Fortinet black logo

Resolved issues

Resolved issues

The following issues have been fixed in FortiGate-6000 and FortiGate-7000 FortiOS 7.0.13 Build 0206. For inquires about a particular bug, please contact Customer Service & Support. The Resolved issues described in the FortiOS 7.0.13 release notes also apply to FortiGate-6000 and 7000 FortiOS 7.0.13 Build 0206.

Bug ID

Description

765407

Management interfaces on the secondary FIM in a FortiGate 7000F can now be used for the FGSP heartbeat.

806671

Resolved an issue that caused incorrect interfaces to appear in the selection list when selecting FGSP session sync interfaces.

830454 Changing the FPC or FPM that an IPsec tunnel is using no longer causes traffic in the tunnel to be blocked.

863900

The config system global option qsfpdd-split8-port is no longer available from the CLI for the FIM-7921F since this FIM does not support this feature.

881414

Resolved an issue that caused an FPC or FPM to assign one or more FortiGate 6000 or FortiGate 7000 network interfaces the HA virtual mac address 00:00:00:00:00:00.

885362 963107

Improvements to SD-WAN fib-best-match functionality in BGP loopback ECMP deployments.

901695 The udp-idle-timer option of the config system global command now applies to NP7-offloaded UDP sessions on FortiGate 7000F platforms.
902945 Resolved an issue that could block in-band management connections to a secondary FortiGate 6000 or 7000 in an FGCP HA cluster.

904810

Resolved an issue that prevented the Session Rate dashboard widget from loading or caused it to not show session rate data.

907140 Resolved an issue with how authenticated users are synchronized to the secondary FortiGate 6000 or 7000 when it joins a primary chassis to form an FGCP cluster.
914273 934179 923726 Aggregated VDOM statistics are now available from SNMP queries.

914273 963535

The fgVdEntSesRate SNMP query now returns the correct data.

916383 The output of the diagnose load-balance switch stats command now works as expected on all FortiGate 6000 and 7000 platforms.

917146

From the Global GUI, the System > VDOM page now loads as expected.

918899

Resolved an issue that could cause dialup IPsec VPN traffic to go to the wrong FPC when an FPC is processing more than one IPsec VPN tunnel and the configuration includes dynamic routing.

918959 920925 944715 951135 944681 Performing a graceful upgrade of a FortiGate 6000 or 7000 FGCP HA cluster from FortiOS 7.0.13 to 7.2.x now works as expected.

On the FortiGate 7000F platform, NP7 hardware sessions are maintained after the gracefu upgrade is complete.

920741 Resolved an issue with how configuration changes from FortiManager are synchronized to the secondary FortiGate 6000 or 7000 in an FGCP HA cluster.
923273 909919 FGCP HA virtual MAC addresses are no longer assigned to session sync device interfaces.
924711 924870 Resolved an issue that could cause an FPC or FPM to crash when processing GTP traffic when gtp-load-balance and gtp-enhanced-mode are disabled

925690

The iked process running on the FortiGate-6000 management board no longer randomly crashes, blocking IPsec traffic.

926266

The fgHaStatsSyncStatus SNMP query now returns the correct data.

927442

Firewall policy statistics and statistics for VIPs and IP Pools displayed on the GUI are now accurate.

927852 937090 The execute sensor list and execute sensor detail commands and the Sensor Information dashboard widget now display correct information.
930023 940170 931085 Resolved an issue that caused the FortiGate 6000 to read the incorrect BIOS security level.

932989 905950

Resolved an issue that could cause the radiusd process to crash after a firmware downgrade.

937969 938420 941275 Resolved an SLBC load balancing issue that reduced GTP performance.
949624 954623 Resolved an issue that could cause multiple FPMs in a FortiGate 7000F to become out of sync and to not appear in the output of the diagnose sys confsync status command.
949875 Resolved an issue that could cause a FortiGate 6000 or 7000 to experience a kernel panic and restart.

959709

The diagnose sys ha fgsp-zone command now displays information from all FPCs or FPMs.

960873

Improvements to IPv4 and IPv6 dynamic routing.

962399

Resolved an issue that could cause the IPv6 management IP address to be deleted from the configuration of an FGCP HA cluster.

963630

Resolved an issue that could caused the FortiGate 6000 or 7000 management IP address to not be accessible for a short while after running a graceful upgrade of an FGCP cluster with override enabled.

967055 966848

Resolved an issue that could cause the chlbd process to crash when changing the virtual clustering configuration while the FortiGate 6000 or 7000 is starting up.

Resolved issues

The following issues have been fixed in FortiGate-6000 and FortiGate-7000 FortiOS 7.0.13 Build 0206. For inquires about a particular bug, please contact Customer Service & Support. The Resolved issues described in the FortiOS 7.0.13 release notes also apply to FortiGate-6000 and 7000 FortiOS 7.0.13 Build 0206.

Bug ID

Description

765407

Management interfaces on the secondary FIM in a FortiGate 7000F can now be used for the FGSP heartbeat.

806671

Resolved an issue that caused incorrect interfaces to appear in the selection list when selecting FGSP session sync interfaces.

830454 Changing the FPC or FPM that an IPsec tunnel is using no longer causes traffic in the tunnel to be blocked.

863900

The config system global option qsfpdd-split8-port is no longer available from the CLI for the FIM-7921F since this FIM does not support this feature.

881414

Resolved an issue that caused an FPC or FPM to assign one or more FortiGate 6000 or FortiGate 7000 network interfaces the HA virtual mac address 00:00:00:00:00:00.

885362 963107

Improvements to SD-WAN fib-best-match functionality in BGP loopback ECMP deployments.

901695 The udp-idle-timer option of the config system global command now applies to NP7-offloaded UDP sessions on FortiGate 7000F platforms.
902945 Resolved an issue that could block in-band management connections to a secondary FortiGate 6000 or 7000 in an FGCP HA cluster.

904810

Resolved an issue that prevented the Session Rate dashboard widget from loading or caused it to not show session rate data.

907140 Resolved an issue with how authenticated users are synchronized to the secondary FortiGate 6000 or 7000 when it joins a primary chassis to form an FGCP cluster.
914273 934179 923726 Aggregated VDOM statistics are now available from SNMP queries.

914273 963535

The fgVdEntSesRate SNMP query now returns the correct data.

916383 The output of the diagnose load-balance switch stats command now works as expected on all FortiGate 6000 and 7000 platforms.

917146

From the Global GUI, the System > VDOM page now loads as expected.

918899

Resolved an issue that could cause dialup IPsec VPN traffic to go to the wrong FPC when an FPC is processing more than one IPsec VPN tunnel and the configuration includes dynamic routing.

918959 920925 944715 951135 944681 Performing a graceful upgrade of a FortiGate 6000 or 7000 FGCP HA cluster from FortiOS 7.0.13 to 7.2.x now works as expected.

On the FortiGate 7000F platform, NP7 hardware sessions are maintained after the gracefu upgrade is complete.

920741 Resolved an issue with how configuration changes from FortiManager are synchronized to the secondary FortiGate 6000 or 7000 in an FGCP HA cluster.
923273 909919 FGCP HA virtual MAC addresses are no longer assigned to session sync device interfaces.
924711 924870 Resolved an issue that could cause an FPC or FPM to crash when processing GTP traffic when gtp-load-balance and gtp-enhanced-mode are disabled

925690

The iked process running on the FortiGate-6000 management board no longer randomly crashes, blocking IPsec traffic.

926266

The fgHaStatsSyncStatus SNMP query now returns the correct data.

927442

Firewall policy statistics and statistics for VIPs and IP Pools displayed on the GUI are now accurate.

927852 937090 The execute sensor list and execute sensor detail commands and the Sensor Information dashboard widget now display correct information.
930023 940170 931085 Resolved an issue that caused the FortiGate 6000 to read the incorrect BIOS security level.

932989 905950

Resolved an issue that could cause the radiusd process to crash after a firmware downgrade.

937969 938420 941275 Resolved an SLBC load balancing issue that reduced GTP performance.
949624 954623 Resolved an issue that could cause multiple FPMs in a FortiGate 7000F to become out of sync and to not appear in the output of the diagnose sys confsync status command.
949875 Resolved an issue that could cause a FortiGate 6000 or 7000 to experience a kernel panic and restart.

959709

The diagnose sys ha fgsp-zone command now displays information from all FPCs or FPMs.

960873

Improvements to IPv4 and IPv6 dynamic routing.

962399

Resolved an issue that could cause the IPv6 management IP address to be deleted from the configuration of an FGCP HA cluster.

963630

Resolved an issue that could caused the FortiGate 6000 or 7000 management IP address to not be accessible for a short while after running a graceful upgrade of an FGCP cluster with override enabled.

967055 966848

Resolved an issue that could cause the chlbd process to crash when changing the virtual clustering configuration while the FortiGate 6000 or 7000 is starting up.