FortiGuard and Updates

Use these checks when web filtering, AV, IPS, DNS filtering, or FortiGuard rating lookups are failing or stale.

License and service status

get system status
diagnose autoupdate versions
diagnose autoupdate status

Rating lookup checks

diagnose debug rating

Check whether FortiGate can reach FortiGuard servers and whether lookups return expected service information.

Force update

execute update-now

Connectivity checks

execute ping service.fortiguard.net
execute traceroute service.fortiguard.net

If the firewall uses a management VDOM or source IP, confirm that FortiGuard traffic has a valid route and policy path.