FortiGate
FortiGate Next Generation Firewall utilizes purpose-built security processors and threat intelligence security services from FortiGuard labs to deliver top-rated protection and high performance, including encrypted traffic.
anikolov
Staff
Staff

Description.


This article describes the old values that you get from the '# get system status' output.

 

The output of this command might lead to the impression that FortiGate is not updating its database from FortiGuard.

 

 

Scope

 

FortiGate

 

Solution.

 

See the example below:

 

FORTIGATE-Minjo# get system status

Version: FortiGate-VM64 v6.4.8,build1914,211117 (GA)

Virus-DB: 89.08260(2021-12-31 00:20)

Extended DB: 89.08260(2021-12-31 00:19)

Extreme DB: 1.00000(2018-04-09 18:07) <----- Last update – old value.

IPS-DB: 6.00741(2015-12-01 02:30) <----- Last update – old value.

IPS-ETDB: 19.00232(2021-12-30 04:57)

APP-DB: 19.00232(2021-12-30 04:57)

INDUSTRIAL-DB: 19.00232(2021-12-30 04:57)

Serial-Number: FGVM04TM21-----8

IPS Malicious URL Database: 3.00231(2021-12-30 15:23)

 

The default database for antivirus is the extended database and for IPS it varies depending on the model of the FortiGate.

The other database that is not in use does not get updated unless in use.

 

It is possible to switch to the other databases:

 

- For antivirus:
https://community.fortinet.com/t5/FortiGate/Technical-Tip-Antivirus-database/ta-p/193129

 

- For IPS:
https://community.fortinet.com/t5/FortiGate/Technical-Tip-Changing-the-IPS-database/ta-p/197371?exte...

 

Changing the antivirus to extreme and the IPS to regular in my example using the previous two articles has resulted with these values:

 

FORTIGATE-Minjo # get system status

Version: FortiGate-VM64 v6.4.8,build1914,211117 (GA)

Virus-DB: 89.08264(2021-12-31 04:20)

Extended DB: 89.08264(2021-12-31 04:19)

Extreme DB: 89.08220(2021-12-29 16:31) <----- Now it is updated.

IPS-DB: 19.00232(2021-12-30 04:57) <----- Now it is updated.

IPS-ETDB: 19.00232(2021-12-30 04:57)

APP-DB: 19.00232(2021-12-30 04:57)

INDUSTRIAL-DB: 19.00232(2021-12-30 04:57)

Serial-Number: FGVM04TM21-----8

IPS Malicious URL Database: 3.00231(2021-12-30 15:23)

Contributors