Fortiguard Servers unreachable via 2 Different Locations with two Different ISP's
DNS Debugging followed and ping responses from Fortigate's both show 290ms response times.
Fortiguard Servers are set to use lowest latency location as well.
Still unreachable, Is there an outage ?
Please disable anycast and enable fortiguard communication over port 8888/53 .
config system fortiguard
set fortiguard-anycast disable
set port 53
set protocal udp
set sdns-server-ip "208.91.112.220"
After that run below command and you will see more server(18 or 20) available .
Thanks
madhav
Hi msolanki,
Response times have increased thank you.
However web filter and Outbreak Prevention Servers are still well over 900ms.
If I want to revert to use anycast again, How do i revert these changes ?
for revert
config system fortiguard
set fortiguard-anycast enable
Thanks
Madhav
Thank you Msolanki
I appreciate the assistance will see if this changes things and revert.
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2023 Fortinet, Inc. All Rights Reserved.