Changes in default behavior
|
Bug ID |
Description |
|---|---|
|
518983 |
When upgrading from previous FortiOS 6.2 versions to 6.4.0, the default WTP profiles with zero reference are deleted. In FortiOS 6.4.0, the default WTP profiles are not created by default until a FortiAP is added by discovery or manually. |
|
537354 |
Interface egress shaping offload to NPU when |
|
573065 |
Command exe log roll only rolls disk log, no matter what device filter is set. |
|
587579 |
Implement third-party certificate verification and OCSP stapling check for all FortiGuard servers connected from FortiOS. Make |
|
588583 |
Allow user set gateway when they use VPN IPsec static and remote IP is empty. |
|
593122 |
CSF root FortiGate SDN connector and automation settings will not be synced down to CMDB in CSF downstream FortiGate anymore. |
|
598320 |
In a scenario where there are duplicate entries of |
|
598803 |
Services that require connection to FortiGuard services such as web filter (FURL), spam filter (SPAM) and zero hour virus outbreak prevention (ZHVO), will now default to connecting through HTTPS/443 via Anycast. FortiGuard servers will also use 3rd party signed certificates and OSCP stapling. From the CLI, the default has changed From: config system fortiguard
set fortiguard-anycast disable
set protocol https
set port 8888
end
To: config system fortiguard
set fortiguard-anycast enable
set fortiguard-anycast-source fortinet
set protocol https
set port 443
end
When upgrading, if |
|
601413 |
Change |
|
616158 |
While hovering over an IP address on different GUI pages (such as Log & Report, Fabric Connectors, and others), a tooltip informs users of additional information for the IP such as its country, location, owner, resolved domains, etc. |