FortiGate
FortiGate Next Generation Firewall utilizes purpose-built security processors and threat intelligence security services from FortiGuard labs to deliver top-rated protection and high performance, including encrypted traffic.
lvannstruth
Staff
Staff
Article Id 328180
Description

This article describes how to manually reload external threat feeds for troubleshooting or test purposes.

Scope

FortiGate.

Solution

When working with external threat feeds, manually reloading the contents of the feed may be required for the following reasons:

  1. To immediately update the feed with the newest information.
  2. For troubleshooting purposes when dealing with issues related to HTTP authentication or similar.

 

To accomplish this, the following CLI command can be used:

diag test app forticron 8

 

For verification of the reload, navigate to Security Fabric -> External Connectors and refer to this element on the FortiGate GUI:


pre-reload.png

 

After running the 'diag test app forticron 8' command:

 

post-reload.png

 

Other diagnostics commands that may be useful include the following:

Start the Forticron application debug:

 

diag debug reset
diag debug app forticron -1

diag debug enable

 

Dump external threat feed object values:

 

diag test app forticron 7

 

Check threat feed object cache:

 

diag test app miglogd 50