Fortinet black logo

Known issues

Known issues

The following issues have been identified in version 7.2.0. To inquire about a particular bug or report a bug, please contact Customer Service & Support.

Anti Virus

Bug ID

Description

869398

FortiGate sends too many unnecessary requests to FortiSandbox and causes high resource usage.

Firewall

Bug ID

Description

794648

Cannot set src-vendor-mac in policy. The src-vendor-mac policy setting is not lost after upgrading from 7.0.5 and is still in the iprope.

FortiView

Bug ID

Description

787886

The tooltip for the Bandwidth column always displays the receiving bandwidth as zero on the Dashboard > FortiView Traffic Shaping page.

GUI

Bug ID

Description

677806

On the Network > Interfaces page when VDOM mode is enabled, the Global view incorrectly shows the status of IPsec tunnel interfaces from non-management VDOMs as up. The VDOM view shows the correct status.

695163

When there are a lot of historical logs from FortiAnalyzer, the FortiGate GUI Forward Traffic log page can take time to load if there is no specific filter for the time range.

Workaround: provide a specific time range filter, or use the FortiAnalyzer GUI to view the logs.

778844

Dashboard and Managed FortiAPs pages can take a long time to load when there are over 1000 FortiAPs configured.

781310

Policy & Objects > DNAT & Virtual IPs page can take more than 30 seconds to load if there are more than 25 thousand virtual IPs.

IPsec VPN

Bug ID

Description

763205

IKE crashes after HA failover when the enforce-unique-id option is enabled.

Log & Report

Bug ID

Description

770352

On the Log & Report > Forward Traffic page, filters applied to an interface name with a comma (,) do not show the correct filtered results for that interface.

Proxy

Bug ID

Description

766158

Video filter FortiGuard category takes precedence over allowed channel ID exception in the same category.

Security Fabric

Bug ID

Description

614691

Slow GUI performance in large Fabric topology with over 50 downstream devices.

741084

Entry-level FortiGate with Security Fabric enabled for 30 or more downstream FortiGates can go into conserve mode when loading the physical or logical topology pages, or running security rating reports.

Workaround: configure fewer downstream FortiGates in a Security Fabric configuration.

825291

Security rating test for FortiAnalyzer fails when connected to FortiAnalyzer Cloud.

SSL VPN

Bug ID

Description

795381

FortiClient Windows cannot be launched with SSL VPN web portal.

819754

Multiple DNS suffixes cannot be set for the SSL VPN portal.

System

Bug ID

Description

847077

Can't find xitem. Drop the response. error appears for DHCPOFFER packets in the DHCP relay debug.

User & Authentication

Bug ID

Description

754725

After updating the FSSO DC agent to version 5.0.0301, the DC agent keeps crashing on Windows 2012 R2 and 2016, which causes lsass.exe to reboot.

VM

Bug ID

Description

764392

Incorrect VMDK file size in the OVF file for hw13 and hw15.

Workaround: manually correct the hw13 and hw15 OVF file's ovf:size value.

Web Filter

Bug ID

Description

766126

Block replacement page is not pushed automatically to replace the video content when using a video filter.

ZTNA

Bug ID

Description

792829

WAD re-challenges user authentication upon HA failover.

Known issues

The following issues have been identified in version 7.2.0. To inquire about a particular bug or report a bug, please contact Customer Service & Support.

Anti Virus

Bug ID

Description

869398

FortiGate sends too many unnecessary requests to FortiSandbox and causes high resource usage.

Firewall

Bug ID

Description

794648

Cannot set src-vendor-mac in policy. The src-vendor-mac policy setting is not lost after upgrading from 7.0.5 and is still in the iprope.

FortiView

Bug ID

Description

787886

The tooltip for the Bandwidth column always displays the receiving bandwidth as zero on the Dashboard > FortiView Traffic Shaping page.

GUI

Bug ID

Description

677806

On the Network > Interfaces page when VDOM mode is enabled, the Global view incorrectly shows the status of IPsec tunnel interfaces from non-management VDOMs as up. The VDOM view shows the correct status.

695163

When there are a lot of historical logs from FortiAnalyzer, the FortiGate GUI Forward Traffic log page can take time to load if there is no specific filter for the time range.

Workaround: provide a specific time range filter, or use the FortiAnalyzer GUI to view the logs.

778844

Dashboard and Managed FortiAPs pages can take a long time to load when there are over 1000 FortiAPs configured.

781310

Policy & Objects > DNAT & Virtual IPs page can take more than 30 seconds to load if there are more than 25 thousand virtual IPs.

IPsec VPN

Bug ID

Description

763205

IKE crashes after HA failover when the enforce-unique-id option is enabled.

Log & Report

Bug ID

Description

770352

On the Log & Report > Forward Traffic page, filters applied to an interface name with a comma (,) do not show the correct filtered results for that interface.

Proxy

Bug ID

Description

766158

Video filter FortiGuard category takes precedence over allowed channel ID exception in the same category.

Security Fabric

Bug ID

Description

614691

Slow GUI performance in large Fabric topology with over 50 downstream devices.

741084

Entry-level FortiGate with Security Fabric enabled for 30 or more downstream FortiGates can go into conserve mode when loading the physical or logical topology pages, or running security rating reports.

Workaround: configure fewer downstream FortiGates in a Security Fabric configuration.

825291

Security rating test for FortiAnalyzer fails when connected to FortiAnalyzer Cloud.

SSL VPN

Bug ID

Description

795381

FortiClient Windows cannot be launched with SSL VPN web portal.

819754

Multiple DNS suffixes cannot be set for the SSL VPN portal.

System

Bug ID

Description

847077

Can't find xitem. Drop the response. error appears for DHCPOFFER packets in the DHCP relay debug.

User & Authentication

Bug ID

Description

754725

After updating the FSSO DC agent to version 5.0.0301, the DC agent keeps crashing on Windows 2012 R2 and 2016, which causes lsass.exe to reboot.

VM

Bug ID

Description

764392

Incorrect VMDK file size in the OVF file for hw13 and hw15.

Workaround: manually correct the hw13 and hw15 OVF file's ovf:size value.

Web Filter

Bug ID

Description

766126

Block replacement page is not pushed automatically to replace the video content when using a video filter.

ZTNA

Bug ID

Description

792829

WAD re-challenges user authentication upon HA failover.