Cybersecurity Forum

This forum is for all security enthusiasts to discuss Fortinet's latest & evolving technologies and to connect & network with peers in the cybersecurity hemisphere. Share and learn on a broad range of topics like best practices, use cases, integrations and more. For support specific questions/resources, please visit the Support Forum or the Knowledge Base.

PatrWeic
New Contributor

ADC 5.3 - FDS Communication

I could not find out how multiple ADCs will be able to have their communication to Fortiguard over a single Management, i.e. have no direct connection to fortiguard:

For the following purposes:
- Licensing
- IPS, AV, VOS DB updates
- possible Fortiguard queries
- etc.

Most other products run can make use of Fortimanager. But for ADC there is no manager that can do that?

Also for WEB you can configure one of the WEB to be the proxy for the others to Fortiguard, but that also does not exist with ADC, right?



------------------------------
Thx
------------------------------
Thx
Thx
2 REPLIES 2
Ferry_k
Staff
Staff

Patrick,

For closed-network deployment, you can look into Fortiguard override option to utilize FortiManager.

config system fortiguard
set override-server-status enable
set override-server-address <ip-address>:8890
end

https://docs.fortinet.com/document/fortiadc/5.3.0/cli-reference/936097/config-system-fortiguard



------------------------------
Ferry
------------------------------
Ferry
Sr. Director Consulting Systems Engineering
PatrWeic

Dear Ferry,

Many thanks.

you mention port 8890, this is only for Fortiguard Queries, i.e. for ADC only for WebFilter Queries?

But not for IPS, AV engine updates, or IPS, AV, Geo IP, IP Reputation DBs as well as not for firmware updates etc.

I'm trying to build a complete list for ADC, ADC Manager, WEB, WEB Manager, for the list below of functions.


PS: I found the option of this before but it never stated that you can go to fortimanager and especially not the port 8890.

The admin handbook only mentions is provided by the fortinet service and support team.


UploadedImages_9Sbfmb0HTzaHzVBnIgLv_temp.png

I'm building a list of functions and their necessary connections etc:

Support Registration
License
Metering
Firmware Update
Monitoring
Alerting
Security Updates DB
Security Updates Engine
Security Queries (WF, AS, VOS)
Fortiguard xxx
Management
SDNS
Fortisandbox
Fortisandbox Cloud
Push
Pull
Fortianalyzer Cloud




------------------------------
Thx
------------------------------
Thx
Thx
Announcements

Select Forum Responses to become Knowledge Articles!

Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.