Skip to main content
LB28
Visitor III
March 5, 2026
Question

Multiple NTP and DNS server requirement

  • March 5, 2026
  • 2 replies
  • 234 views

Hi,

 

I am currently migrating multiple Cisco ASA firewall  to a single FortiGate (HA setup). I extracted multiple NTP server and DNS server, and all of them are requirement of the client for auditing. 

 

How can I configure this servers on the FortiGate?

2 replies

fabs-net
Explorer III
March 5, 2026

If I understand this correct, the ASAs are using multiple DNS/NTP Servers and you want to migrate this setup to the FortiGate.
My first thought is to do it via VDOMs, so you build the same logic from each ASA to one VDOM on the FortiGate - there you can set defined DNS & NTP servers for each setup.
The backside is that you have multiple "virtual" FortiGates then to manage.

Hope this helps.

Every packet has a journey.
LB28
LB28Author
Visitor III
March 5, 2026

How about we set aside the multiple VDOM setup, if the customer want it in a single domain setup?

 

For NTP, I set type custom and add all NTP server.

https://community.fortinet.com/t5/FortiGate/Technical-Tip-An-alternate-way-to-sync-the-NTP-server-to-avoid/ta-p/280309

 

It saved without issue but how to can I mapped it to the addresses per ntp server?

 

Thought Leadership Security Summit. Outpace New Threats with AI - enhanced defense. Tuesday, Septmeber 15, 8:30 AM - 2:30 PM PT. The Golf Club at Newcastle, WA.
Fortinet Flag the Hack. Wednesday, August 26, 9:00 AM - 5:00 PM ET, COSM, Atlanta, GA.