FortiGate
FortiGate Next Generation Firewall utilizes purpose-built security processors and threat intelligence security services from FortiGuard labs to deliver top-rated protection and high performance, including encrypted traffic.
mle2802
Staff
Staff
Article Id 274267
Description

This article describes the reason why the IoT and OT Detection definition shows version 0.000 under System -> FortiGuard.

Scope

FortiGate.

Solution

In some cases, the IoT detection and OT detection definition is shown as 0.0000 even after upgrading Licenses and Definitions for FortiGuard.

0.00.png

 

  • During the update, the debug output shows that APPDB/IOTDB/OTDB are disabled.

 

update_upd_comp_by_settings[499]-Disabling APPDB/IOTDB/OTDB components.

 

For these definitions to be upgraded, there must be at least one active firewall policy where the Application Control / IPS Profile is being used.

 

appcontrol used.PNG

 

After applying the profile, upgrade the definition again. The version will be upgraded.


diagnose debug application update -1
diagnose debug enable
execute update-now

 

Wait for 5-10 minutes to receive the latest updates from FortiGuard Servers.

 

To disable:


diagnose debug disable
diagnose debug reset

after app.PNG

 

Note:
If the OT signature still shows version 0.0000, make sure device detection is enabled on at least one interface.

Screenshot 2025-12-08 091439.png

The debug output may show the following:

 

upd_install_pkg[1429]-IOTD001 is unauthorized

 

The reason behind this output in debug is Unauthorized Access or License Issue: The device cannot fetch or validate the required license or update for the IOTD001 database from the FortiGuard servers.

 

Possible causes:

  • Expired or Invalid License: The license for the IoT threat detection service might be expired or not properly registered.

  • Network or Connectivity Issues: The device cannot reach the FortiGuard update servers, possibly due to network restrictions, incorrect proxy settings, or firewall rules.

  • FortiGuard Configuration Issues: Incorrect FortiGuard settings (such as protocol, port, or anycast settings) may prevent proper authentication or update retrieval.

 

Related article:

Troubleshooting Tip: Unable to connect to FortiGuard servers