What's new
FortiAppSec Cloud 25.2 offers the following new features:
Contract and License Update
FortiAppSec Cloud has expanded supported contract and license offerings, and restructured license offerings for some products.
Enterprise Plan Support
FortiAppSec Cloud introduces the Enterprise plan, an all-inclusive annual subscription that bundles Advanced WAF features, Advanced Bot Protection, DAST, and GSLB services into one plan. Pricing is simplified to a predictable bandwidth-only model.
For more information, please refer to License & Contract.
AWS, Azure, and GCP Marketplace License Support
You can now purchase and manage FortiAppSec Cloud contracts through AWS, Azure, and GCP marketplaces.
For more information on the new license options, please refer to Public Cloud Marketplace subscriptions.
If you are looking to transfer a legacy FortiWeb Cloud Marketplace License to the FortiAppSec Cloud AWS, Azure, or GCP license, please refer to Migrating from existing Fortinet services.
FortiFlex License Support
FortiAppSec Cloud now supports FortiFlex, a flexible, usage-based security licensing program from Fortinet that allows organizations to provision FortiAppSec Cloud on-demand, paying only for what you consume. It eliminates the need for pre-planning, over-provisioning, or under-provisioning, offering a simplified and flexible licensing model.
For more information on this new license option, please refer to FortiFlex.
If you are looking to transfer a legacy FortiFlex entitlement to the FortiAppSec Cloud Fortiflex entitlement, please refer to Migrating from existing Fortinet services.
Advanced Bot Protection and DAST Contract Model Update
Dynamic Application Security Testing (DAST) and Advanced Bot Protection (ABP) are now included in the Advanced and Enterprise subscription plans respectively. These services are no longer available as standalone contracts. For more information, please refer to License & Contract.
GSLB
DNSSEC Enhancement
The DNSSEC feature in GSLB been enhanced with advanced cryptographic algorithms, providing stronger protection against DNS spoofing and related threats.
For more information on how to enable this feature, please refer to How to enable DNSSEC on GSLB.
Multi-Region Health Check Support
FortiAppSec Cloud GSLB now supports health checks from additional areas: Europe and Asia Pacific, alongside the existing North America option.
When configuring a health check, you can select its area of origin. Multiple health checks from different areas can be assigned to the same virtual server. GSLB aggregates results from all selected areas to determine server health, improving the accuracy of global availability monitoring.
For the list of IP addresses to add to your application's allowlist, please refer to Health check.
Enhanced Server Status Descriptions
When a server or virtual server is marked as down, the web portal now displays the specific reason.
Hovering over the server status icons on the Topology and FQDN pages reveals detailed messages with clear diagnostic information.
AWS Connector Load Balancing Support
GSLB now supports load balancing with AWS connectors using CNAME record types and single-record responses. This enhancement enables AWS-based applications to participate in traffic distribution. Only CNAME records are supported when using AWS connectors.
For more information, please refer to Fabric connectors with AWS and Azure.
Topology Page Filtering
The Topology page now includes a filter option, allowing you to quickly locate specific servers or virtual servers by name or status.
Advanced Bot Protection
FortiWeb Version Requirement Update
Advanced Bot Protection integration with FortiWeb now requires FortiWeb version 7.4.8 or later for continued compatibility.