Fortinet Document Library
Version:
6.2.2
6.2.1
6.2.0
Table of Contents
Expanding Fabric Family
Telemetry Integration - New FTNT Products
Telemetry Integration - AWS Cloud Segments
SAML SSO for Fabric Devices
Split-Task VDOM Support
Dynamic Policy - Fabric Devices
Fabric Member Synchronization
Simplify FortiAnalyzer Pairing
FortiSandbox
FortiClient EMS
Security Rating
Security Rating - Extend Checks to FortiAnalyzer
Security Rating – Historical Rating Dashboard Widget
Comprehensive Report Extensions
Endpoint
Dynamic Policy – FortiClient EMS (Connector)
Captive Portal for Compliance Failure
FortiToken Cloud
Wireless
WiFi Location Map
Monitor and Suppress Phishing SSID
WiFi QoS Enhancement
Airtime Fairness
Extended Details on AP Drill Down
Troubleshooting – Extended Logging
Override WiFi Certificates (from GUI)
Wireless MAC Filter Updates
Change SSID to VDOM Object
Direct SNMP Monitoring
Switching
FortiLink Setup
Voice VLAN Auto-Assignment
Dynamic VLAN 'Name' Assignment from RADIUS Attribute
Netflow / IPFIX Support
QoS Assignment and Rate Limiting for Quarantined VLANs
Persistent MAC Learning (Sticky MAC)
Split Port Mode for QSFP ports
Virtual Switch Extensions
MSTI Support
FortiLink Auto Network Configuration Policy
FortiLink MCLAG configuration in GUI
FortiLink Network Sniffer Extension
Leverage LLDP to Simplify Security Fabric Negotiation
Fabric Connectors
Multiple Concurrent SDN/Cloud Connectors
Filter Lookup Improvement for SDN Connectors
Obtain full user information through the MS Exchange connector
Cloud Connector - AliCloud
Cloud Connector - AWS - IAM Support
SDN Connector - VMware ESXi
Kubernetes (K8s)
Private Cloud K8s Connector
AWS Kubernetes (EKS) Connector
Azure Kubernetes (AKS) Connector
GCP Kubernetes (GKE) Connector
Oracle Kubernetes (OKE) Connector
SDN Connector - Azure Stack
SDN Connector - OpenStack Domain Filter
Endpoint Connector - Cisco pxGrid
External Block List (Threat Feed) – Policy
External Block List (Threat Feed) - File Hashes
External Block List (Threat Feed) - Authentication
Connector GUI Organization
SD-WAN
Overlay Controller VPN (OCVPN)
Hub-and-Spoke Support
ADVPN Support
Multiple VPN Support
OC-VPN Cloud Portal
SD-WAN Bandwidth Monitoring Service
Rule Definition Improvements
Load Balancing Per-Rule
Interface Cost
DSCP Matching (Shaping)
Traffic Shaping Schedules
Application Groups in Policies
Internet Service Groups in Policies
IPv6 Support (UI)
Forward Error Correction
Represent Multiple IPsec Tunnels as a Single Interface
Dual VPN Tunnel Wizard
BGP Additional Path Support
SLA Logging
Internet Service Customization
SLA Monitoring via REST API
Multi-Cloud
AWS Extensions
Cross AZ High Availability Support
Google Cloud Platform (GCP) Extensions
HA Between Zones
Auto Scaling
Oracle Cloud Extensions
IAM Authentication
Paravirtualized Mode Support
Native Mode Support for OCI
High Availability Between Availability Domains
AliCloud Extensions
Auto Scaling
Support up to 18 Interfaces
OpenStack — Network Service Header (NSH) Chaining Support
Physical Function (PF) SR-IOV Driver Support
FortiMeter Extensions
FortiMeter - Microsoft Hyper-V Instances
FortiMeter - Fallback to Public FortiGuard
Automation and Dev-Ops
Trigger - FortiAnalyzer Event Handler
Trigger - FortiCloud-based IOC
Action - NSX Quarantine
Action - CLI Script
Action - Azure Function
Action - Google Cloud Function
Action - AliCloud Function
Action - Webhook Extensions
Advanced Threats
Flow-based Inspection
Web Filtering
Inspection Mode Per Policy
Statistics
Protocol Port Enforcement
IP Reputation Filtering
URL Certificate Blacklist
Global IP Address Information Database
Antivirus Performance Improvements
CIFS Support
IPv6
Combined IPv4 and IPv6 Policy
FortiGuard DNS Filter
File Filtering for Web and Email Filter Profiles
Move Botnet C&C into IPS Profile
IOT & OT
MAC Address-Based Policies
Device Summary and Filtering
SOC Adoption
Topology View — Consolidated Risk
FortiView — Subnet Filters
FortiView Dashboards and Widgets
FortiView Object Names
FortiView Top Sources Usability
FortiManager Cloud Service
FortiAnalyzer Cloud Service
Compliance
FortiSandbox Cloud Region Selection
FortiGate-VM Unique Certificate
Run a File System Check Automatically
UX / Usability
SAML SSO
Logging - Session versus Attack Direction
Internet Service Improvement
Application Control Profile GUI Improvements
Authentication Policy Extensions
Workspace Mode
Extend Policy/Route Check to Policy Routing
Address Group - Exclusions
Automatic Address Creation for Attached Networks
Centralized Web Filtering Statistics
Traffic Shaping GUI Update
Unified Login for FortiCare and FortiGate Cloud
Split-Task VDOM Mode
Other
Extend Interface Failure Detection to Aggregate Interfaces
Source & Destination UUID Logging
DNS - Multiple Domain List
DNS - Latency Info
DNS - Add DNS Translation to DNS Profile
Multiple FortiAnalyzer (or Syslog) Per VDOM
Web Proxy
Transparent Web Proxy Forwarding
Multiple Dynamic Header Count
Restricted SaaS Access (0365, G-Suite, Dropbox)
Protocols
TLS 1.3 Support
SMBv2 Support (SSL VPN)
PTPv2 (Slave Mode)
Telnet Disabled Option
SHA-1 Authentication Support (for NTPv4)
DNS over TLS
LLDP Reception
Direct IP Support for LTE/4G
Recognize AnyCast Address in Geo-IP Blocking
GTP in Asymmetric Routing
Firewall - Allow to Customize Default Service
Firewall - Anti-Replay Option Per-Policy
NTLM Extensions
Option to Disable Stateful SCTP Inspection
HA Failover Condition - SSD Failure
Option to Fragment IP Packets Before IPSec Encapsulation
DHCP Relay Agent Information Option
VLAN Inside VXLAN
ECMP Acceleration in NAT Mode
Disable all cloud communication
Custom SIP RTP Port Range Support
Custom Service Max Value Increase
FortiCarrier License Activation
GUI Alert on Login to VMX Security Nodes
Event Log Subtype for FortiExtender
Decouple FortiSandbox Cloud from FortiCloud
FortiGate Cloud
SNMP OID for Log Failed to Send
FortiGuard Distribution of Updated Apple Certificates (for token push notifications)
Active Directory Recursive Search Option
Web proxy global settings
Change Log
Home
FortiGate / FortiOS 6.2.0
New Features
New Features
Expanding Fabric Family
Telemetry Integration - New FTNT Products
Telemetry Integration - AWS Cloud Segments
SAML SSO for Fabric Devices
Split-Task VDOM Support
Dynamic Policy - Fabric Devices
Fabric Member Synchronization
Simplify FortiAnalyzer Pairing
FortiSandbox
FortiClient EMS
Security Rating
Security Rating - Extend Checks to FortiAnalyzer
Security Rating – Historical Rating Dashboard Widget
Comprehensive Report Extensions
Endpoint
Dynamic Policy – FortiClient EMS (Connector)
Captive Portal for Compliance Failure
FortiToken Cloud
Wireless
WiFi Location Map
Monitor and Suppress Phishing SSID
WiFi QoS Enhancement
Airtime Fairness
Extended Details on AP Drill Down
Troubleshooting – Extended Logging
Override WiFi Certificates (from GUI)
Wireless MAC Filter Updates
Change SSID to VDOM Object
Direct SNMP Monitoring
Switching
FortiLink Setup
Voice VLAN Auto-Assignment
Dynamic VLAN 'Name' Assignment from RADIUS Attribute
Netflow / IPFIX Support
QoS Assignment and Rate Limiting for Quarantined VLANs
Persistent MAC Learning (Sticky MAC)
Split Port Mode for QSFP ports
Virtual Switch Extensions
MSTI Support
FortiLink Auto Network Configuration Policy
FortiLink MCLAG configuration in GUI
FortiLink Network Sniffer Extension
Leverage LLDP to Simplify Security Fabric Negotiation
Fabric Connectors
Multiple Concurrent SDN/Cloud Connectors
Filter Lookup Improvement for SDN Connectors
Obtain full user information through the MS Exchange connector
Cloud Connector - AliCloud
Cloud Connector - AWS - IAM Support
SDN Connector - VMware ESXi
Kubernetes (K8s)
Private Cloud K8s Connector
AWS Kubernetes (EKS) Connector
Azure Kubernetes (AKS) Connector
GCP Kubernetes (GKE) Connector
Oracle Kubernetes (OKE) Connector
SDN Connector - Azure Stack
SDN Connector - OpenStack Domain Filter
Endpoint Connector - Cisco pxGrid
External Block List (Threat Feed) – Policy
External Block List (Threat Feed) - File Hashes
External Block List (Threat Feed) - Authentication
Connector GUI Organization
SD-WAN
Overlay Controller VPN (OCVPN)
Hub-and-Spoke Support
ADVPN Support
Multiple VPN Support
OC-VPN Cloud Portal
SD-WAN Bandwidth Monitoring Service
Rule Definition Improvements
Load Balancing Per-Rule
Interface Cost
DSCP Matching (Shaping)
Traffic Shaping Schedules
Application Groups in Policies
Internet Service Groups in Policies
IPv6 Support (UI)
Forward Error Correction
Represent Multiple IPsec Tunnels as a Single Interface
Dual VPN Tunnel Wizard
BGP Additional Path Support
SLA Logging
Internet Service Customization
SLA Monitoring via REST API
Multi-Cloud
AWS Extensions
Cross AZ High Availability Support
Google Cloud Platform (GCP) Extensions
HA Between Zones
Auto Scaling
Oracle Cloud Extensions
IAM Authentication
Paravirtualized Mode Support
Native Mode Support for OCI
High Availability Between Availability Domains
AliCloud Extensions
Auto Scaling
Support up to 18 Interfaces
OpenStack — Network Service Header (NSH) Chaining Support
Physical Function (PF) SR-IOV Driver Support
FortiMeter Extensions
FortiMeter - Microsoft Hyper-V Instances
FortiMeter - Fallback to Public FortiGuard
Automation and Dev-Ops
Trigger - FortiAnalyzer Event Handler
Trigger - FortiCloud-based IOC
Action - NSX Quarantine
Action - CLI Script
Action - Azure Function
Action - Google Cloud Function
Action - AliCloud Function
Action - Webhook Extensions
Advanced Threats
Flow-based Inspection
Web Filtering
Inspection Mode Per Policy
Statistics
Protocol Port Enforcement
IP Reputation Filtering
URL Certificate Blacklist
Global IP Address Information Database
Antivirus Performance Improvements
CIFS Support
IPv6
Combined IPv4 and IPv6 Policy
FortiGuard DNS Filter
File Filtering for Web and Email Filter Profiles
Move Botnet C&C into IPS Profile
IOT & OT
MAC Address-Based Policies
Device Summary and Filtering
SOC Adoption
Topology View — Consolidated Risk
FortiView — Subnet Filters
FortiView Dashboards and Widgets
FortiView Object Names
FortiView Top Sources Usability
FortiManager Cloud Service
FortiAnalyzer Cloud Service
Compliance
FortiSandbox Cloud Region Selection
FortiGate-VM Unique Certificate
Run a File System Check Automatically
UX / Usability
SAML SSO
Logging - Session versus Attack Direction
Internet Service Improvement
Application Control Profile GUI Improvements
Authentication Policy Extensions
Workspace Mode
Extend Policy/Route Check to Policy Routing
Address Group - Exclusions
Automatic Address Creation for Attached Networks
Centralized Web Filtering Statistics
Traffic Shaping GUI Update
Unified Login for FortiCare and FortiGate Cloud
Split-Task VDOM Mode
Other
Extend Interface Failure Detection to Aggregate Interfaces
Source & Destination UUID Logging
DNS - Multiple Domain List
DNS - Latency Info
DNS - Add DNS Translation to DNS Profile
Multiple FortiAnalyzer (or Syslog) Per VDOM
Web Proxy
Transparent Web Proxy Forwarding
Multiple Dynamic Header Count
Restricted SaaS Access (0365, G-Suite, Dropbox)
Protocols
TLS 1.3 Support
SMBv2 Support (SSL VPN)
PTPv2 (Slave Mode)
Telnet Disabled Option
SHA-1 Authentication Support (for NTPv4)
DNS over TLS
LLDP Reception
Direct IP Support for LTE/4G
Recognize AnyCast Address in Geo-IP Blocking
GTP in Asymmetric Routing
Firewall - Allow to Customize Default Service
Firewall - Anti-Replay Option Per-Policy
NTLM Extensions
Option to Disable Stateful SCTP Inspection
HA Failover Condition - SSD Failure
Option to Fragment IP Packets Before IPSec Encapsulation
DHCP Relay Agent Information Option
VLAN Inside VXLAN
ECMP Acceleration in NAT Mode
Disable all cloud communication
Custom SIP RTP Port Range Support
Custom Service Max Value Increase
FortiCarrier License Activation
GUI Alert on Login to VMX Security Nodes
Event Log Subtype for FortiExtender
Decouple FortiSandbox Cloud from FortiCloud
FortiGate Cloud
SNMP OID for Log Failed to Send
FortiGuard Distribution of Updated Apple Certificates (for token push notifications)
Active Directory Recursive Search Option
Web proxy global settings
Change Log
6.2.0
6.2.2
6.2.1
6.2.0
Download PDF
Copy Link
Compliance
This section lists the new features added to FortiOS for Compliance.
FortiSandbox Cloud Region Selection
FortiGate-VM Unique Certificate
Run a File System Check Automatically
Compliance
This section lists the new features added to FortiOS for Compliance.
FortiSandbox Cloud Region Selection
FortiGate-VM Unique Certificate
Run a File System Check Automatically
Link
PDF