Created on
11-13-2020
04:25 AM
Edited on
07-12-2023
09:08 AM
By
enguyen3467
Description
This article describes how to address Fortiguard when Anycast default method does not work.
Scope
For version 6.4.3 and above.
Solution
Per default FortiOS, 6.4.3 and above is using the Anycast method to address the Fortiguard servers.
Relying on Fortinet DNS servers, the FortiGate will get a single IP address for the domain name of each FortiGuard service.
In some circumstances Anycast does not work:
4) Disable Anycast and use UDP with Port 8888.
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2023 Fortinet, Inc. All Rights Reserved.