Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
machiasiaweb
New Contributor

Fortigate update using which link?

Hello,

 

I have Fortigate 100E with dedicated management port.   I would like to know when firewall update. For example, download signature definition.  Which interface will be used?  Management port or WAN port?

 

Thanks!

 

5 REPLIES 5
oheigl
Contributor II

Hi,

the FortiGate automatically chooses the best interface. You can force the communication with the following command (for FortiGuard service updates):

config system fortiguard

   set source-ip x.x.x.x

end

Verify the configuration with:

get system source-ip status

machiasiaweb

Hello,

 

I have read following as well but still not sure which x.x.x.x I should setup.

http://help.fortinet.com/fos50hlp/54/Content/FortiOS/fortigate-system-administration-54/Advanced/IP%...

 

Now my mgmt port IP is 192.168.10.100

and

WAN IP is 192.168.200.200

which they are in different VDOM

 

If I want using mgmt port, then I should setup like this?

 

 set source-ip 192.168.10.100

 

Thanks!

oheigl

If you have different VDOMs it's another situation. You need to be sure that the mgmt port is in the VDOM declared as the management VDOM. The management VDOM can be set in the GUI under Global > System > VDOM

machiasiaweb

MikePruett

Yup, you can define a certain VDOM as the management VDOM and that is the one that FortiGuard services will default to. If you don't have VDOM's then the only logical instance of the Gate will be the source.

Mike Pruett Fortinet GURU | Fortinet Training Videos
Announcements

Select Forum Responses to become Knowledge Articles!

Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.

Labels
Top Kudoed Authors