Version:

Version:

Version:

Version:

Version:

Version:

Version:

Version:


Table of Contents

FortiGate-6000 Handbook

What's new for FortiGate-6000 6.4.8

FortiGate-6000 for FortiOS 6.4.8 includes the following new features:

  • Load balancing SSL VPN tunnel mode sessions terminated by the FortiGate-6000 to all FPCs, see SSL VPN load balancing.

  • The Configuration Sync monitor displays management and data plane resource usage, see Configuration sync monitor.

  • You can control how the FortiGate-6000 partitions source NAT (SNAT) source ports among FPCs, see Controlling SNAT port partitioning behavior.

  • A number of improvements and bug fixes related to SD-WAN comparability with session-aware load balancing clustering (SLBC). The primary FPC performs health checking and synchronizes health checking-based SD-WAN routing decisions to the other FPCs. In an FGCP HA cluster, the SD-WAN routing decisions are synchronized from the primary FPC of the primary FortiGate-6000 to the FPCs in the secondary FortiGate-6000.

    The FortiGate-6000 now supports weight-based and volume-based SD-WAN load-balancing methods:

    config system virtual-wan-link

    set load-balance-mode {weight-based | measured-volume-based}

    end

  • All CLI command output, GUI pages, log messages, and SNMP queries and traps use the terminology "primary" and "secondary" in place of "master" and "slave". This change does not currently apply to config CLI options. The command execute load-balance slot set-master-worker has been changed to execute load-balance slot set-primary-worker.

Note

You can find the FortiGate-6000 for FortiOS 6.4.8 firmware images on the Fortinet Support Download Firmware Images page by selecting the FortiGate-6K7K product.

What's new for FortiGate-6000 6.4.8

FortiGate-6000 for FortiOS 6.4.8 includes the following new features:

  • Load balancing SSL VPN tunnel mode sessions terminated by the FortiGate-6000 to all FPCs, see SSL VPN load balancing.

  • The Configuration Sync monitor displays management and data plane resource usage, see Configuration sync monitor.

  • You can control how the FortiGate-6000 partitions source NAT (SNAT) source ports among FPCs, see Controlling SNAT port partitioning behavior.

  • A number of improvements and bug fixes related to SD-WAN comparability with session-aware load balancing clustering (SLBC). The primary FPC performs health checking and synchronizes health checking-based SD-WAN routing decisions to the other FPCs. In an FGCP HA cluster, the SD-WAN routing decisions are synchronized from the primary FPC of the primary FortiGate-6000 to the FPCs in the secondary FortiGate-6000.

    The FortiGate-6000 now supports weight-based and volume-based SD-WAN load-balancing methods:

    config system virtual-wan-link

    set load-balance-mode {weight-based | measured-volume-based}

    end

  • All CLI command output, GUI pages, log messages, and SNMP queries and traps use the terminology "primary" and "secondary" in place of "master" and "slave". This change does not currently apply to config CLI options. The command execute load-balance slot set-master-worker has been changed to execute load-balance slot set-primary-worker.

Note

You can find the FortiGate-6000 for FortiOS 6.4.8 firmware images on the Fortinet Support Download Firmware Images page by selecting the FortiGate-6K7K product.