Hi All,
We're using VDOMs in our FortiGate Firewalls.
FortiGate is running HA and using Dedicated Management interface for Active and Standby Node.
Dedicated Management subnets have no internet access.
The root VDOM, we didn’t configure anything and leave with default settings . So there is no interface to go internet from root VDOM.
We’ve another 4 VDOMs other than root VDOM and those 4 VDOMs can go internet. We are running VLAN interface within each VDOMs and those VLANs can go internet.
Currently, FortiGate is showing the alert “Unable to connect to FortiGuard Server”.
We configured per VDOM DNS setting and from each VDOM , we can ping update.fortiguard.net.
But from root VDOM or management interface, it cannot reach to update.fortiguard.net as there is no internet access.
With our current deployment, how can we configure FortiGate to reach FortiGuard Service as we need to do license registration. Can we configure one of the interfaces from non-root VDOM to access FortiGuard Services because only non-root VDOM has internet access in our current deployment.
What is recommended , normal deployment for FortiGuard Service for a deployment like us?
Pease help suggest, thank you so much.
Nominating a forum post submits a request to create a new Knowledge Article based on the forum post topic. Please ensure your nomination includes a solution within the reply.
Thank you let me try this
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1720 | |
1094 | |
752 | |
447 | |
234 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.