4.2.1 Ensure Antivirus Definition Push Updates are Configured

Information

Ensure FortiGate is configured to accept antivirus definition push updates.

Rationale:

Ensure that the FortiGate will accept push updates from FortiGuard to ensure the most up to date signature databases are present on the device.

Solution

On GUI:

1. Access the FortiGate administrative web access page and go to System > FortiGuard.
2. Under 'FortiGuard Updates' ensure that the 'Scheduled updates' is set to 'Automatic'.

On CLI:

config system autoupdate schedule
set status enable
set frequency automatic
end

Default Value:

Enabled and set to automatic.

See Also

https://workbench.cisecurity.org/benchmarks/12961

Item Details

Category: SYSTEM AND INFORMATION INTEGRITY

References: 800-53|SI-3, CSCv7|8.2

Plugin: FortiGate

Control ID: c0201df6de9a6210924776366a41f926814027454de89010edee1bef81d2d906