Unable To Load Fortiguard Ddns Servers List On Fortigate Firewalls - ((top))
If your FortiGate GUI displays the error you are likely unable to select a domain for your dynamic DNS configuration. This common issue typically stems from DNS resolution conflicts, Anycast protocol interference, or specific interface settings that block communication with FortiGuard. 1. Disable "Override Internal DNS"
Run the following commands to switch to the Fortinet-preferred UDP protocol:
Wait 1–2 minutes after applying this before refreshing the DDNS page. 3. Verify Basic Connectivity If your FortiGate GUI displays the error you
If using VDOMs, ensure the Management VDOM has a valid route to the internet, as it handles these service requests. 4. Advanced Debugging
config system interface edit "wan1" set dns-server-override disable next end Use code with caution. 2. Disable Anycast for FortiGuard Disable "Override Internal DNS" Run the following commands
config system fortiguard set fortiguard-anycast disable set protocol udp set port 8888 # Optional: Try port 443 or 53 if 8888 is blocked end Use code with caution.
The most common cause is a WAN interface obtaining DNS settings via DHCP or PPPoE that override the system's ability to reach FortiGuard services. edit your WAN interface
The FortiGuard DDNS list requires a valid FortiCare contract. Check the License Information widget on your dashboard to ensure "FortiGuard Support" is green.
Navigate to Network > Interfaces , edit your WAN interface, and uncheck Override internal DNS . CLI Method: