Fortinet black logo

FortiGate-6000 and FortiGate-7000 Release Notes

Resolved issues

Resolved issues

The following issues have been fixed in FortiGate-6000 and 7000 FortiOS 6.0.10 Build 0372. For inquires about a particular bug, please contact Customer Service & Support. The Resolved Issues described in the FortiOS 6.0.10 release notes also apply to FortiGate-6000 and 7000 FortiOS 6.0.10 Build 0372.

Bug ID

Description

541527 644148 645091 Resolved a configuration synchronization issue for configuration changes associated with administrators that log in using remote authentication (for example, through RADIUS or TACACS+).
559388 Resolved an issue with FortiGate-7000 HA that prevented the FIM in slot 2 of the primary FortiGate-7000 and both FIMs in the secondary FortiGate-7000 from being able to access an FTP server to back up the configuration.
571808 Resolved an issue that prevented the SSL VPN web portal from displaying history messages.
572012 Resolved an issue that prevented FortiGate-6000 FPCs from loading a new firmware image after upgrading the management board firmware from the BIOS after a reboot.
600727 Resolved an issue that could cause IPsec VPN phase 2 routing information to be missing from the DP processor routing cache.
602111 Resolved an issue that caused internal VLANs from different FGSP peers to be connected together after enabling standalone configuration synchronization.
611558 Resolved an issue that could sometimes cause synchronization delays after making configuration changes on a FortiGate-6000 or 7000 managing many logged in users.
614858 Web filter override policies no longer time out early.
619155 Resolved an issue that prevented sessions from being synchronized to the secondary FortiGate-6000 or 7000 after an HA graceful upgrade.
621375 Resolved an issue that could cause an HA graceful upgrade to time out if the configuration has a large number of VDOMs.
623123

Resolved a CPU affinity conflict between the cmdbsvr and bcm processes that can cause a number of issues including missing heartbeats and LAG flapping.

632416 Log messages stating that the backplane channel is unstable are no longer generated when making configuration changes.
633224 Resolved an issue that caused FPMs to crash with NP6 LACP errors after rebooting when a FortiGate-6000 has multiple LACP LAG interfaces.
633561 Resolved an issue that prevented pinging VLAN interfaces in a transparent mode VDOM.
633852 Resolved an issue that delayed when FPCs or FPMs would begin sending traffic log messages to FortiAnalyzer after an HA graceful upgrade.
634949 Resolved a VRRP issue that prevented transparent mode VDOMs from processing management traffic correctly when VRRP is enabled.
636392 Resolved a Web filter override user synchronization memory leak.

636476

Resolved an issue with confsyncd signal handlers that can sometimes cause synchronization problems in a FortiGate-6000 or 7000 HA cluster.

637640 Resolved an IPS issue that could cause CA certificates to be removed from the IPS configuration when deleting a VDOM.
639064 Resolved an issue that prevented displaying information on FPCs about traffic matching a firewall policy with the negate option enabled.
643811 Resetting the uptime of a FortiGate-6000 or 7000 HA cluster no longer causes a split brain scenario.
645560 Removed a FortiASIC DDR test that is no longer relevant.
648585 Resolved an issue that caused IPsec kernel problems when a remote user would reset an IPsec VPN tunnel.

Resolved issues

The following issues have been fixed in FortiGate-6000 and 7000 FortiOS 6.0.10 Build 0372. For inquires about a particular bug, please contact Customer Service & Support. The Resolved Issues described in the FortiOS 6.0.10 release notes also apply to FortiGate-6000 and 7000 FortiOS 6.0.10 Build 0372.

Bug ID

Description

541527 644148 645091 Resolved a configuration synchronization issue for configuration changes associated with administrators that log in using remote authentication (for example, through RADIUS or TACACS+).
559388 Resolved an issue with FortiGate-7000 HA that prevented the FIM in slot 2 of the primary FortiGate-7000 and both FIMs in the secondary FortiGate-7000 from being able to access an FTP server to back up the configuration.
571808 Resolved an issue that prevented the SSL VPN web portal from displaying history messages.
572012 Resolved an issue that prevented FortiGate-6000 FPCs from loading a new firmware image after upgrading the management board firmware from the BIOS after a reboot.
600727 Resolved an issue that could cause IPsec VPN phase 2 routing information to be missing from the DP processor routing cache.
602111 Resolved an issue that caused internal VLANs from different FGSP peers to be connected together after enabling standalone configuration synchronization.
611558 Resolved an issue that could sometimes cause synchronization delays after making configuration changes on a FortiGate-6000 or 7000 managing many logged in users.
614858 Web filter override policies no longer time out early.
619155 Resolved an issue that prevented sessions from being synchronized to the secondary FortiGate-6000 or 7000 after an HA graceful upgrade.
621375 Resolved an issue that could cause an HA graceful upgrade to time out if the configuration has a large number of VDOMs.
623123

Resolved a CPU affinity conflict between the cmdbsvr and bcm processes that can cause a number of issues including missing heartbeats and LAG flapping.

632416 Log messages stating that the backplane channel is unstable are no longer generated when making configuration changes.
633224 Resolved an issue that caused FPMs to crash with NP6 LACP errors after rebooting when a FortiGate-6000 has multiple LACP LAG interfaces.
633561 Resolved an issue that prevented pinging VLAN interfaces in a transparent mode VDOM.
633852 Resolved an issue that delayed when FPCs or FPMs would begin sending traffic log messages to FortiAnalyzer after an HA graceful upgrade.
634949 Resolved a VRRP issue that prevented transparent mode VDOMs from processing management traffic correctly when VRRP is enabled.
636392 Resolved a Web filter override user synchronization memory leak.

636476

Resolved an issue with confsyncd signal handlers that can sometimes cause synchronization problems in a FortiGate-6000 or 7000 HA cluster.

637640 Resolved an IPS issue that could cause CA certificates to be removed from the IPS configuration when deleting a VDOM.
639064 Resolved an issue that prevented displaying information on FPCs about traffic matching a firewall policy with the negate option enabled.
643811 Resetting the uptime of a FortiGate-6000 or 7000 HA cluster no longer causes a split brain scenario.
645560 Removed a FortiASIC DDR test that is no longer relevant.
648585 Resolved an issue that caused IPsec kernel problems when a remote user would reset an IPsec VPN tunnel.