FortiADC
FortiADC enhances the scalability, performance, and security of your applications whether they are hosted on premises or in the cloud.
shafiq23
Staff & Editor
Staff & Editor
Article Id 231160
Description This article describes the requirement to allow FortiADC connection to the Fortinet Distribution Network (FDN).
Scope FortiADC and FortiADC VM.
Solution

FortiADC periodically connects to FDN services for its FortiGuard service license verification and signature database/engine updates.

 

When FortiADC is deployed behind a firewall or security system, the connection to FDN services may be blocked, preventing FortiADC from validating its license and components.

 

FortiADC requires at least a DNS and HTTPS connection to the below domains:

 

update.fortiguard.net
globalupdate.fortiguard.net
service.fortiguard.net

 

Perform the below actions once FDN domains are allowed in the firewall policy or security devices.

 

From GUI:

  1. Go to System  -> FortiGuard.
  2. Under FortiGuard Services, select Update FortiGuard Service Definitions

 

Or:

 

From CLI:

       

execute ping service.fortiguard.com

execute ping update.fortiguard.com

execute update-now

 

Debugs:

 

diagnose debug reset
diagnose debug module updated all
diagnose debug enable
execute update-now

 

Steps to verify:

 

From GUI:

  1. Go to System -> FortiGuard.
  2. Review Status information.

 

2.png

 

From CLI:

 

get system status

 

3.PNG

 

Related document:
Connecting to FortiGuard services