Technical Tip: Regular Antivirus, IPS, and Application control Scheduled update not working
Description
This article describes how scheduling updates ensures that the virus, IPS definitions, and application control signatures are downloaded to FortiGate regularly.
In some scenarios, FortiGate is not able to receive regularly scheduled Antivirus, IPS, or application control updates. Only a manual Update that functions.
FortiGuard updates can be scheduled in the GUI under System -> FortiGuard -> FortiGuard Updates.

Solution
Updating Antivirus, IPS, or application control definitions can cause a brief disruption in traffic that is currently being scanned while FortiGate applies the new signature database.
Updates should be scheduled during off-peak hours when network usage is at a minimum to ensure that network activity will not be affected by downloading the definitions files.
When all policies on the configuration have no UTM (AV, IPS, or APP) enabled, Regular Scheduled for Antivirus, IPS definitions, and APP signatures will not work even if scheduled updates are configured.
Updates only work if in there is at least one policy with UTM (Antivirus, IPS, or APP) enabled in the configuration.
Enable Antivirus, IPS, or APP in one of the policies, and then, regular schedule updates will start working if it is configured. The current version, last time updated, and last update attempt result using the command 'diagnose autoupdate versions'.

---------
Version: 93.00440 signed
Contract Expiry Date: Thu Feb 18 2027
Last Updated using manual update on Wed Jan 22 11:04:59 2025
Last Update Attempt: Wed Jan 22 11:04:59 2025
Result: Updates Installed
--
Flow-based Virus Definitions
---------
Version: 93.00440 signed
Contract Expiry Date: Thu Feb 18 2027
Last Updated using manual update on Wed Jan 22 11:04:59 2025
Last Update Attempt: Wed Jan 22 11:04:59 2025
Result: Updates Installed
Attack Definitions
---------
Version: 6.00741 signed
Contract Expiry Date: Thu Feb 18 2027
Last Updated using manual update on Tue Dec 1 02:30:00 2015
Last Update Attempt: n/a
Result: Updates Installed
Application Definitions
---------
Version: 29.00938 signed
Contract Expiry Date: Thu Feb 18 2027
Last Updated using manual update on Wed Jan 22 11:04:59 2025
Last Update Attempt: Wed Jan 22 11:04:59 2025
Result: Updates Installed
- Check that the FortiGate has a valid contract.
- Antivirus/IPS are updated using port 443 while Web filtering/anti-spam are contacted using either port 53 or port 8888.
- Ensure that nothing is blocking traffic from the FortiGate on these ports.
