hi guys i had a serious problem with my firewall i have a 500D fortigate and it takes place in one data center, because of data center's policies ,wan interfaces of fortigate have private IP and they do not have public ip and the addreses of them are 192.168.23.74 and 192.168.23.78. this fortigate has 2 vdom (root and data). when i check fortiguard service i realize IPS and AV can not being update. the seller company configured license by (system autoupdate tunneling) in global and said to me i should set public ip on wan interface but i shouldn't change it as data center's policy
i configure this in global:
"
config system fortiguard set port 8888 set source-ip 192.168.23.74 end
"
but i don't see any change. what should i do? is my configure wrong?
Nominating a forum post submits a request to create a new Knowledge Article based on the forum post topic. Please ensure your nomination includes a solution within the reply.
I never changed the default setting for FortiGuard at my FG30E, means it's using the default values like port = 8888 and source-ip = 0.0.0.0 because it's sitting behind another FGT, which is doing NAT. But it's working fine communicating with GortiGuard.
Then, something else is causing not to be able to reach FortiGuard. Check the license information, like it's registered, and support&license is not expired, etc.
zeynab: did you check your routes on your FGT? You either have to have a default route via the Loadbalancer (if you use it) or at least one default route over one wan interface.
Also you have to be sure that there is a gateway in the subnet(s) the wan ports are in that can get you into the internet.
If you don't have a default route at all your FGT cannot connect to Fortinet Services at the internet.
hth
Sebastian
--
"It is a mistake to think you can solve any major problems just with potatoes." - Douglas Adams
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1688 | |
1087 | |
752 | |
446 | |
227 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.