Created on
04-28-2023
03:58 AM
Edited on
03-13-2025
10:13 AM
By
gmachavariani
This article describes how to fix the issue when the external connector threat feed status is in the 'Unavailable' connection status.
FortiGate.
For more info about Threat feeds, visit the below link:
In some cases, the external connector has the connection status immediately after creation.
Other symptoms of this behavior are:
This behavior is caused by the external database update being disabled.
config system fortiguard
set update-extdb disable
Re-enabling this option restores communication between the firewall and the server that hosts the threat feed IP list.
If the issue persists, ensure that the firewall can reach the external feed server by testing network connectivity using 'execute ping'. If connectivity is confirmed but the problem remains, and both FortiCron Debug and Sniffer do not show any packets, restart the 'forticron' process using the below command:
fnsysctl killall forticron
Related documents:
Technical Tip: External threat list (threat feed) is not working (connector is showing down)
Troubleshooting Tip: External Connector-Threat Feeds support format
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.