4.2.1 Ensure Antivirus Definition Push Updates are Configured

Warning! Audit Deprecated

This audit has been deprecated and will be removed in a future update.

View Next Audit Version

Information

Ensure FortiGate is configured to accept antivirus definition push updates

Rationale:

Ensure that the FortiGate will accept push updates from FortiGuard to ensure the most up to date signature databases are present on the device.

Solution

GUI (FortiOS 6):

Access the FortiGate administrative web access page and go to System > FortiGuard under 'FortiGuard Updates' enable 'Accept push updates'.

GUI (FortiOS 7):

Access the FortiGate administrative web access page and go to System > FortiGuard under 'FortiGuard Updates' ensure that the 'Scheduled updates' is set to 'Automatic'.

CLI (FortiOS 6):

config system autoupdate
set status enable
end

CLI (FortiOS 7):

config system autoupdate schedule
set status enable
set frequency automatic
end

Default Value:

Disable (on FortiOS 6)

Enabled and set to automatic (on FortiOS 7)

See Also

https://workbench.cisecurity.org/benchmarks/10730