Unable To Load Fortiguard Ddns Servers List On Fortigate Firewalls -
If your FortiGate GUI displays "Unable to load FortiGuard DDNS server list," it typically indicates the firewall cannot reach or resolve FortiGuard's registration servers. This guide covers the common fixes, ranging from DNS configuration to CLI workarounds. 1. Disable "Override Internal DNS"
config system interface edit "wan1" (or your specific WAN port) set dns-server-override disable end Use code with caution. 2. Disable FortiGuard Anycast If your FortiGate GUI displays "Unable to load
: If your WAN interface uses DHCP or PPPoE, it may be receiving ISP-provided DNS servers that cannot resolve FortiGuard domains like globalddns.fortinet.net Interfaces , edit your WAN interface, and unselect Override internal DNS config system interface edit dns-server-override disable end Use code with caution. Copied to clipboard Switch to Unicast & UDP Disable "Override Internal DNS" config system interface edit
4. Troubleshooting Steps
The following steps should be performed in order to isolate the fault. Copied to clipboard Switch to Unicast & UDP 4
Your DDNS server list should now populate correctly. For ongoing issues, contact Fortinet TAC with reference to this article and your debug logs.
Verify DNS resolution used by FortiGate
execute ddns test 1