Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
Domoninic
New Contributor II

Fortigate 121G v7.4.9 - outbount traffic to 173.243.142.18:443 ( globalvideoquery.fortinet.net ?)

HI All,

As per the subject I am seeing this traffic logged and timing out due to upstrean firewall dropping it. As far as Video filtering was enabled in on of my vDom but I have since disabled it and am still seeing this logged.
I have proxy address set under 'system autoupdate tunneling' and 'config system fortiguard' has 'proxy-server-ip' set. 

So two questions :
1 - Why does this not use the proxy ?
2 - How do I disable this entirely ?

Thanks 

Domoninic

3 REPLIES 3
funkylicious
SuperUser
SuperUser

hi,

according to this KB, https://community.fortinet.com/t5/FortiGate/Technical-Tip-FortiGuard-updates-using-a-proxy-server/ta... proxy tunneling is/can be used for AV/IPS and registration, while Web Filtering ( DNS/Video ) and Spam cannot be routed through a proxy.

"jack of all trades, master of none"
"jack of all trades, master of none"
Domoninic

OK, but I don't have web filter enabled either.
I find it hard to fathom that a firewall can't be configured to not make outbound connection for unused services.

funkylicious

i think that if you had a security profile once attached to a rule ( which triggers updates to be downloaded/retrieved ), even tho you stop using it i'll continue to keep it up2date, but im unsure.

you can open a TAC ticket and ask them.

"jack of all trades, master of none"
"jack of all trades, master of none"
Announcements
Check out our Community Chatter Blog! Click here to get involved
Labels
Top Kudoed Authors