Fortinet black logo

FortiGate-7000 Release Notes

Known issues

Known issues

The following issues have been identified in FortiGate-6000 and FortiGate-7000 FortiOS 6.2.10 Build 1212. For inquires about a particular bug, please contact Customer Service & Support. The Known issues described in the FortiOS 6.2.10 release notes also apply to FortiGate-6000 and 7000 FortiOS 6.2.10 Build 1212.

Bug ID

Description

734898

Under some conditions when a FortiGate-6000 or 7000 is very busy, when making configuration changes either manually or using a script, the cmdbsvr application may crash with a signal 11 segmentation fault. This problem can occur on a standalone FortiGate-6000 or 7000 or on FortiGate-6000s or 7000s in an FGCP HA cluster.

723530 The VRRP routing status is not synchronized to the FPMs or FIMs in the secondary FortiGate-6000 or 7000 in an FGCP cluster when the FGCP cluster in a VRRP group with a router.

792717

A dialup IPSec VPN tunnel can take a couple of minutes before allowing traffic through it, even though the tunnel appears to be up when viewed from the FortiGate GUI or CLI. This can happen if dead peer detection (DPD) is enabled on a large number of VPN clients accessing the tunnel. Receiving the DPD messages from many clients at the same time can trigger this issue. To work around the problem, you can disable dead peer detection on all FortiClients that access the tunnel.

Known issues

The following issues have been identified in FortiGate-6000 and FortiGate-7000 FortiOS 6.2.10 Build 1212. For inquires about a particular bug, please contact Customer Service & Support. The Known issues described in the FortiOS 6.2.10 release notes also apply to FortiGate-6000 and 7000 FortiOS 6.2.10 Build 1212.

Bug ID

Description

734898

Under some conditions when a FortiGate-6000 or 7000 is very busy, when making configuration changes either manually or using a script, the cmdbsvr application may crash with a signal 11 segmentation fault. This problem can occur on a standalone FortiGate-6000 or 7000 or on FortiGate-6000s or 7000s in an FGCP HA cluster.

723530 The VRRP routing status is not synchronized to the FPMs or FIMs in the secondary FortiGate-6000 or 7000 in an FGCP cluster when the FGCP cluster in a VRRP group with a router.

792717

A dialup IPSec VPN tunnel can take a couple of minutes before allowing traffic through it, even though the tunnel appears to be up when viewed from the FortiGate GUI or CLI. This can happen if dead peer detection (DPD) is enabled on a large number of VPN clients accessing the tunnel. Receiving the DPD messages from many clients at the same time can trigger this issue. To work around the problem, you can disable dead peer detection on all FortiClients that access the tunnel.