Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
Ban
New Contributor

Fortinet Distribution Servers - IP Addresses or FQDN

All documentation for a number of Fortinet devices states that the "Fortinet Distribution Servers" are accessed to download things like FortiGuard engine and definition updates.

 

I need to permit traffic from my Fortinet device (FortiMail) to the Fortinet Distribution Servers, through my perimeter firewall.

 

I can see that TCP443 and UDP53 needs to be permitted but where to?  There is no reference to a specific destination.

 

What is the IP address or FQDN of these Fortinet Distribution Servers?

1 REPLY 1
emnoc
Esteemed Contributor III

Try to contact support for the correct  FQDN but here's a method for getting the  list 

 

http://socpuppet.blogspot.com/2015/10/howto-determine-if-your-fortinet.html

 

 

Also since these servers requires-peer certifications, try to set a fwpolicy with no ssl inspection.

 

PCNSE 

NSE 

StrongSwan  

PCNSE NSE StrongSwan
Announcements

Select Forum Responses to become Knowledge Articles!

Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.

Labels
Top Kudoed Authors