Fortinet black logo

Testing FortiSandbox

Testing FortiSandbox

FortiSandbox dashboard and contract information

Upload the FortiSandbox license for AWS FortiSandbox BYOL.

VM license is not needed for AWS FortiSandbox On-Demand.

Submit on-demand test using remote VM

Starting with version 2.5.1, FortiSandbox AWS supports the WindowsCloudVM remote VM type.

You can change the maximum number of the remote VMs in Scan Policy and Object > VM Settings.

To submit on-demand test using remote VM:
  1. Go to Scan Job > File On-Demand > Submit File.
  2. Click Choose File and upload the fiddler2setup.exe file.
  3. Click Submit.

    If the uploaded file is not malicious or suspicious, the rating is Clean.

  4. When the scan is finished, you can view files in File On-Demand.

  5. In the Action column, click the View File icon.

  6. Check the file details that is displayed.

FortiSandbox VM and WindowsCloudVMs topology

FortiSandbox VM Port Usage

Type

Service

Port

FortiGate OFTP TCP/514
FortiClient File analysis TCP/514
Others SSH CLI management TCP/22
Telnet CLI management TCP/23
Web admin TCP/80, TCP/443

OFTP communication with FortiGate and FortiMail

TCP/514

Third-party proxy server for ICAP servers (ICAP)

TCP/1344

Third-party proxy server for ICAP servers (ICAPS)

TCP/11344

FortiGuard

FortiGuard distribution servers

TCP/8890

FortiGuard web filtering servers

UDP/53, UDP/8888

FortiSandbox Community Cloud

Upload detected malware information

TCP/443, UDP/53

FortiSandbox WindowsCloudVMs

Serving WindowsVM on cloud for FSA-VM to perform sandboxing

TCP/443

Testing FortiSandbox

FortiSandbox dashboard and contract information

Upload the FortiSandbox license for AWS FortiSandbox BYOL.

VM license is not needed for AWS FortiSandbox On-Demand.

Submit on-demand test using remote VM

Starting with version 2.5.1, FortiSandbox AWS supports the WindowsCloudVM remote VM type.

You can change the maximum number of the remote VMs in Scan Policy and Object > VM Settings.

To submit on-demand test using remote VM:
  1. Go to Scan Job > File On-Demand > Submit File.
  2. Click Choose File and upload the fiddler2setup.exe file.
  3. Click Submit.

    If the uploaded file is not malicious or suspicious, the rating is Clean.

  4. When the scan is finished, you can view files in File On-Demand.

  5. In the Action column, click the View File icon.

  6. Check the file details that is displayed.

FortiSandbox VM and WindowsCloudVMs topology

FortiSandbox VM Port Usage

Type

Service

Port

FortiGate OFTP TCP/514
FortiClient File analysis TCP/514
Others SSH CLI management TCP/22
Telnet CLI management TCP/23
Web admin TCP/80, TCP/443

OFTP communication with FortiGate and FortiMail

TCP/514

Third-party proxy server for ICAP servers (ICAP)

TCP/1344

Third-party proxy server for ICAP servers (ICAPS)

TCP/11344

FortiGuard

FortiGuard distribution servers

TCP/8890

FortiGuard web filtering servers

UDP/53, UDP/8888

FortiSandbox Community Cloud

Upload detected malware information

TCP/443, UDP/53

FortiSandbox WindowsCloudVMs

Serving WindowsVM on cloud for FSA-VM to perform sandboxing

TCP/443