FortiManager open ports
Incoming ports |
||
---|---|---|
Purpose |
Protocol/Port |
|
|
IPv4 FGFM management |
TCP/541 |
IPv6 FGFM management |
TCP/542 |
|
Log & Report |
TCP or UDP/514 |
|
FortiGuard Queries |
UDP/53, UDP/8888, TCP/80, TCP/8888 TCP/443, TCP/8890 when FortiManager is operating as a FortiGuard override server |
|
Select a FortiManager to be used for FortiClient signature updates |
TCP/80 (by default; this port can be customized) |
|
Send logs to FortiManager (FortiClient must connect to FortiGate or EMS to send logs to FortiManager) |
TCP/514 |
|
AV/IPS |
UDP/9443 |
|
Registration |
UDP/9443 |
|
AV/AS Query |
|
|
FortiClient Manager |
TCP/6028 |
|
API communications (JSON and XML APIs respectively) |
TCP/443, TCP/8080 |
|
Others |
SSH CLI Management |
TCP/22 |
Telnet CLI Management |
TCP/23 |
|
Web Admin |
TCP/80, TCP/443 |
Outgoing ports |
||
---|---|---|
Purpose |
Protocol/Port |
|
Syslog & OFTP |
TCP/514, UDP/514 |
|
Registration |
TCP/541 |
|
AV/IPS Push |
UDP/9443 |
|
IPv4 FGFM management |
TCP/541 |
|
IPv6 FGFM management |
TCP/542 |
|
AV/IPS Updates, URL/AS Update, Firmware, SMS, FTM, Licensing, Policy Override Authentication, Registration |
TCP/443 |
|
FortiClient udpates |
TCP/80 |
|
AV Push |
|
|
FortiClient Manager |
TCP/6028 |
|
|
Fortinet registry for management extension applications, such as FortiWLM MEA |
TCP/4443 |
DNS |
UDP/53 |
|
NTP |
UDP/123 |
|
Proxied HTTPS Traffic |
TCP/443 |
|
RADIUS |
UDP/1812 |
While a proxy is configured, FortiManager uses the following URLs to access the FortiGuard Distribution Network (FDN) for the following updates:
|