Fortinet black logo

Introduction

Introduction

This Release Notes covers the new features, enhancements, resolved issues and known issues of FortiDDoS version 6.6.0 build 0610.

Special Note:

The following only affects the Monitor > TRAFFIC MONITOR > Subnets graphs. All other graphs retain all previous information:

If you are upgrading from a Release lower than 6.5.0, the Round Robin Databases used for these graphs (all protected subnets for all SPPs) are modified during the upgrade and all previous data is deleted. New data will display in the next 5-minute reporting period after upgrade. This does not affect on any other Monitor graph.

Before upgrading, place FortiDDoS into Bypass mode using CLI:

Fortiddos #execute bypass-traffic enable

This operation will enable traffic bypass!

Do you want to continue? (y/n) y

It is recommended to perform upgrades in a maintenance window to avoid disrupting other network settings such as OSPF, RSTP and BGP that affect traffic when the physical ports are changed from inline to bypass and back to inline.

After upgrade is complete (GUI and all Dashboard panels are displaying):

Fortiddos #get system bypass-status

Normal (system is inline and processing)

Bypass (system remains in bypass and requires manual return to inline below)

FortiDDoS #execute bypass-traffic disable

This operation will disable traffic bypass!

Do you want to continue? (y/n) y

Ensure to clear your browser cache (or operate in incognito mode) after a firmware upgrade. The GUI is coded in JSON in the browser and code changes in the system do not automatically signal the browser to rebuild the GUI. Changes to the GUI will not appear until the cache is cleared. If the cache is not cleared, you may see misaligned tables or entire Dashboard panels missing or appearing in the wrong place.

After upgrading to 6.6.0, please check the integrity of the system Service Protection Policies (SPPs) and repair if necessary. See After upgradefor checks to be completed post upgrade.

In early FortiDDoS-F-Series releases, the Round-Robin Databases (RRDs) were created automatically for each SPP whenever the user created a new SPP via the GUI or CLI. However, if the user makes a configuration change to the SPP while the RRD creation was in progress, then the process could be interrupted in the background. This will result in incomplete RRDs with missing information for logging and graphing of traffic and drops.

In later FortiDDoS-F-Series releases, the SPPs and RRDs for all possible SPPs are created during the upgrade process. However, existing incomplete RRDs will not be repaired. Checks of RRDs and SPPs are required if you are upgrading from 6.1.0, 6.1.4 or 6.2.0.

Introduction

This Release Notes covers the new features, enhancements, resolved issues and known issues of FortiDDoS version 6.6.0 build 0610.

Special Note:

The following only affects the Monitor > TRAFFIC MONITOR > Subnets graphs. All other graphs retain all previous information:

If you are upgrading from a Release lower than 6.5.0, the Round Robin Databases used for these graphs (all protected subnets for all SPPs) are modified during the upgrade and all previous data is deleted. New data will display in the next 5-minute reporting period after upgrade. This does not affect on any other Monitor graph.

Before upgrading, place FortiDDoS into Bypass mode using CLI:

Fortiddos #execute bypass-traffic enable

This operation will enable traffic bypass!

Do you want to continue? (y/n) y

It is recommended to perform upgrades in a maintenance window to avoid disrupting other network settings such as OSPF, RSTP and BGP that affect traffic when the physical ports are changed from inline to bypass and back to inline.

After upgrade is complete (GUI and all Dashboard panels are displaying):

Fortiddos #get system bypass-status

Normal (system is inline and processing)

Bypass (system remains in bypass and requires manual return to inline below)

FortiDDoS #execute bypass-traffic disable

This operation will disable traffic bypass!

Do you want to continue? (y/n) y

Ensure to clear your browser cache (or operate in incognito mode) after a firmware upgrade. The GUI is coded in JSON in the browser and code changes in the system do not automatically signal the browser to rebuild the GUI. Changes to the GUI will not appear until the cache is cleared. If the cache is not cleared, you may see misaligned tables or entire Dashboard panels missing or appearing in the wrong place.

After upgrading to 6.6.0, please check the integrity of the system Service Protection Policies (SPPs) and repair if necessary. See After upgradefor checks to be completed post upgrade.

In early FortiDDoS-F-Series releases, the Round-Robin Databases (RRDs) were created automatically for each SPP whenever the user created a new SPP via the GUI or CLI. However, if the user makes a configuration change to the SPP while the RRD creation was in progress, then the process could be interrupted in the background. This will result in incomplete RRDs with missing information for logging and graphing of traffic and drops.

In later FortiDDoS-F-Series releases, the SPPs and RRDs for all possible SPPs are created during the upgrade process. However, existing incomplete RRDs will not be repaired. Checks of RRDs and SPPs are required if you are upgrading from 6.1.0, 6.1.4 or 6.2.0.