FortiGuard Management – FortiManager 5.2

Connecting the built-in FDS to the FDN

When you enable the built-in FDS and initiate an update either manually or by a schedule, the FortiManager system attempts to connect to the FDN.

If all connection attempts to the server list fail, the connection status will be Disconnected.

If the connection status remains Disconnected, you may need to configure the FortiManager system’s connection to the FDN by:

l overriding the default IP address and/or port l configuring a connection through a web proxy

After establishing a connection with the FDN, the built-in FDS can receive FortiGuard service update packages, such as antivirus engines and signatures or web filtering database updates, from the FDN.

To enable the built-in FDS:

  1. Go to FortiGuard Management > Advanced Settings.
  2. Enable the types of FDN services that you want to provide through your FortiManager system’s built-in FDS. For more information, see “FortiGuard Management” on page 412.
  3. Select Apply.

The built-in FDS attempts to connect to the FDN. To see the connection status go to FortiGuard Management > Advanced Settings.

Disconnected A red down arrow appears when the FDN connection fails.
Connected A green up arrow appears when the initial FDN connection succeeds, but a synchronization connection has not yet occurred.

 

devices to use the built-in FDS

Out Of Sync A gray X appears when the initial FDN connection succeeds, but the built-in FDS is disabled, and so cannot synchronize.
Synchronized A green checkmark appears when the built-in FDS is enabled, and FDN package downloads were successfully completed.

If the built-in FDS cannot connect, you may also need to enable the selected services on a network interface. For more information, see Configuring network interfaces.

If you still cannot connect to the FDN, check routes, DNS, and any intermediary firewalls or NAT devices for policies that block necessary FDN ports and protocols. For additional FDN troubleshooting information, including FDN server selection, FDN port numbers and protocols.

This entry was posted in Administration Guides, FortiManager and tagged , , on by .

About Mike

Michael Pruett, CISSP has a wide range of cyber-security and network engineering expertise. The plethora of vendors that resell hardware but have zero engineering knowledge resulting in the wrong hardware or configuration being deployed is a major pet peeve of Michael's. This site was started in an effort to spread information while providing the option of quality consulting services at a much lower price than Fortinet Professional Services. Owns PacketLlama.Com (Fortinet Hardware Sales) and Office Of The CISO, LLC (Cybersecurity consulting firm).

Leave a Reply

Your email address will not be published. Required fields are marked *

This site uses Akismet to reduce spam. Learn how your comment data is processed.