Created on
07-24-2024
11:51 PM
Edited on
11-05-2024
05:05 AM
By
mdeparisse_FTNT
Description |
The article describes how to configure the upstream FortiGate to allow connections from FortiManager and FortiAnalyzer to public FortiGuard servers. This may be used also for Proxy server connection. |
Scope | FortiManager, FortiAnalyzer. |
Solution |
FortiManager and FortiAnalyzer do not have any region-specific servers for Europe. The FQDN used for Unicast servers are listed below:
These FQDNs will not include all the FDNI IP lists. So FortiManager/FortiAnalyzer will connect to FortiGuard to download a list of IP addresses. This dynamic list needs to be manually updated in FortiGate's policy to allow traffic from FortiManager/FortiAnalyzer to FortiGuard.
diag fmupdate view-serverlist fds
diag fmupdate view-serverlist fgd
Example:
Note:
Related articles: Technical Tip: Configure FortiManager as a local FDN server for FortiGates. Technical Tip: How to configure and optimize FortiManager as Local Web filter Server |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.