Technical Tip: How to manually update the Virus Definition database or AntiVirus Engine
Description
Scope
FortiGate, FortiManager.
Solution
- Log in to the Customer Service & Support web portal at Support.
- Navigate to Support -> Service updates -> Download and find the FortiGate device model to update.
- Select the corresponding link for 'Virus Definition' and download the '.ETDB' file after completing the security check.
- Optionally, verify the file integrity (Technical Tip: How to verify downloaded firmware checksum) by comparing the locally generated MD5 hash of the file with the one provided at the (MD5) link.

In the Web GUI:
Run the following command to check the current Antivirus definition or engine versions:
diagnose autoupdate versions | grep Virus -A2
In this case, the Virus Definitions version is 0, and the Antivirus engine shows (6.)276 (the same as in the GUI example).
Sometimes, for the AntiVirus engines provided by support representatives, there may be a warning that requires confirmation:
In some cases, the 'Failed to upgrade database' may appear:
This occurs if the AntiVirus engine is not meant to be used in the FortiOS version currently being run, or, less likely, if the file integrity has been compromised (usually due to incomplete downloads).

AntiVirus Package file names:
vsigupdate-OS7.60_7.049_GA_signed_ENG_ALL.pkg <---- This pkg file is valid for FortiOS v7.6.x.
vsigupdate-OS7.40_7.051_GA_signed_ENG_ALL.pkg <----- This pkg file is valid for FortiOS v7.4.x.
In this example, an upgrade is performed from version 276 to 283:
The following message appears briefly:
After refreshing, the version change is reflected in the AntiVirus status.


V7.6.x: The Option for updating the Antivirus Definition remains the same but the Graphical user interface has changed.

