FortiAP
FortiAP devices are thin wireless access points (AP) supporting the latest Wi-Fi technologies (multi-user MIMO 802.11ac Wave 1 and Wave 2, 4x4), as well as 802.11n, 802.11AX , and the demand for plug and play deployment.
hlngan
Staff
Staff
Article Id 189581

Description


This article describes the  IP address range and outgoing ports that need to be allowed for FortiCloud service connection.

 

Scope

 

FortiGate, FortiGate Cloud, FortiAP.

Solution


IP address range for FortiCloud and FortiAP Cloud:
Global and JP IP range (mix):

208.91.113.0/24, 173.243.132.0/24.

 

FortiGate Cloud IP address range:

173.243.132.0/24, 208.91.113.0/24 (Global).

210.7.96.0/24 (Japan).

154.52.10.0/24 (Germany).

154.45.6.0/24 (France).

 

FortiGate Cloud domain names:

 

logctrl1.fortinet.com (FortiGate Cloud logging/non-anycast).

globallogctrl.fortinet.net (FortiGate Cloud logging/anycast).

mgrctrl1.fortinet.com (FortiGate Cloud management/non-anycast).

globalmgrctrl.fortinet.net (FortiGate Cloud management/anycast).

 

FortiGate Cloud Sandbox IP address range:

173.243.139.0/24, 184.94.112.0/24, 154.52.26.0/24 (Global).

209.40.106.192/26, 209.66.107.0/24 (US).

210.7.96.0/24, 154.52.7.0/24 (Japan).

83.231.212.128/25, 154.45.1.0/24, 154.52.11.0/24 (EU).


Ports used for FortiGate:
FortiGate Cloud:

TCP/443, TCP/80 (Registration, Contract Validation, Log and Report, Syslog).

TCP/541 (Management).

TCP/514 (OFTP).


Ports used for FortiAP:
FortiAP Cloud:

TCP/443, TCP/80, TCP/514, TCP/541
UDP/5246, UDP/5247