DOCUMENT LIBRARY
DOCUMENT LIBRARY
Products
Best Practices
Hardware Guides
Products A-Z
Summary
By Solution
By 4D Pillars
By Cloud
Secure Networking
Unified SASE
Security Operations
Secure SD-WAN
Secure Access Service Edge (SASE)
ZTNA
LAN Edge
Identity and Access Management
Next Generation Firewall
Public Cloud
Private Cloud
FortiCloud
Secure Networking
Hybrid Mesh Firewall
FortiGate/ FortiOS
FortiGate-5000
/
6000
/
7000
NOC Management
FortiManager
/
FortiManager Cloud
Managed Fortigate Service
LAN
FortiSwitch
FortiAP / FortiWiFi
FortiEdge Cloud
FortiNAC-F
WAN
Secure SD-WAN
FortiExtender
More >>
Unified SASE
Single Vendor SASE
FortiSASE
Secure SD-WAN
Zero Trust Network Access (ZTNA)
FortiProxy
FortiMonitor
Cloud Network Security
FortiGate Public Cloud
FortiGate Private Cloud
FortiGate CNF
FortiFlex
Lacework FortiCNAPP
Secure Endpoint Connectivity
FortiClient
/
FortiClient Cloud
Web Application / API Protection
FortiWeb
FortiADC
FortiDAST
More >>
Security Operations
Security Operations Automation
FortiAnalyzer
/
FortiAnalyzer Cloud
FortiSIEM
/
FortiSIEM Cloud
FortiSOAR
SOC-as-a-Service (SOCaaS)
Identity
FortiAuthenticator
FortiTrust Identity
FortiPAM
Early Detection & Prevention
FortiSandbox
/
FortiSandbox Cloud
FortiNDR
FortiDeceptor
FortiRecon
More >>
Secure Networking
Hybrid Mesh Firewall
FortiGate/ FortiOS
FortiGate-5000
/
6000
/
7000
NOC Management
FortiManager
/
FortiManager Cloud
Managed Fortigate Service
FortiAIOps
LAN
FortiSwitch
FortiAP / FortiWiFi
FortiAP-U Series
FortiEdge Cloud
FortiNAC-F
WAN
Secure SD-WAN
FortiExtender
Communication & Surveillance
FortiVoice
/
FortiVoice Cloud
FortiFone
FortiCamera
FortiRecorder
FortiCentral
Unified SASE
Single Vendor SASE
FortiSASE
Secure SD-WAN
Zero Trust Network Access (ZTNA)
FortiProxy
FortiMonitor
Secure Endpoint Connectivity
FortiClient
/
FortiClient Cloud
Cloud Network Security
FortiGate Public Cloud
FortiGate Private Cloud
FortiGate CNF
FortiFlex
Cloud-Native Security
Lacework FortiCNAPP
FortiDevSec
Web Application / API Protection
FortiWeb
FortiADC
FortiDAST
Security Operations
Security Operations Automation
FortiAnalyzer
/
FortiAnalyzer Cloud
FortiSIEM
/
FortiSIEM Cloud
FortiSOAR
Endpoint
FortiClient
/
FortiClient Cloud
FortiEDR/XDR
Data Protection
FortiDLP
FortiDLP Agent
FortiDLP Policies
Identity
FortiAuthenticator
FortiTrust Identity
FortiToken
/
FortiToken Cloud
FortiPAM
Email
FortiMail
FortiPhish
Early Detection & Prevention
FortiSandbox
/
FortiSandbox Cloud
FortiNDR
FortiDeceptor
FortiRecon
Expert Services
SOC-as-a-Service (SOCaaS)
Edge Firewall
FortiGate/FortiOS
FortiGate-5000
/
6000
/
7000
FortiGate Public Cloud
FortiGate Private Cloud
Orchestration & management
FortiManager
/
FortiManager Cloud
FortiAnalyzer
/
FortiAnalyzer Cloud
Overlay-as-a-Service
SD Branch
FortiSwitch
FortiAP / FortiWiFi
FortiExtender
/
FortiExtender Cloud
Application Delivery
FortiADC
/
FortiGSLB
Single Vendor SASE
FortiSASE
Secure Endpoint Connectivity
FortiClient
/
FortiClient Cloud
Secure Private Access
Secure SD-WAN
Zero Trust Network Access (ZTNA)
Thin Edge
FortiGate/ FortiOS
FortiAP / FortiWiFi
FortiExtender
/
FortiExtender Cloud
Identity
FortiAuthenticator
FortiTrust Identity
FortiToken Cloud
FortiToken
Application Gateway
FortiGate/ FortiOS
FortiProxy
FortiADC
/
FortiGSLB
Enterprise Asset Management
FortiClient EMS
Endpoint Agent
FortiClient
/
FortiClient Cloud
Agentless Security Posture
FortiNAC-F
FortiSIEM
/
FortiSIEM Cloud
Identity
FortiAuthenticator
FortiTrust Identity
FortiToken Cloud
FortiToken
Wireless
FortiAP / FortiWiFi
FortiAP-U Series
FortiGate Cloud
Switching
FortiSwitch
FortiEdge Cloud
FortiNAC-F
Identity
FortiAuthenticator
FortiTrust Identity
FortiToken Cloud
FortiToken
Privilege Acccess Management
FortiPAM
Next Generation Firewall
FortiGate / FortiOS
FortiGate-5000
/
6000
/
7000
FortiGate Public Cloud
FortiGate Private Cloud
Orchestration & management
FortiManager
/
FortiManager Cloud
FortiAnalyzer
/
FortiAnalyzer Cloud
Expert Services
SOC-as-a-Service (SOCaaS)
Managed Fortigate Service
All
FortiADC Public Cloud
FortiAnalyzer Public Cloud
FortiAuthenticator Public Cloud
FortiDeceptor Public Cloud
FortiGate Public Cloud
FortiIsolator Public Cloud
FortiManager Public Cloud
FortiNDR Public Cloud
FortiPAM Public Cloud
FortiPortal Public Cloud
FortiProxy Public Cloud
FortiSandbox Public Cloud
FortiTester Public Cloud
FortiVoice Public Cloud
FortiWeb Manager Public Cloud
FortiWeb Public Cloud
All
FortiADC Private Cloud
FortiAnalyzer BigData Private Cloud
FortiAnalyzer Private Cloud
FortiAuthenticator Private Cloud
FortiDeceptor Private Cloud
FortiGate Private Cloud
FortiManager Private Cloud
FortiNDR Private Cloud
FortiPAM Private Cloud
FortiProxy Private Cloud
FortiSandbox Private Cloud
FortiTester Private Cloud
FortiVoice Private Cloud
FortiWeb Manager Private Cloud
FortiWeb Private Cloud
Account Management
FortiCloud Services
SAAS Management
FortiGate Cloud
FortiEdge Cloud
FortiEdge Cloud
FortiExtender Cloud
FortiPresence Cloud
FortiToken Cloud
FortiTrust Identity
FortiZTP
FortiCamera Cloud
SAAS Application Security
FortiWeb Cloud
FortiGSLB
FortiCASB
FortiCNP
FortiInsight
FortiPhish
FortiGate CNF
Managed Services
SOC-as-a-Service (SOCaaS)
Managed Fortigate Service
Platform as a service (PAAS)
FortiSASE
FortiAnalyzer Cloud
FortiManager Cloud
FortiClient Cloud
FortiSandbox Cloud
FortiMail Cloud
FortiSOAR Cloud
Other SAAS Services
Overlay-as-a-Service
FortiRecon
FortiConverter
ForiIPAM
FortiFlex
FortiCare Elite
4D Resources
Solution Hubs
Define, design, deploy, demo
4D Pillars
Secure SD-WAN
Zero Trust Network Access
Wireless
Switching
Secure Access Service Edge
Identity and Access Management
Next Generation Firewall
Curated Links by Solution
Cloud
FortiCloud
Public & Private Cloud
Popular Solutions
Secure SD-WAN
Zero Trust Network Access
Secure Access
Security Fabric
Tele-Working
Multi-Factor Authentication
FortiASIC
Operational Technology
MSSP
Next Generation Firewall
FortiAnalyzer
FortiAnalyzer Big-Data
FortiADC
FortiAP / FortiWiFi
FortiAP U-Series
FortiAuthenticator
FortiCache
FortiCarrier
FortiController
FortiDDoS
FortiDDoS-F
FortiDeceptor
FortiExtender
FortiGate-5000
FortiGate-6000
FortiGate-7000
FortiHypervisor
FortiIsolator
FortiMail
FortiManager
FortiNAC
FortiNDR
FortiProxy
FortiRecorder
FortiGate
FortiRPS
FortiSandbox
FortiSIEM
FortiSwitch
FortiTester
FortiToken
FortiVoice
FortiWAN
FortiWeb
FortiWLC
FortiWLM
AscenLink
AV Engine
AWS Firewall Rules
Container FortiOS
FortiADC
FortiADC E Series
FortiADC Manager
FortiADC Private Cloud
FortiADC Public Cloud
FortiAIOps
FortiAnalyzer
FortiAnalyzer BigData
FortiAnalyzer BigData Private Cloud
FortiAnalyzer Cloud
FortiAnalyzer Private Cloud
FortiAnalyzer Public Cloud
FortiAP / FortiWiFi
FortiAP-U Series
FortiAuthenticator
FortiAuthenticator Private Cloud
FortiAuthenticator Public Cloud
FortiAuthProxy
FortiBalancer
FortiBranchSASE
FortiBridge
FortiCache
FortiCamera
FortiCamera Cloud
FortiCare Elite
FortiCarrier
FortiCASB
FortiCentral
FortiClient
FortiClient Cloud
FortiCloud Services
FortiCNP
FortiConnect
FortiController
FortiConverter Service
FortiConverter Tool
FortiCore
FortiCSPM
FortiCWP
FortiDAST
FortiDB
FortiDDoS
FortiDDoS-F
FortiDeceptor
FortiDeceptor DaaS
FortiDeceptor Private Cloud
FortiDeceptor Public Cloud
FortiDevSec
FortiDLP
FortiDLP Agent
FortiDLP Policies
FortiDNS
FortiEdge Cloud
FortiEDR/XDR
FortiEndpoint
FortiExplorer
FortiExplorer Go
FortiExtender
FortiFlex
FortiFone
FortiGate / FortiOS
FortiGate Cloud
FortiGate CNF
FortiGate Private Cloud
FortiGate Public Cloud
FortiGate-5000
FortiGate-6000
FortiGate-7000
FortiGate-as-a-Service
FortiGSLB
FortiGuard Advanced Bot Protection
FortiGuest
FortiHypervisor
FortiInsight
FortiInsight Cloud
FortiIPAM
FortiIsolator
FortiIsolator Public Cloud
FortiLAN Cloud
FortiMail
FortiMail Cloud
FortiManager
FortiManager Cloud
FortiManager Private Cloud
FortiManager Public Cloud
FortiMonitor
FortiNAC
FortiNAC-F
FortiNDR
FortiNDR (on-premise) Private Cloud
FortiNDR (on-premise) Public Cloud
FortiNDR Cloud
FortiNDR Cloud Sensors
FortiPAM
FortiPAM Private Cloud
FortiPAM Public Cloud
FortiPhish
FortiPlanner
FortiPolicy
FortiPortal
FortiPortal Public Cloud
FortiPresence
FortiPresence VM
FortiProxy
FortiProxy Private Cloud
FortiProxy Public Cloud
FortiRecon
FortiRecorder
FortiRPS
FortiSandbox
FortiSandbox Cloud
FortiSandbox Private Cloud
FortiSandbox Public Cloud
FortiSASE
FortiScanner
FortiSIEM
FortiSIEM Cloud
FortiSOAR
FortiSOAR Cloud
FortiSRA
FortiSwitch
FortiSwitch Manager
FortiTap
FortiTester
FortiTester Private Cloud
FortiTester Public Cloud
FortiToken
FortiToken Cloud
FortiTrust Identity
FortiVoice
FortiVoice Cloud
FortiVoice Private Cloud
FortiVoice Public Cloud
FortiWAN
FortiWAN Controller
FortiWeb
FortiWeb Cloud
FortiWeb Manager Private Cloud
FortiWeb Manager Public Cloud
FortiWeb Private Cloud
FortiWeb Public Cloud
FortiWLM
FortiZTP
IPS Engine
Lacework FortiCNAPP
Managed FortiGate Service
Overlay-as-a-Service
Security Awareness and Training
SOCaaS
Wireless Controller
Search documents and hardware ...
New Features
Overview
GUI
General usability enhancements
Look up IP address information from the Internet Service Database page
Embed real-time packet capture and analysis tool on Diagnostics page
Embed real-time debug flow tool on Diagnostics page
Display detailed FortiSandbox analysis and downloadable PDF report
Display LTE modem configuration on GUI of FG-40F-3G4G model
Update naming of FortiCare support levels 7.2.1
Security Fabric
Fabric settings
Automatic regional discovery for FortiSandbox Cloud
Follow the upgrade path in a federated update
Rename FortiAI to FortiNDR
Register all HA members to FortiCare from the primary unit
Remove support for Security Fabric loose pairing
Allow FortiSwitch and FortiAP upgrade when the Security Fabric is disabled
Add support for multitenant FortiClient EMS deployments 7.2.1
Add IoT devices to Asset Identity Center page 7.2.1
Introduce distributed topology and security rating reports 7.2.1
Add IoT vulnerabilities to the asset identity list and FortiGuard IoT security rating checks 7.2.4
Enhance the Fabric Connectors page 7.2.4
Add FortiPolicy as Security Fabric device 7.2.4
Allow FortiClient EMS connectors to trust EMS server certificate renewals based on the CN field 7.2.4
Validating FortiManager’s certificate before connection 7.2.8
External connectors
SAP external connector 7.2.1
Using the REST API to push updates to external threat feeds 7.2.1
Support IPv6 dynamic addresses retrieved from Cisco ACI SDN connector 7.2.1
Automation stitches
Add new automation triggers for event logs
Certificate expiration trigger 7.2.1
System automation actions to back up, reboot, or shut down the FortiGate 7.2.1
Enhance automation trigger to execute only once at a scheduled date and time 7.2.1
Security ratings
Add PSIRT vulnerabilities to security ratings and notifications for critical vulnerabilities found on Fabric devices 7.2.1
Network
SD-WAN
Allow application category as an option for SD-WAN rule destination
Add mean opinion score calculation and logging in performance SLA health checks
Multiple members per SD-WAN neighbor configuration
Duplication on-demand when SLAs in the configured service are matched
SD-WAN in large scale deployments
SD-WAN segmentation over a single overlay
Embedded SD-WAN SLA information in ICMP probes 7.2.1
Exchange underlay link cost property with remote peer in IPsec VPN phase 1 negotiation 7.2.1
Copying the DSCP value from the session original direction to its reply direction 7.2.1
Matching BGP extended community route targets in route maps 7.2.4
SD-WAN application monitor using FortiMonitor 7.2.4
Add Fabric Overlay Orchestrator for SD-WAN overlay configurations 7.2.4
Improve client-side settings for SD-WAN network monitor 7.2.6
General
Add NetFlow fields to identify class of service
OSPF graceful restart on topology change
OSPFv3 graceful restart for OSPF6
BFD for multihop path for BGP
Configuring a FortiGate interface to act as an 802.1X supplicant
Support 802.1X on virtual switch for certain NP6 platforms
SNMP OIDs for port block allocations IP pool statistics
Increase the number of VRFs per VDOM
GUI support for advanced BGP options 7.2.1
Support BGP AS number input in asdot and asdot+ format 7.2.1
SNMP OIDs with details about authenticated users 7.2.1
Add new IPAM GUI page 7.2.1
Assign multiple IP pools and subnets using IPAM Rules 7.2.1
Add VCI pattern matching as a condition for IP or DHCP option assignment 7.2.1
Support cross-VRF local-in and local-out traffic for local services 7.2.1
FortiGate as FortiGate LAN extension 7.2.1
Allow VLAN sub-interfaces to be used in virtual wire pairs 7.2.4
Add static route tag and BGP neighbor password 7.2.4
DHCP enhancements 7.2.4
Improve DVLAN QinQ performance for NP7 platforms over virtual wire pairs 7.2.5
Support BGP graceful restart helper-only mode 7.2.8
Allow multiple Netflow collectors 7.2.8
Handling IPv4 SCTP packets with zero checksum on the NP7 platform 7.2.8
IPv6
Configuring IPv4 over IPv6 DS-Lite service
NAT46 and NAT64 for SIP ALG
Send Netflow traffic to collector in IPv6 7.2.1
IPv6 feature parity with IPv4 static and policy routes 7.2.1
Web proxy
HTTPS download of PAC files for explicit proxy 7.2.1
Support CORS protocol in explicit web proxy when using session-based, cookie-enabled, and captive portal-enabled SAML authentication 7.2.1
System
General
Improve admin-restrict-local handling of multiple authentication servers
Access control for SNMP based on the MIB-view and VDOM
Backing up and restoring configuration files in YAML format
Remove split-task VDOMs and add a new administrative VDOM type
Introduce maturity firmware levels
Restrict SSH and telnet jump host capabilities 7.2.1
Enable automatic firmware updates 7.2.1
Deregistration from the GUI 7.2.1
Add government end user option for FortiCare registration 7.2.1
Support backing up configurations with password masking 7.2.1
New default certificate for HTTPS administrative access 7.2.1
Central management configuration preservation for factory reset on FortiGate 7.2.4
Remove maintainer account 7.2.4
Allow the FortiGate to override FortiCloud SSO administrator user permissions 7.2.4
Display warnings for supported Fabric devices passing their hardware EOS date 7.2.5
Support checking for firmware updates daily when auto firmware upgrade is enabled 7.2.6
Enable automatic firmware upgrades by default on entry-level FortiGates 7.2.6
Command to compute file hashes 7.2.6
High availability
VRRP on EMAC-VLAN interfaces
Abbreviated TLS handshake after HA failover
HA failover support for ZTNA proxy sessions
Add warnings when upgrading an HA cluster that is out of synchronization
Support up to 30 virtual clusters
Optimized FGSP peer communication
Consolidate FGSP settings 7.2.1
FGSP per-tunnel failover for IPsec 7.2.1
FGCP over FGSP per-tunnel failover for IPsec 7.2.1
Allow IPsec DPD in FGSP members to support failovers 7.2.1
Applying the session synchronization filter only between FGSP peers in an FGCP over FGSP topology 7.2.1
SNMP
Enabling the INDEX extension 7.2.8
FortiGuard
FDS-only ISDB package in firmware images
Verifying and accepting signed AV and IPS packages
Allow FortiGuard services and updates to initiate from a traffic VDOM
FortiManager as override server for IoT query services 7.2.1
Security
Enhance BIOS-level signature and file integrity checking 7.2.5
Real-time file system integrity checking 7.2.5
Add built-in entropy source 7.2.6
Unauthorized firmware modification attempt reporting 7.2.8
Enhance file integrity check to perform verification during system bootup 7.2.9
Enhance real-time file system integrity checking 7.2.9
Policy and Objects
Zero Trust Network Access
ZTNA scalability support for up to 50 thousand concurrent endpoints
Using the IP pool or client IP address in a ZTNA connection to backend servers
ZTNA device certificate verification from EMS for SSL VPN connections 7.2.1
Publishing ZTNA services through the ZTNA portal 7.2.1
ZTNA inline CASB for SaaS application access control 7.2.1
ZTNA policy access control of unmanaged devices 7.2.1
HTTP2 connection coalescing and concurrent multiplexing for ZTNA, virtual server load balancing, and explicit proxy 7.2.4
ZTNA policy access control of unmanageable and unknown devices with dynamic address local tags 7.2.4
Add the Any and All options back for ZTNA tags in the GUI 7.2.6
NGFW
Allow web filter category groups to be selected in NGFW policies
Add option to set application default port as a service port
Introduce learn mode in security policies in NGFW mode
Policies
Adding traffic shapers to multicast policies
Add Policy change summary and Policy expiration to Workflow Management
Virtual patching on the local-in management interface 7.2.4
Support destination port matching of central SNAT rules 7.2.8
Objects
Allow empty address groups
Remove overlap check for VIPs
Using IPv6 addresses in the ISDB 7.2.4
Add ISDB on-demand mode to reduce the size stored on the flash drive 7.2.4
Enabling the ISDB cache in the FortiOS kernel 7.2.4
Security profiles
Antivirus
FortiSandbox inline scanning
Inline scanning with FortiGuard AI-Based Sandbox Service 7.2.1
Antivirus exempt list for files based on individual hash 7.2.4
Web filter
Using the Websense Integrated Services Protocol in flow mode
Inspecting HTTP3 traffic
IPS
IPS sensor entry filters
Support full extended IPS database for CP9 models and slim extended database for other physical models
Support full extended IPS database for FortiGate VMs with eight cores or more 7.2.5
Others
Add email filters for block allow lists
Enhance the DLP backend and configurations
Add option to disable the FortiGuard IP address rating
ICAP scanning with SCP and FTP
Add persistency for banned IP list 7.2.1
Reduce memory usage on FortiGate models with 2 GB RAM or less by not running WAD processes for unused proxy features 7.2.1
Allow the YouTube channel override action to take precedence 7.2.1
Add REST API for IPS session monitoring 7.2.4
Hide proxy features in the GUI by default for models with 2 GB RAM or less 7.2.4
Re-introduce DLP profiles in the GUI 7.2.4
Remove option to block QUIC by default in application control 7.2.4
Improve replacement message displayed in blocked videos 7.2.5
Introduce SIP IPS profile as a complement to SIP ALG 7.2.5
Support the Zstandard compression algorithm for web content 7.2.9
VPN
IPsec and SSL VPN
Add log field to identify ADVPN shortcuts in VPN logs
Show the SSL VPN portal login page in the browser's language
SLA link monitoring for dynamic IPsec and SSL VPN tunnels
SAML-based authentication for FortiClient remote access dialup IPsec VPN clients
IPsec IKE load balancing based on FortiSASE account information 7.2.5
Securely exchange serial numbers between FortiGates connected with IPsec VPN 7.2.6
Matching IPsec tunnel gateway based on address parameters 7.2.8
Enhancing IPsec security and performance 7.2.8
Support for autoconnect to IPsec VPN using Microsoft Entra ID 7.2.8
Restriction and validation of HTTP messages 7.2.9
User and authentication
Authentication
RADIUS Termination-Action AVP in wired and wireless scenarios
Improve response time for direct FSSO login REST API
Configuring client certificate authentication on the LDAP server
Tracking rolling historical records of LDAP user logins
Using a comma as a group delimiter in RADIUS accounting messages
Vendor-Specific Attributes for TACACS 7.2.1
Synchronizing LDAP Active Directory users to FortiToken Cloud using the two-factor filter 7.2.1
Specify the SAN field to use for LDAP-integrated certificate authentication 7.2.4
Secure access
Wireless
Allow pre-authorization of a FortiAP by specifying a Wildcard Serial Number
Disable dedicated scanning on FortiAP F-Series profiles
Improve WiFi channel selection GUI
Support Layer 3 roaming for tunnel mode
Report wireless client app usage for clients connected to bridge mode SSIDs
Support enabling or disabling 802.11d 7.2.1
Improve MAC address filtering 7.2.1
Support Layer 3 roaming for bridge mode 7.2.1
Redesign rate control CLI 7.2.1
Add GUI visibility for Advanced Wireless Features 7.2.1
Add profile support for FortiAP G-series models supporting WiFi 6E Tri-band and Dual 5 GHz modes 7.2.1
WPA3 enhancements to support H2E only and SAE-PK 7.2.1
Implement multi-processing for wireless daemon for large-scale FortiAP management 7.2.4
Allow custom RADIUS NAS-ID 7.2.4
Support wireless client mode on FortiWiFi 80F series models 7.2.4
Support displaying details about wired clients connected to the FortiAP LAN port 7.2.4
Simplify BLE iBeacon provisioning for RTLS deployments 7.2.5
Switch controller
Automatic updating of the port list when switch split ports are changed
Use wildcard serial numbers to pre-authorize FortiSwitch units
Allow multiple managed FortiSwitch VLANs to be used in a software switch
Allow a LAG on a FortiLink-enabled software switch
Configure MAB reauthentication globally or locally
Enhanced FortiSwitch Topology view
Support dynamic discovery in FortiLink mode over a layer-3 network
Configure flap guard through the switch controller
Allow FortiSwitch console port login to be disabled
Configure multiple flow-export collectors
Enhanced FortiSwitch Ports page and Diagnostics and Tools pane
Manage FortiSwitch units on VXLAN interfaces
Add new FortiSwitch Clients page
Automatic revision backup upon FortiSwitch logout or firmware upgrade 7.2.1
Configure the frequency of IGMP queries 7.2.1
Add FortiView Internal Hubs monitor 7.2.4
Configure DHCP-snooping static entries 7.2.4
Track device traffic statistics when NAC is enabled 7.2.4
Enhance switch PoE port settings 7.2.4
Increase the number of NAC devices supported 7.2.4
Dynamically assign the NAS-IP-Address attribute 7.2.9
Specify a tagged VLAN for when the authentication server is unavailable 7.2.9
NAC
Allow the configuration of NAC LAN segments in the GUI
FortiExtender
Allow FortiExtender to be managed and used in a non-root VDOM
FortiExtender monitoring enhancement 7.2.1
Provision FortiExtender firmware upon authorization 7.2.1
De-authorize FortiExtender devices 7.2.4
Log and report
Logging
Add IOC detection for local out traffic
HTTP transaction log fields
Updated System Events log page
New Security Events log page
Improve FortiAnalyzer log caching
Add FortiAnalyzer Reports page
Summary tabs on System Events and Security Events log pages 7.2.1
Add time frame selector to log viewer pages 7.2.1
Updating log viewer and log filters 7.2.1
Consolidate log reports and settings into dedicated Reports and Log Settings pages 7.2.4
Add Logs Sent Daily chart for remote logging sources 7.2.4
Support switching to an alternate FortiAnalyzer if the main FortiAnalyzer is unavailable 7.2.8
Cloud
Public and private cloud
Allow grace period for FortiFlex to begin passing traffic upon activation
Azure new instance type support
OCI X7 and X9 instance shapes
GCP DPDK support
External ID support in STS for AWS SDN connector 7.2.1
Permanent trial mode for FortiGate-VM 7.2.1
Allow FortiManager to apply license to a BYOL FortiGate-VM instance 7.2.1
Enable high encryption on FGFM protocol for unlicensed FortiGate-VMs 7.2.1
Support Ampere A1 Compute instances on OCI 7.2.4
Implement sysrq for kernel crash 7.2.4
Support various AWS endpoint ENI IP addresses in AWS SDN Connector 7.2.4
Support automatic vCPU hot-add in FortiGate-VM for S-series and FortiFlex licenses 7.2.4
Support for GCP ARM CPU-based T2A instance family 7.2.4
Support for GCP shielded and confidential VM service 7.2.4
VMware ESXi FortiGate-VM as ZTNA gateway 7.2.5
Support the new AWS c7gn instance family 7.2.6
Add OVF template support for VMware ESXi 8 7.2.6
FortiFlex grace period 7.2.7
Support AWS local zones 7.2.8
AliCloud supporting moving multiple EIPs on primary ENI for A-P HA 7.2.8
Customizing the FortiFlex license token activation retry parameters 7.2.8
AWS silent fips-cipher enablement 7.2.8
Azure Stack Hub marketplace deployment support 7.2.8
Operational Technology
GUI
Add OT asset visibility and network topology to Asset Identity Center page
System
Allow manual licensing for FortiGates in air-gap environments
Index
7.2.0
7.2.1
7.2.4
7.2.5
7.2.6
7.2.7
7.2.8
7.2.9
Change Log
Home
FortiGate / FortiOS 7.2.0
New Features
7.2.0
7.6.0
7.4.0
7.2.0
7.0.0
6.4.0
6.2.0
Web filter
Web filter
This section includes information about web filter related new features:
Using the Websense Integrated Services Protocol in flow mode
Inspecting HTTP3 traffic
Previous
Next
Web filter
Web filter
This section includes information about web filter related new features:
Using the Websense Integrated Services Protocol in flow mode
Inspecting HTTP3 traffic
Previous
Next
Home
Product Pillars
Network Security
Network Security
FortiGate / FortiOS
FortiGate 5000
FortiGate 6000
FortiGate 7000
FortiProxy
NOC & SOC Management
FortiManager
FortiManager Cloud
FortiAnalyzer
FortiAnalyzer Cloud
FortiMonitor
FortiGate Cloud
Enterprise Networking
Secure SD-WAN
FortiLAN Cloud
FortiSwitch
FortiAP / FortiWiFi
FortiAP-U Series
FortiNAC-F
FortiExtender
FortiExtender Cloud
FortiAIOps
Business Communications
FortiFone
FortiVoice
FortiVoice Cloud
FortiRecorder
FortiCamera
Zero Trust Access
ZTNA
Zero Trust Network Access
FortiClient EMS
SASE
FortiSASE
Identity
FortiAuthenticator
FortiTrust Identity
FortiToken Cloud
FortiToken
Cloud Security
Hybrid Cloud Security
FortiGate Public Cloud
FortiGate Private Cloud
FortiFlex
Cloud Native Protection
FortiCNP
FortiDevSec
Web Application / API Protection
FortiWeb
FortiWeb Cloud
FortiADC
FortiGSLB
FortiGuard ABP
SAAS Security
FortiMail
FortiMail Cloud
FortiCASB
Security Operations
SOC Platform
FortiAnalyzer
FortiAnalyzer Cloud
FortiSIEM
/
FortiSIEM Cloud
FortiSOAR
FortiPhish
Advanced Threat Protection
FortiSandbox
FortiSandbox Cloud
FortiNDR
FortiNDR Cloud
FortiDeceptor
FortiInsight
FortiInsight Cloud
FortiIsolator
Endpoint Security
FortiClient
FortiClient Cloud
FortiEDR
Best Practices
Solution Hubs
Cloud
FortiCloud
Public & Private Cloud
Popular Solutions
Secure SD-WAN
Zero Trust Network Access
Secure Access
Next Generation Firewall
Security Fabric
Tele-Working
Multi-Factor Authentication
FortiASIC
Operational Technology
MSSP
4-D Resources
Secure SD-WAN
Zero Trust Network Access
Wireless
Switching
Secure Access Service Edge
Identity and Access Management
Next Generation Firewall
Hardware Guides
FortiAnalyzer
FortiAnalyzer Big-Data
FortiADC
FortiAP / FortiWiFi
FortiAP U-Series
FortiAuthenticator
FortiCache
FortiCarrier
FortiController
FortiDDoS
FortiDDoS-F
FortiDeceptor
FortiExtender
FortiGate
FortiGate-5000
FortiGate-6000
FortiGate-7000
FortiHypervisor
FortiIsolator
FortiMail
FortiManager
FortiNAC
FortiNDR
FortiProxy
FortiRecorder
FortiRPS
FortiSandbox
FortiSIEM
FortiSwitch
FortiTester
FortiToken
FortiVoice
FortiWAN
FortiWeb
FortiWLC
FortiWLM
Product A-Z
AscenLink
AV Engine
AWS Firewall Rules
Container FortiOS
FortiADC
FortiADC E Series
FortiADC Manager
FortiADC Private Cloud
FortiADC Public Cloud
FortiAIOps
FortiAnalyzer
FortiAnalyzer BigData
FortiAnalyzer BigData Private Cloud
FortiAnalyzer Cloud
FortiAnalyzer Private Cloud
FortiAnalyzer Public Cloud
FortiAP / FortiWiFi
FortiAP-U Series
FortiAuthenticator
FortiAuthenticator Private Cloud
FortiAuthenticator Public Cloud
FortiAuthProxy
FortiBalancer
FortiBranchSASE
FortiBridge
FortiCache
FortiCamera
FortiCamera Cloud
FortiCare Elite
FortiCarrier
FortiCASB
FortiCentral
FortiClient
FortiClient Cloud
FortiCloud Services
FortiCNP
FortiConnect
FortiController
FortiConverter Service
FortiConverter Tool
FortiCore
FortiCSPM
FortiCWP
FortiDAST
FortiDB
FortiDDoS
FortiDDoS-F
FortiDeceptor
FortiDeceptor DaaS
FortiDeceptor Private Cloud
FortiDeceptor Public Cloud
FortiDevSec
FortiDLP
FortiDLP Agent
FortiDLP Policies
FortiDNS
FortiEdge Cloud
FortiEDR/XDR
FortiEndpoint
FortiExplorer
FortiExplorer Go
FortiExtender
FortiFlex
FortiFone
FortiGate / FortiOS
FortiGate Cloud
FortiGate CNF
FortiGate Private Cloud
FortiGate Public Cloud
FortiGate-5000
FortiGate-6000
FortiGate-7000
FortiGate-as-a-Service
FortiGSLB
FortiGuard Advanced Bot Protection
FortiGuest
FortiHypervisor
FortiInsight
FortiInsight Cloud
FortiIPAM
FortiIsolator
FortiIsolator Public Cloud
FortiLAN Cloud
FortiMail
FortiMail Cloud
FortiManager
FortiManager Cloud
FortiManager Private Cloud
FortiManager Public Cloud
FortiMonitor
FortiNAC
FortiNAC-F
FortiNDR
FortiNDR (on-premise) Private Cloud
FortiNDR (on-premise) Public Cloud
FortiNDR Cloud
FortiNDR Cloud Sensors
FortiPAM
FortiPAM Private Cloud
FortiPAM Public Cloud
FortiPhish
FortiPlanner
FortiPolicy
FortiPortal
FortiPortal Public Cloud
FortiPresence
FortiPresence VM
FortiProxy
FortiProxy Private Cloud
FortiProxy Public Cloud
FortiRecon
FortiRecorder
FortiRPS
FortiSandbox
FortiSandbox Cloud
FortiSandbox Private Cloud
FortiSandbox Public Cloud
FortiSASE
FortiScanner
FortiSIEM
FortiSIEM Cloud
FortiSOAR
FortiSOAR Cloud
FortiSRA
FortiSwitch
FortiSwitch Manager
FortiTap
FortiTester
FortiTester Private Cloud
FortiTester Public Cloud
FortiToken
FortiToken Cloud
FortiTrust Identity
FortiVoice
FortiVoice Cloud
FortiVoice Private Cloud
FortiVoice Public Cloud
FortiWAN
FortiWAN Controller
FortiWeb
FortiWeb Cloud
FortiWeb Manager Private Cloud
FortiWeb Manager Public Cloud
FortiWeb Private Cloud
FortiWeb Public Cloud
FortiWLM
FortiZTP
IPS Engine
Lacework FortiCNAPP
Managed FortiGate Service
Overlay-as-a-Service
Security Awareness and Training
SOCaaS
Wireless Controller
Ordering Guides
Download PDF
Table of Contents
Overview
GUI
General usability enhancements
Look up IP address information from the Internet Service Database page
Embed real-time packet capture and analysis tool on Diagnostics page
Embed real-time debug flow tool on Diagnostics page
Display detailed FortiSandbox analysis and downloadable PDF report
Display LTE modem configuration on GUI of FG-40F-3G4G model
Update naming of FortiCare support levels 7.2.1
Security Fabric
Fabric settings
Automatic regional discovery for FortiSandbox Cloud
Follow the upgrade path in a federated update
Rename FortiAI to FortiNDR
Register all HA members to FortiCare from the primary unit
Remove support for Security Fabric loose pairing
Allow FortiSwitch and FortiAP upgrade when the Security Fabric is disabled
Add support for multitenant FortiClient EMS deployments 7.2.1
Add IoT devices to Asset Identity Center page 7.2.1
Introduce distributed topology and security rating reports 7.2.1
Add IoT vulnerabilities to the asset identity list and FortiGuard IoT security rating checks 7.2.4
Enhance the Fabric Connectors page 7.2.4
Add FortiPolicy as Security Fabric device 7.2.4
Allow FortiClient EMS connectors to trust EMS server certificate renewals based on the CN field 7.2.4
Validating FortiManager’s certificate before connection 7.2.8
External connectors
SAP external connector 7.2.1
Using the REST API to push updates to external threat feeds 7.2.1
Support IPv6 dynamic addresses retrieved from Cisco ACI SDN connector 7.2.1
Automation stitches
Add new automation triggers for event logs
Certificate expiration trigger 7.2.1
System automation actions to back up, reboot, or shut down the FortiGate 7.2.1
Enhance automation trigger to execute only once at a scheduled date and time 7.2.1
Security ratings
Add PSIRT vulnerabilities to security ratings and notifications for critical vulnerabilities found on Fabric devices 7.2.1
Network
SD-WAN
Allow application category as an option for SD-WAN rule destination
Add mean opinion score calculation and logging in performance SLA health checks
Multiple members per SD-WAN neighbor configuration
Duplication on-demand when SLAs in the configured service are matched
SD-WAN in large scale deployments
SD-WAN segmentation over a single overlay
Embedded SD-WAN SLA information in ICMP probes 7.2.1
Exchange underlay link cost property with remote peer in IPsec VPN phase 1 negotiation 7.2.1
Copying the DSCP value from the session original direction to its reply direction 7.2.1
Matching BGP extended community route targets in route maps 7.2.4
SD-WAN application monitor using FortiMonitor 7.2.4
Add Fabric Overlay Orchestrator for SD-WAN overlay configurations 7.2.4
Improve client-side settings for SD-WAN network monitor 7.2.6
General
Add NetFlow fields to identify class of service
OSPF graceful restart on topology change
OSPFv3 graceful restart for OSPF6
BFD for multihop path for BGP
Configuring a FortiGate interface to act as an 802.1X supplicant
Support 802.1X on virtual switch for certain NP6 platforms
SNMP OIDs for port block allocations IP pool statistics
Increase the number of VRFs per VDOM
GUI support for advanced BGP options 7.2.1
Support BGP AS number input in asdot and asdot+ format 7.2.1
SNMP OIDs with details about authenticated users 7.2.1
Add new IPAM GUI page 7.2.1
Assign multiple IP pools and subnets using IPAM Rules 7.2.1
Add VCI pattern matching as a condition for IP or DHCP option assignment 7.2.1
Support cross-VRF local-in and local-out traffic for local services 7.2.1
FortiGate as FortiGate LAN extension 7.2.1
Allow VLAN sub-interfaces to be used in virtual wire pairs 7.2.4
Add static route tag and BGP neighbor password 7.2.4
DHCP enhancements 7.2.4
Improve DVLAN QinQ performance for NP7 platforms over virtual wire pairs 7.2.5
Support BGP graceful restart helper-only mode 7.2.8
Allow multiple Netflow collectors 7.2.8
Handling IPv4 SCTP packets with zero checksum on the NP7 platform 7.2.8
IPv6
Configuring IPv4 over IPv6 DS-Lite service
NAT46 and NAT64 for SIP ALG
Send Netflow traffic to collector in IPv6 7.2.1
IPv6 feature parity with IPv4 static and policy routes 7.2.1
Web proxy
HTTPS download of PAC files for explicit proxy 7.2.1
Support CORS protocol in explicit web proxy when using session-based, cookie-enabled, and captive portal-enabled SAML authentication 7.2.1
System
General
Improve admin-restrict-local handling of multiple authentication servers
Access control for SNMP based on the MIB-view and VDOM
Backing up and restoring configuration files in YAML format
Remove split-task VDOMs and add a new administrative VDOM type
Introduce maturity firmware levels
Restrict SSH and telnet jump host capabilities 7.2.1
Enable automatic firmware updates 7.2.1
Deregistration from the GUI 7.2.1
Add government end user option for FortiCare registration 7.2.1
Support backing up configurations with password masking 7.2.1
New default certificate for HTTPS administrative access 7.2.1
Central management configuration preservation for factory reset on FortiGate 7.2.4
Remove maintainer account 7.2.4
Allow the FortiGate to override FortiCloud SSO administrator user permissions 7.2.4
Display warnings for supported Fabric devices passing their hardware EOS date 7.2.5
Support checking for firmware updates daily when auto firmware upgrade is enabled 7.2.6
Enable automatic firmware upgrades by default on entry-level FortiGates 7.2.6
Command to compute file hashes 7.2.6
High availability
VRRP on EMAC-VLAN interfaces
Abbreviated TLS handshake after HA failover
HA failover support for ZTNA proxy sessions
Add warnings when upgrading an HA cluster that is out of synchronization
Support up to 30 virtual clusters
Optimized FGSP peer communication
Consolidate FGSP settings 7.2.1
FGSP per-tunnel failover for IPsec 7.2.1
FGCP over FGSP per-tunnel failover for IPsec 7.2.1
Allow IPsec DPD in FGSP members to support failovers 7.2.1
Applying the session synchronization filter only between FGSP peers in an FGCP over FGSP topology 7.2.1
SNMP
Enabling the INDEX extension 7.2.8
FortiGuard
FDS-only ISDB package in firmware images
Verifying and accepting signed AV and IPS packages
Allow FortiGuard services and updates to initiate from a traffic VDOM
FortiManager as override server for IoT query services 7.2.1
Security
Enhance BIOS-level signature and file integrity checking 7.2.5
Real-time file system integrity checking 7.2.5
Add built-in entropy source 7.2.6
Unauthorized firmware modification attempt reporting 7.2.8
Enhance file integrity check to perform verification during system bootup 7.2.9
Enhance real-time file system integrity checking 7.2.9
Policy and Objects
Zero Trust Network Access
ZTNA scalability support for up to 50 thousand concurrent endpoints
Using the IP pool or client IP address in a ZTNA connection to backend servers
ZTNA device certificate verification from EMS for SSL VPN connections 7.2.1
Publishing ZTNA services through the ZTNA portal 7.2.1
ZTNA inline CASB for SaaS application access control 7.2.1
ZTNA policy access control of unmanaged devices 7.2.1
HTTP2 connection coalescing and concurrent multiplexing for ZTNA, virtual server load balancing, and explicit proxy 7.2.4
ZTNA policy access control of unmanageable and unknown devices with dynamic address local tags 7.2.4
Add the Any and All options back for ZTNA tags in the GUI 7.2.6
NGFW
Allow web filter category groups to be selected in NGFW policies
Add option to set application default port as a service port
Introduce learn mode in security policies in NGFW mode
Policies
Adding traffic shapers to multicast policies
Add Policy change summary and Policy expiration to Workflow Management
Virtual patching on the local-in management interface 7.2.4
Support destination port matching of central SNAT rules 7.2.8
Objects
Allow empty address groups
Remove overlap check for VIPs
Using IPv6 addresses in the ISDB 7.2.4
Add ISDB on-demand mode to reduce the size stored on the flash drive 7.2.4
Enabling the ISDB cache in the FortiOS kernel 7.2.4
Security profiles
Antivirus
FortiSandbox inline scanning
Inline scanning with FortiGuard AI-Based Sandbox Service 7.2.1
Antivirus exempt list for files based on individual hash 7.2.4
Web filter
Using the Websense Integrated Services Protocol in flow mode
Inspecting HTTP3 traffic
IPS
IPS sensor entry filters
Support full extended IPS database for CP9 models and slim extended database for other physical models
Support full extended IPS database for FortiGate VMs with eight cores or more 7.2.5
Others
Add email filters for block allow lists
Enhance the DLP backend and configurations
Add option to disable the FortiGuard IP address rating
ICAP scanning with SCP and FTP
Add persistency for banned IP list 7.2.1
Reduce memory usage on FortiGate models with 2 GB RAM or less by not running WAD processes for unused proxy features 7.2.1
Allow the YouTube channel override action to take precedence 7.2.1
Add REST API for IPS session monitoring 7.2.4
Hide proxy features in the GUI by default for models with 2 GB RAM or less 7.2.4
Re-introduce DLP profiles in the GUI 7.2.4
Remove option to block QUIC by default in application control 7.2.4
Improve replacement message displayed in blocked videos 7.2.5
Introduce SIP IPS profile as a complement to SIP ALG 7.2.5
Support the Zstandard compression algorithm for web content 7.2.9
VPN
IPsec and SSL VPN
Add log field to identify ADVPN shortcuts in VPN logs
Show the SSL VPN portal login page in the browser's language
SLA link monitoring for dynamic IPsec and SSL VPN tunnels
SAML-based authentication for FortiClient remote access dialup IPsec VPN clients
IPsec IKE load balancing based on FortiSASE account information 7.2.5
Securely exchange serial numbers between FortiGates connected with IPsec VPN 7.2.6
Matching IPsec tunnel gateway based on address parameters 7.2.8
Enhancing IPsec security and performance 7.2.8
Support for autoconnect to IPsec VPN using Microsoft Entra ID 7.2.8
Restriction and validation of HTTP messages 7.2.9
User and authentication
Authentication
RADIUS Termination-Action AVP in wired and wireless scenarios
Improve response time for direct FSSO login REST API
Configuring client certificate authentication on the LDAP server
Tracking rolling historical records of LDAP user logins
Using a comma as a group delimiter in RADIUS accounting messages
Vendor-Specific Attributes for TACACS 7.2.1
Synchronizing LDAP Active Directory users to FortiToken Cloud using the two-factor filter 7.2.1
Specify the SAN field to use for LDAP-integrated certificate authentication 7.2.4
Secure access
Wireless
Allow pre-authorization of a FortiAP by specifying a Wildcard Serial Number
Disable dedicated scanning on FortiAP F-Series profiles
Improve WiFi channel selection GUI
Support Layer 3 roaming for tunnel mode
Report wireless client app usage for clients connected to bridge mode SSIDs
Support enabling or disabling 802.11d 7.2.1
Improve MAC address filtering 7.2.1
Support Layer 3 roaming for bridge mode 7.2.1
Redesign rate control CLI 7.2.1
Add GUI visibility for Advanced Wireless Features 7.2.1
Add profile support for FortiAP G-series models supporting WiFi 6E Tri-band and Dual 5 GHz modes 7.2.1
WPA3 enhancements to support H2E only and SAE-PK 7.2.1
Implement multi-processing for wireless daemon for large-scale FortiAP management 7.2.4
Allow custom RADIUS NAS-ID 7.2.4
Support wireless client mode on FortiWiFi 80F series models 7.2.4
Support displaying details about wired clients connected to the FortiAP LAN port 7.2.4
Simplify BLE iBeacon provisioning for RTLS deployments 7.2.5
Switch controller
Automatic updating of the port list when switch split ports are changed
Use wildcard serial numbers to pre-authorize FortiSwitch units
Allow multiple managed FortiSwitch VLANs to be used in a software switch
Allow a LAG on a FortiLink-enabled software switch
Configure MAB reauthentication globally or locally
Enhanced FortiSwitch Topology view
Support dynamic discovery in FortiLink mode over a layer-3 network
Configure flap guard through the switch controller
Allow FortiSwitch console port login to be disabled
Configure multiple flow-export collectors
Enhanced FortiSwitch Ports page and Diagnostics and Tools pane
Manage FortiSwitch units on VXLAN interfaces
Add new FortiSwitch Clients page
Automatic revision backup upon FortiSwitch logout or firmware upgrade 7.2.1
Configure the frequency of IGMP queries 7.2.1
Add FortiView Internal Hubs monitor 7.2.4
Configure DHCP-snooping static entries 7.2.4
Track device traffic statistics when NAC is enabled 7.2.4
Enhance switch PoE port settings 7.2.4
Increase the number of NAC devices supported 7.2.4
Dynamically assign the NAS-IP-Address attribute 7.2.9
Specify a tagged VLAN for when the authentication server is unavailable 7.2.9
NAC
Allow the configuration of NAC LAN segments in the GUI
FortiExtender
Allow FortiExtender to be managed and used in a non-root VDOM
FortiExtender monitoring enhancement 7.2.1
Provision FortiExtender firmware upon authorization 7.2.1
De-authorize FortiExtender devices 7.2.4
Log and report
Logging
Add IOC detection for local out traffic
HTTP transaction log fields
Updated System Events log page
New Security Events log page
Improve FortiAnalyzer log caching
Add FortiAnalyzer Reports page
Summary tabs on System Events and Security Events log pages 7.2.1
Add time frame selector to log viewer pages 7.2.1
Updating log viewer and log filters 7.2.1
Consolidate log reports and settings into dedicated Reports and Log Settings pages 7.2.4
Add Logs Sent Daily chart for remote logging sources 7.2.4
Support switching to an alternate FortiAnalyzer if the main FortiAnalyzer is unavailable 7.2.8
Cloud
Public and private cloud
Allow grace period for FortiFlex to begin passing traffic upon activation
Azure new instance type support
OCI X7 and X9 instance shapes
GCP DPDK support
External ID support in STS for AWS SDN connector 7.2.1
Permanent trial mode for FortiGate-VM 7.2.1
Allow FortiManager to apply license to a BYOL FortiGate-VM instance 7.2.1
Enable high encryption on FGFM protocol for unlicensed FortiGate-VMs 7.2.1
Support Ampere A1 Compute instances on OCI 7.2.4
Implement sysrq for kernel crash 7.2.4
Support various AWS endpoint ENI IP addresses in AWS SDN Connector 7.2.4
Support automatic vCPU hot-add in FortiGate-VM for S-series and FortiFlex licenses 7.2.4
Support for GCP ARM CPU-based T2A instance family 7.2.4
Support for GCP shielded and confidential VM service 7.2.4
VMware ESXi FortiGate-VM as ZTNA gateway 7.2.5
Support the new AWS c7gn instance family 7.2.6
Add OVF template support for VMware ESXi 8 7.2.6
FortiFlex grace period 7.2.7
Support AWS local zones 7.2.8
AliCloud supporting moving multiple EIPs on primary ENI for A-P HA 7.2.8
Customizing the FortiFlex license token activation retry parameters 7.2.8
AWS silent fips-cipher enablement 7.2.8
Azure Stack Hub marketplace deployment support 7.2.8
Operational Technology
GUI
Add OT asset visibility and network topology to Asset Identity Center page
System
Allow manual licensing for FortiGates in air-gap environments
Index
7.2.0
7.2.1
7.2.4
7.2.5
7.2.6
7.2.7
7.2.8
7.2.9
Change Log