FortiGate
FortiGate Next Generation Firewall utilizes purpose-built security processors and threat intelligence security services from FortiGuard labs to deliver top-rated protection and high performance, including encrypted traffic.
kdharan
Staff
Staff
Article Id 367545
Description

This article describes the possible reasons why FortiGate is not populated, the FortiGuard DLP sensors, and dictionaries.

Scope

FortiGate v7.4.x.

Solution
  1. FortiGuard DLP is a Licence feature. So check that FortiGate has a DLP license. 
                                             

dlpicesne.PNG

 

  1. Check the connectivity to FortiGuard servers by referring to this KB article: Troubleshooting Tip: Unable to connect to FortiGuard servers.

     

     

  2. Check the 'update-dldb' is enabled on the device if not enable it. By default, it is enabled. 


    To enable the update-dldb:

    config system fortiguard
        set update-dldb enable
    end

     

    When enabled, the DLP database (DLDB) is downloaded to the FortiGate and its predefined patterns can be configured in DLP profiles.

  3. Check the DLP Signature DB using 'diagnose autoupdate versions'.
    To verify the database signature status:


diagnose autoupdate versions | grep -A6 DLP
DLP Signature

---------

Version: 1.00010

Contract Expiry Date: Thu Nov 13 2025
Last Updated using scheduled update on Tue Dec 24 10:49:59 2024
Last Update Attempt: Tue Dec 31 10:19:12 2024
Result: No Updates

 

Now the FortiGuard DLP will be available on the DLP sensor list. To verify, Select 'Security Profiles' -> 'Data Loss Prevention' -> 'Sensors'.

 

  1. To verify the dlp sensor and dictionary:


get dlp dictionary
== [ fg-aus-abn-dict-high ]
name: fg-aus-abn-dict-high
== [ fg-aus-abn-dict-low ]
name: fg-aus-abn-dict-low
== [ fg-aus-abn-dict-med ]
name: fg-aus-abn-dict-med
..........................

 

Note:

This FortiGuard DLP feature is available from v7.4.x.

 

Related document

FortiGuard DLP service