The FortiGuard Accept push updates option has been removed. On 2U models and larger (excluding VMs), the Immediately download updates option is added. This allows the FortiGate to form a secure persistent connection with FortiGuard to get notifications of new updates. Once notified, the FortiGate downloads the updates immediately.
The option can be enabled when the FortiGuard are servers are connected in anycast mode. Once there is updated information on subscribed contracts or object versions for the FortiGate, FortiGuard sends a notification to the FortiGate via a HTTPS connection. The FortiGate uses the fds_notify daemon to wait for this information, then the FortiGate makes another connection to the FortiGuard server to download the updates.
To enable the immediate download update option in the GUI:
- Go to System > FortiGuard.
- In the FortiGuard Updates section, enable Immediately download updates.
- Click Apply.
To enable the immediate download update option in the CLI:
config system fortiguard set fortiguard-anycast enable ... set persistent-connection enable end