AnsweredHot!Cannot Delete Interface - The entry is used by other 4 entries

Author
KPS
Bronze Member
  • Total Posts : 40
  • Scores: 2
  • Reward points: 0
  • Joined: 2017/03/08 05:40:39
  • Status: online
2018/08/14 05:54:12 (permalink) 5.4
0

Cannot Delete Interface - The entry is used by other 4 entries

Hi!
 
I am using a Fortigate 200E with software version 5.4.5
 
I am trying to delete a vlan-interface. The problem is:
 
fg200e_HZ_1_1 (interface) # delete Inet992
The entry is used by other 4 entries
Command fail. Return code -23
 
 
 
fg200e_HZ_1_1 (root) # diagnose sys checkused system.interface.name Inet992
 

 
--> The GUI shows 4 references, but there are NO references.
 
The config does not show any other occurence of the name "Inet992" except the interface definition.
 
Do you have any idea, how to delete the interface with the "invisible" references?
 
Thank you and best wishes
KPS
 
 
 
post edited by KPS - 2018/08/14 05:56:04
#1
emnoc
Expert Member
  • Total Posts : 4988
  • Scores: 306
  • Reward points: 0
  • Joined: 2008/03/20 13:30:33
  • Location: AUSTIN TX AREA
  • Status: offline
Re: Cannot Delete Interface - The entry is used by other 4 entries 2018/08/14 08:02:35 (permalink) ☼ Best Answerby KPS 2018/08/14 22:55:04
0
Your probably missing a address binding, What I would do is to download the cfg and parse thru it or use
 
 clid-cmd   show | grep -f Inet992
 
And look for any references.
 
Ken

PCNSE,  NSE , Forcepoint ,  StrongSwan Specialist
#2
rwpatterson
Expert Member
  • Total Posts : 8275
  • Scores: 181
  • Reward points: 0
  • Joined: 2006/08/08 10:08:18
  • Location: Long Island, New York, USA
  • Status: online
Re: Cannot Delete Interface - The entry is used by other 4 entries 2018/08/14 08:23:55 (permalink)
0
Once in the past on a smaller unit I had a similar issue. A reboot cleared that issue up. Not sure if you can do that. It was up way too long.

-Bob - self proclaimed posting junkie!
See my Fortigate related scripts at: http://fortigate.camerabob.com

-4.3.19-b0694
FWF60B
FWF80CM (4)
FWF81CM (2)
 
#3
KPS
Bronze Member
  • Total Posts : 40
  • Scores: 2
  • Reward points: 0
  • Joined: 2017/03/08 05:40:39
  • Status: online
Re: Cannot Delete Interface - The entry is used by other 4 entries 2018/08/14 22:55:47 (permalink)
0
show | grep -f Inet992
--> did only show the interface definition
 
I will try to schedule a reboot, tomorrow.
 
Thank you for your help!
#4
darwin_FTNT
Bronze Member
  • Total Posts : 31
  • Scores: 2
  • Reward points: 0
  • Joined: 2018/04/24 18:12:28
  • Status: offline
Re: Cannot Delete Interface - The entry is used by other 4 entries 2018/08/14 23:09:04 (permalink)
0
The cmdb by design has handlers for configuration changes event.  Config change shouldn't require a reboot.  Event handler sends the new config to kernel, stopping/restarting affected daemons, validate settings, etc.  If it is easily replicable to do a config change that takes effect only after reboot, just file a new bug or contact support.  Rebooting also clear the session states and will disrupt client/server connections.
#5
rwpatterson
Expert Member
  • Total Posts : 8275
  • Scores: 181
  • Reward points: 0
  • Joined: 2006/08/08 10:08:18
  • Location: Long Island, New York, USA
  • Status: online
Re: Cannot Delete Interface - The entry is used by other 4 entries 2018/08/15 08:08:19 (permalink)
0
In my case, the config didn't change, it's just that the bindings couldn't be seen. After the reboot, there were still no longer any bindings (even though there weren't prior either) and the GUI then showed zero and I was able to remove the entry.

-Bob - self proclaimed posting junkie!
See my Fortigate related scripts at: http://fortigate.camerabob.com

-4.3.19-b0694
FWF60B
FWF80CM (4)
FWF81CM (2)
 
#6
emnoc
Expert Member
  • Total Posts : 4988
  • Scores: 306
  • Reward points: 0
  • Joined: 2008/03/20 13:30:33
  • Location: AUSTIN TX AREA
  • Status: offline
Re: Cannot Delete Interface - The entry is used by other 4 entries 2018/08/15 09:36:40 (permalink)
0
OP might need to upgrade off  that version. I  never seen this behavior in all of  years  btw

PCNSE,  NSE , Forcepoint ,  StrongSwan Specialist
#7
Toshi Esumi
Expert Member
  • Total Posts : 1118
  • Scores: 66
  • Reward points: 0
  • Joined: 2014/11/06 09:56:42
  • Status: offline
Re: Cannot Delete Interface - The entry is used by other 4 entries 2018/08/15 09:54:49 (permalink)
0
I did have the same experience rwpatterson had in the past at least a couple of times even with the modern versions like v5.x. I think it's related to some certain operations/changes like deletion of referred objects and re-naming some objects before deletion, etc. mainly by error, and subsequent action of corrections. It's difficult to replicate unless you're a software tester.
#8
hklb
Gold Member
  • Total Posts : 226
  • Scores: 25
  • Reward points: 0
  • Joined: 2014/06/10 15:00:59
  • Status: offline
Re: Cannot Delete Interface - The entry is used by other 4 entries 2018/08/15 13:22:00 (permalink)
0
Hello,
 
Check your dashboard (for all your admin user). It doesn't appear in CLI !
 
Perform a backup and search Inet992
 
Lucas
#9
KPS
Bronze Member
  • Total Posts : 40
  • Scores: 2
  • Reward points: 0
  • Joined: 2017/03/08 05:40:39
  • Status: online
Re: Cannot Delete Interface - The entry is used by other 4 entries 2018/08/16 10:54:39 (permalink)
0
Hi!
 
After a reboot, everything looks good!
#10
rwpatterson
Expert Member
  • Total Posts : 8275
  • Scores: 181
  • Reward points: 0
  • Joined: 2006/08/08 10:08:18
  • Location: Long Island, New York, USA
  • Status: online
Re: Cannot Delete Interface - The entry is used by other 4 entries 2018/08/16 11:36:26 (permalink)
0
Glad to hear.

-Bob - self proclaimed posting junkie!
See my Fortigate related scripts at: http://fortigate.camerabob.com

-4.3.19-b0694
FWF60B
FWF80CM (4)
FWF81CM (2)
 
#11
sw2090
Gold Member
  • Total Posts : 172
  • Scores: 10
  • Reward points: 0
  • Joined: 2017/06/14 01:27:25
  • Location: Regensburg
  • Status: offline
Re: Cannot Delete Interface - The entry is used by other 4 entries 2018/08/17 06:14:55 (permalink)
0
Probably one is the dhcp server. Gui does not show this as reference since in gui it is part of the interface setup however on cli it is not.
Did you check if there are any dns-forwarders or routes still on this interface?
#12
Jump to:
© 2018 APG vNext Commercial Version 5.5