatly
> 
> extract /etc/rancid/rancid.types.base
> 
> #
> fortigate-full;script;rancid -t fortigate
> fortigate-full;login;fnlogin
> fortigate-full;timeout;90
> fortigate-full;module;fortigate
> fortigate-full;inloop;fortigate::inloop
> #fortigate-full;command;fortigate::GetSystem;get system status
> fortigate-full;command;fortigate::GetConf;show full-configuration
> 
> eg: output in rancid update
> 
> retrieving revision 1.176
> diff -u -4 -r1.176 fortigate-fw
> @@ -1,9 +1,9 @@
>   #RANCID-CONTENT-TYPE: fortigate
>   #
>   #Version: FortiGate-100E v6.0.3,build0200,181009 (GA)
> - #Virus-DB: 67.00399(2019-03-29 23:15)
> - #Extended DB: 67.00399(2019-03-29 23:15)
> + #Virus-DB: 67.00401(2019-03-29 01:15)
> + #Extended DB: 67.00401(2019-03-29 01:15)

these will be filtered with rancid.conf:FILTER_OSC=ALL

>   #IPS-DB: 14.00582(2019-03-28 00:00)
>   #IPS-ETDB: 0.00000(2001-01-01 00:00)
>   #APP-DB: 14.00582(2019-03-28 00:00)
>   #INDUSTRIAL-DB: 6.00741(2015-12-01 02:30)
> 
> Regards
> 
> Juan

> _______________________________________________
> Rancid-discuss mailing list
> Rancid-discuss at shrubbery.net
> http://www.shrubbery.net/mailman/listinfo/rancid-discuss



More information about the Rancid-discuss mailing list