Configuring FortiGuard updates
To configure FortiGuard updates:
-
Go to System > FortiGuard
-
Scroll down to the FortiGuard Updates section.
-
Configure the options for connecting and downloading definition files:
Immediately download updates
The option can be enabled on 2U and larger hardware models when the FortiGuard are servers are connected in anycast mode.
The FortiGate forms a secure, persistent connection with FortiGuard to get notifications of new updates through an HTTPS connection. The FortiGate uses the fds_notify daemon to wait for the notification, then makes another connection to the FortiGuard server to download the updates.
Scheduled Updates
Enable to schedule updates to be sent to the FortiGate at the specified time or automatically. See Scheduled updates and Automatic updates.
Improve IPS quality
Enable to send information to the FortiGuard servers when an attack occurs. This can help keep the FortiGuard database current as attacks evolve, and improve IPS signatures.
Use extended IPS signature package
Enable to use the extended IPS database, that includes protection from legacy attacks, along with the regular IPS database that protects against the latest common and in-the-wild attacks.
AntiVirus PUP/PUA
Enable antivirus grayware checks for potentially unwanted applications.
Update server location
The FortiGuard update server location. See Update server location for details.
-
Click Apply.