Hi
Im having troubles configuring DDNS on my fortigate. My ISP is blocking dns for fortigates servers 208.91.112.53 and 208.91.112.53. Is there a way to configure DDNS with my ISPs dns server? Can i change the default port fortigates uses for dns?
thanks
Carlos
Solved! Go to Solution.
The Fortigate only supports DDNS services whose client software is built-in into the fgt firmware. Just configure your fgt to use one of the officially supported DDNS services. If your ISP is forcing you to use their DNS servers then by all means do that -- all you are really doing with DDNS is "updating" an outside DNS record with your public IP - your ISP's DNS servers should still be able to "resolve" the FQDN hostname back to your public IP address.
NSE4/FMG-VM64/FortiAnalyzer-VM/6.0 (FWF30E/FW92D/FGT200D/FGT101E/FGT81E)/ FAP220B/221C
The Fortigate only supports DDNS services whose client software is built-in into the fgt firmware. Just configure your fgt to use one of the officially supported DDNS services. If your ISP is forcing you to use their DNS servers then by all means do that -- all you are really doing with DDNS is "updating" an outside DNS record with your public IP - your ISP's DNS servers should still be able to "resolve" the FQDN hostname back to your public IP address.
NSE4/FMG-VM64/FortiAnalyzer-VM/6.0 (FWF30E/FW92D/FGT200D/FGT101E/FGT81E)/ FAP220B/221C
but if i want to use Foriguards DDNS, is it then required to have fortinets DNS servers? I ask because when i choose to specify DNS servers the option for using fortiguards DDNS disappears
/carlos
nordik24 wrote:Looks like you are confusing two issues:[ul]but if i want to use Foriguards DDNS, is it then required to have fortinets DNS servers? I ask because when i choose to specify DNS servers the option for using fortiguards DDNS disappears
/carlos
Once the DNS issue is straightened out and the FGT is able to resolve names, then the FGT will resolve your DDNS server's name and your DDNS registration should take place.
Bob - self proclaimed posting junkie!
See my Fortigate related scripts at: http://fortigate.camerabob.com
Indeed, sniffing DDNS update requests from a FGT (running v5.2.x) reveals that FortiOS contacts "members.dyndns.org" which it then has to resolve to an IP address. Then it contacts and updates the DDNS record with DynDNS (as an example).
AFAIK Fortinet's DDNS is integrated with Fortinet's DNS (same address). That would explain why the DDNS option is dropped when none of the system DNS is pointing to Fortinet's DNS.
One workaround would be to not use Fortinet's DDNS but any other DDNS service like Dyn. That of course would cost something. Maybe your ISP is willing to pay for that.
hi
thanks for your answers.
What i mean if i choose the specify the dns server, the ddns options disappears
Please see attached picture

so my question is, can i still use fortines ddns when specifying the dns server?
 
					
				
				
			
		
| User | Count | 
|---|---|
| 2677 | |
| 1412 | |
| 810 | |
| 703 | |
| 455 | 
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.