Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
Ban
New Contributor

Fortinet Distribution Servers - IP Addresses or FQDN

All documentation for a number of Fortinet devices states that the "Fortinet Distribution Servers" are accessed to download things like FortiGuard engine and definition updates.

 

I need to permit traffic from my Fortinet device (FortiMail) to the Fortinet Distribution Servers, through my perimeter firewall.

 

I can see that TCP443 and UDP53 needs to be permitted but where to?  There is no reference to a specific destination.

 

What is the IP address or FQDN of these Fortinet Distribution Servers?

1 REPLY 1
emnoc
Esteemed Contributor III

Try to contact support for the correct  FQDN but here's a method for getting the  list 

 

http://socpuppet.blogspot.com/2015/10/howto-determine-if-your-fortinet.html

 

 

Also since these servers requires-peer certifications, try to set a fwpolicy with no ssl inspection.

 

PCNSE 

NSE 

StrongSwan  

PCNSE NSE StrongSwan
Announcements
Check out our Community Chatter Blog! Click here to get involved
Labels
Top Kudoed Authors