Fortinet Document Library

Version:

Version:

Version:

Version:

Version:

Version:

Version:

Version:

Version:

Version:

Version:

Version:

Version:

Version:

Version:

Version:

Version:

Version:

Version:

Version:

Version:

Version:

Version:

Version:

Version:

Version:

Version:

Version:

Version:

Version:


Table of Contents

Changes in default behavior

Bug ID

Description

230997

Do not allow match-vip in firewall policies when the action is set to accept.

537354

Interface egress shaping offload to NPU when shaping-offload is enabled.

598614

When a group and a user-peer is specified in an SSL VPN authentication rule, and the same group appears in multiple rules, each group and user-peer combination can be matched independently.

632209

Push updates can no longer be configured from the GUI or CLI. The config system autoupdate push-update command has been removed. A new persistent connection feature is added to get notified of updates from FortiGuard for 2U devices and larger.

669018

Update link for Fortinet URL rating submission on web filter block/warning pages to point to https://globalurl.fortinet.net.

670676

When there are multiple ECMP routes to a BGP next hop that requires recursive resolution, the previous behavior selects only the first ECMP route for the resolution. In this enhancement, all ECMP routes are considered for the next hop recursive resolution.

673609

The auto-join FortiCloud re-try timer has changed from 600 seconds to 60 seconds.

690712

When there is an IGMP query from 0.0.0.0 coming to the FortiGate, the FortiGate will not allow this query to change its IGMP querier role.

Changes in default behavior

Bug ID

Description

230997

Do not allow match-vip in firewall policies when the action is set to accept.

537354

Interface egress shaping offload to NPU when shaping-offload is enabled.

598614

When a group and a user-peer is specified in an SSL VPN authentication rule, and the same group appears in multiple rules, each group and user-peer combination can be matched independently.

632209

Push updates can no longer be configured from the GUI or CLI. The config system autoupdate push-update command has been removed. A new persistent connection feature is added to get notified of updates from FortiGuard for 2U devices and larger.

669018

Update link for Fortinet URL rating submission on web filter block/warning pages to point to https://globalurl.fortinet.net.

670676

When there are multiple ECMP routes to a BGP next hop that requires recursive resolution, the previous behavior selects only the first ECMP route for the resolution. In this enhancement, all ECMP routes are considered for the next hop recursive resolution.

673609

The auto-join FortiCloud re-try timer has changed from 600 seconds to 60 seconds.

690712

When there is an IGMP query from 0.0.0.0 coming to the FortiGate, the FortiGate will not allow this query to change its IGMP querier role.