12.03.2015 Views

FortiGate Administration Guide - FirewallShop.com

FortiGate Administration Guide - FirewallShop.com

FortiGate Administration Guide - FirewallShop.com

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

System Maintenance<br />

FortiGuard Center<br />

4 Select Apply.<br />

The <strong>FortiGate</strong> unit tests the connection to the override server.<br />

If the FortiGuard Distribution Network availability icon changes from grey, the<br />

<strong>FortiGate</strong> unit has successfully connected to the override server.<br />

If the FortiGuard Distribution Network availability icon stays gray, the <strong>FortiGate</strong><br />

unit cannot connect to the override server. Check the <strong>FortiGate</strong> configuration and<br />

network configuration for settings that would prevent the <strong>FortiGate</strong> unit from<br />

connecting to the override FortiGuard server.<br />

Enabling push updates<br />

To enable scheduled updates through a proxy server<br />

If your <strong>FortiGate</strong> unit must connect to the Internet through a proxy server, you can<br />

use the config system autoupdate tunneling <strong>com</strong>mand to allow the<br />

<strong>FortiGate</strong> unit to connect (or tunnel) to the FDN using the proxy server. For more<br />

information, see the <strong>FortiGate</strong> CLI Reference.<br />

The FDN can push updates to <strong>FortiGate</strong> units to provide the fastest possible<br />

response to critical situations. You must register the <strong>FortiGate</strong> unit before it can<br />

receive push updates. To register your <strong>FortiGate</strong> unit, go to Product Registration<br />

and follow the instructions.<br />

When you configure a <strong>FortiGate</strong> unit to allow push updates, the <strong>FortiGate</strong> unit<br />

sends a SETUP message to the FDN. The next time new antivirus or attack<br />

definitions are released, the FDN notifies all <strong>FortiGate</strong> units that are configured for<br />

push updates that a new update is available. Within 60 seconds of receiving a<br />

push notification, the <strong>FortiGate</strong> unit requests an update from the FDN.<br />

Note: Push updates are not supported if the <strong>FortiGate</strong> unit must use a proxy server to<br />

connect to the FDN. For more information, see “To enable scheduled updates through a<br />

proxy server” on page 195.<br />

When the network configuration permits, configuring push updates is<br />

re<strong>com</strong>mended in addition to configuring scheduled updates. On average the<br />

<strong>FortiGate</strong> unit receives new updates sooner through push updates than if the<br />

<strong>FortiGate</strong> unit receives only scheduled updates. However, scheduled updates<br />

make sure that the <strong>FortiGate</strong> unit receives the latest updates.<br />

Enabling push updates is not re<strong>com</strong>mended as the only method for obtaining<br />

updates. The <strong>FortiGate</strong> unit might not receive the push notification. Also, when the<br />

<strong>FortiGate</strong> unit receives a push notification it makes only one attempt to connect to<br />

the FDN and download updates.<br />

To enable push updates<br />

1 Go to System > Maintenance > FortiGuard Center.<br />

2 Select Allow Push Update.<br />

3 Select Apply.<br />

<strong>FortiGate</strong> Version 3.0 MR5 <strong>Administration</strong> <strong>Guide</strong><br />

01-30005-0203-20070830 195

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!