Fortinet Document Library

Version:


Table of Contents

FortiSandbox VM on AWS

3.1.0
Download PDF
Copy Link

Testing FortiSandbox

FortiSandbox dashboard and contract information

Upload the FortiSandbox license for AWS FortiSandbox BYOL.

VM license is not needed for AWS FortiSandbox On-Demand.

note icon

To get future firmware updates, contact Fortinet support site http://support.fortinet.com.

Submit on-demand test using remote VM

Starting with version 2.5.1, FortiSandbox AWS supports the WindowsCloudVM remote VM type.

By default, eight WindowsCloudVMs are enabled, and MacOS VM is disabled.

You can change the maximum number of the remote VMs in Virtual Machine > VM Images.

To submit on-demand test using remote VM:
  1. Go to Scan Input > File On-Demand > Submit File.
  2. Click Choose File and upload the fiddler2setup.exe file.
  3. Click Submit.

    If the uploaded file is not malicious or suspicious, the rating is Clean.

  4. Click Browse and upload a file, then click Submit.

  5. After uploading the file, you can view files in File On-Demand.

  6. In the Action column, click the View File icon.

  7. Check the file details that is displayed.

FortiSandbox VM and WindowsCloudVMs topology

FortiSandbox VM Port Usage

Type

Service

Port

FortiGate OFTP TCP/514
FortiClient File analysis TCP/514
Others SSH CLI management TCP/22
Telnet CLI management TCP/23
Web admin TCP/80, TCP/443

OFTP communication with FortiGate and FortiMail

TCP/514

Third-party proxy server for ICAP servers (ICAP)

TCP/1344

Third-party proxy server for ICAP servers (ICAPS)

TCP/11344

FortiGuard

 

FortiGuard distribution servers

TCP/8890

FortiGuard web filtering servers

UDP/53, UDP/8888

FortiSandbox Community Cloud

Upload detected malware information

TCP/443, UDP/53

FortiSandbox WindowsCloudVMs

Serving WindowsVM on cloud for FSA-VM to perform sandboxing

TCP/443

Testing FortiSandbox

FortiSandbox dashboard and contract information

Upload the FortiSandbox license for AWS FortiSandbox BYOL.

VM license is not needed for AWS FortiSandbox On-Demand.

note icon

To get future firmware updates, contact Fortinet support site http://support.fortinet.com.

Submit on-demand test using remote VM

Starting with version 2.5.1, FortiSandbox AWS supports the WindowsCloudVM remote VM type.

By default, eight WindowsCloudVMs are enabled, and MacOS VM is disabled.

You can change the maximum number of the remote VMs in Virtual Machine > VM Images.

To submit on-demand test using remote VM:
  1. Go to Scan Input > File On-Demand > Submit File.
  2. Click Choose File and upload the fiddler2setup.exe file.
  3. Click Submit.

    If the uploaded file is not malicious or suspicious, the rating is Clean.

  4. Click Browse and upload a file, then click Submit.

  5. After uploading the file, you can view files in File On-Demand.

  6. In the Action column, click the View File icon.

  7. Check the file details that is displayed.

FortiSandbox VM and WindowsCloudVMs topology

FortiSandbox VM Port Usage

Type

Service

Port

FortiGate OFTP TCP/514
FortiClient File analysis TCP/514
Others SSH CLI management TCP/22
Telnet CLI management TCP/23
Web admin TCP/80, TCP/443

OFTP communication with FortiGate and FortiMail

TCP/514

Third-party proxy server for ICAP servers (ICAP)

TCP/1344

Third-party proxy server for ICAP servers (ICAPS)

TCP/11344

FortiGuard

 

FortiGuard distribution servers

TCP/8890

FortiGuard web filtering servers

UDP/53, UDP/8888

FortiSandbox Community Cloud

Upload detected malware information

TCP/443, UDP/53

FortiSandbox WindowsCloudVMs

Serving WindowsVM on cloud for FSA-VM to perform sandboxing

TCP/443