In a situation where Fortigate devices cannot access the Internet directly, you must access Fortinet FDN services to download licenses, signatures, and updates. In this case, FortiManager can be used as Fortiguard Local server.
What to do in FortiManager, we have to configure interface level necessary permissions. System Settings>Network
We can choose which services will be used locally with FortiManager as in the picture. Fortiguard>Settings
FortiManager will contact FDN to download different packages and act as Fortiguard Local in Fortigate.
System>Fortiguard
Note: There can be more than one FortiManager device and server type.
Antivirus and IPS Updates are Filtered from CLI for Both Configurations Fortigate.
config system central-management
config server-list
edit 1
set server-type update rating
set addr-type ipv4
set server-address 172.200.1.20
next
end
set include-default-servers disable
end
Yorumlar
Yorum Gönder