New features or enhancements
More detailed information is available in the New Features Guide.
Feature ID |
Description |
---|---|
868163 |
Implement real-time file system integrity checking in order to:
|
868164 |
Implement BIOS-level signature and file integrity checking by enforcing each FortiOS GA firmware image, AV engine files, and IPS engine files to be dually-signed by the Fortinet CA and a third-party CA. The BIOS verifies that each file matches their secure hash as indicated by their certificates. Users are warned when there is a failed integrity check, and the system may be prevented from booting depending on the severity and the BIOS security level. |