FAQ for Sandbox inspection
The following are some frequently asked questions about using sandbox inspection with FortiSandbox and FortiGate.
Why is the FortiSandbox Cloud option not available when sandbox inspection is enabled?
This option is only available if you have created a FortiCloud account. For more information, see the FortiCloud documentation.
Why don’t results from FortiSandbox Cloud appear in the FortiGate GUI?
Go to Log & Report > Log Settings and make sure Send Logs to FortiCloud is enabled and GUI Preferences is set to Display Logs from FortiCloud.
Why are the FortiSandbox Appliance VMs inactive?
Make sure that port 3 on the FortiSandbox has an active Internet connection. This is required in order to activate the FortiSandbox VMs.
Why aren’t files are being scanned by FortiSandbox?
Make sure an AntiVirus profile that sends files to FortiSandbox is enabled for all policies that require sandbox inspection.
Is FortiSandbox supported by FortiGate when in NAT or Transparent mode?
Yes, a FortiGate can be in either NAT or Transparent mode and support FortiSandbox.
Are FortiGates behind a NAT device supported? If so how many?
Yes, multiple FortiGates can be supported in-line with FortiSandbox. Note that the FortiSandbox will see all FortiGates only as one device so there is no way to differentiate reports.
If the FortiGate has a dynamic IP, will the FortiSandbox automatically update the FortiGate?
Yes. Dynamic IPs are supported and the FortiGate will not have to be reconfigured on the FortiSandbox each time.