Communication Ports
Incoming ports
| Purpose | Protocol |
Port |
|---|---|---|
| SSH CLI Management | TCP |
22 |
| Web Admin | TCP |
443 |
| CM Services | TCP |
8443 |
| HA Services | TCP |
9443 |
| Decoy Monitoring Service (Optional) | TCP |
1443 |
Outgoing ports
| Purpose | Protocol |
Port |
FQDNs |
|---|---|---|---|
| FortiGuard Distribution Servers | TCP |
8890 |
|
| FortiGuard Web Filtering | UDP |
53 |
|
| FortiGuard Web Filtering Rating Service | UDP |
8888 |
|
| FortiGuard Web Filtering (Secure Access) | TCP |
443 |
|
| FortiDeceptor Distribution Servers | TCP |
443 |
|
| DaaS Cloud Services | TCP |
443 |
|
Third‑party integrations
Third‑party servers typically use their own default service ports, which can vary depending on how each component is installed or configured. If a third‑party service changes its port, the FDC configuration must be updated accordingly.
Optional third‑party integrations:
- FortiSandbox
- Cuckoo Sandbox
- VirusTotal
- Proxy Server
- LDAP Server
- Radius Server
- Mail Server
- SNMP Trap Server
- FortiAnalyzer
- Syslog Server