Unable To Load Fortiguard Ddns Servers List On Fortigate Firewalls
Ensure the FortiGate is properly registered and communicating with the FortiGuard network. Go to . Check the Status . Alternatively, use the CLI to verify connectivity: fortitenet execute telnet direct.fortiguard.net 443 Use code with caution. 4. Clear DNS Cache (CLI)
Once you have resolved the "Unable to load FortiGuard DDNS servers list" error, implement these best practices to avoid recurrence:
This issue typically stems from , expired FortiCare support contracts , Anycast routing conflicts , or known FortiOS firmware defects . Direct Resolution: The Fast Fixes Direct Resolution: The Fast Fixes Your DDNS server
Your DDNS server list should now populate correctly. For ongoing issues, contact Fortinet TAC with reference to this article and your debug logs.
When you navigate to or Network > DDNS on a FortiGate (FortiOS 6.0 through 7.4), the firewall attempts to fetch an up-to-date list of supported DDNS providers (e.g., FortiGuardDDNS, no-ip, DynDNS, ChangeIP) from Fortinet’s FortiGuard servers. ChangeIP) from Fortinet’s FortiGuard servers.
I can provide more targeted CLI commands based on your specific setup. Share public link
Once the configuration is applied, you can use diagnostic commands to check if the DDNS client is communicating correctly. expired FortiCare support contracts
If your FortiGate has multiple WAN links (SD-WAN) or uses a specific management interface, FortiGuard traffic might be exiting from an IP address that cannot route back properly. You can explicitly bind FortiGuard traffic to your primary WAN interface. Run these commands in the CLI:
I can provide a tailored script to resolve your specific architecture block. Share public link
Furthermore, routing issues often coincide with DNS failures. If the firewall’s management interface is on a dedicated management VDOM (Virtual Domain) or VLAN that has restricted access to the internet, the DNS queries may be blocked by the firewall’s own policies. The firewall must have a valid route to the internet and an allowing firewall policy (typically from the management interface or the source interface to the WAN) to facilitate these updates.
: Regularly update your FortiGate to the latest stable firmware version. This ensures you have the most recent bug fixes and security patches.