Fortinet black logo

Hardware Acceleration

Change log

Change log

Date

Change description

February 14, 2024

Updated NP7 session fast path requirements to include GRE. Corrections to hash-config {src-dst-ip | 5-tuple | src-ip}. Misc additional changes.

April 4, 2023

Virtual network enabler (VNE) tunnel sessions are not offloaded by NP6 or NP6Lite (SOC3) processors. VNE tunnel sessions are offloaded by NP6XLite processors. Added a note about this to NP6 session fast path requirements.

February 21, 2023

Deleted an incorrect statement about NP7 support for SSL VPN encryption from Network processors (NP7, NP6, NP6XLite, and NP6Lite).

February 8, 2023

Added all relevant options and corrected the information about the NP7 hash-config option, see hash-config {src-dst-ip | 5-tuple | src-ip}. Added a note about setting the hash-config for the FortiGate-3500F and 3501F to FortiGate 3500F and 3501F fast path architecture.

February 7, 2023

The dedicated management CPU feature is supported by the FortiGates with the NP6XLite (SOC4) processor. This information has been added to Improving GUI and CLI responsiveness (dedicated management CPU).

January 3, 2023

Corrected information about NTurbo support and interface policies, see NTurbo offloads flow-based processing.

Corrected the documented default values for many of the individual traffic types monitored by NP7 HPE, see NP7 HPE for individual traffic types.

December 30, 2022

New section: Tunneling protocols that can be offloaded by NP7 processors.

November 10, 2022

FortiOS 7.2.3 document release.

November 7, 2022

FortiOS 7.0.0 added support for creating LAGs between interfaces connected to different NP6 processors for FortiGates with multiple NP6 processors and no internal switch fabric. For more information, see Increasing NP6 offloading capacity using link aggregation groups (LAGs).

The following FortiGate models support this feature and the sections linked below have been updated with this information:

November 3, 2022

Removed the section "Viewing SSL acceleration status" because the get vpn status ssl hw-acceleration-status command has been removed. The command has been removed because FortiOS 7.2.2 uses OpenSSL 3.0.x, which doesn't support the CP9 functionality used by this command. Removed information about the FortiGate-1200D because this model is not supported by FortiOS 7.2.2.

October 4, 2022

FortiOS 7.2.2 document release. Corrections to FortiGate-5001E and 5001E1 fast path architecture.

Change log

Date

Change description

February 14, 2024

Updated NP7 session fast path requirements to include GRE. Corrections to hash-config {src-dst-ip | 5-tuple | src-ip}. Misc additional changes.

April 4, 2023

Virtual network enabler (VNE) tunnel sessions are not offloaded by NP6 or NP6Lite (SOC3) processors. VNE tunnel sessions are offloaded by NP6XLite processors. Added a note about this to NP6 session fast path requirements.

February 21, 2023

Deleted an incorrect statement about NP7 support for SSL VPN encryption from Network processors (NP7, NP6, NP6XLite, and NP6Lite).

February 8, 2023

Added all relevant options and corrected the information about the NP7 hash-config option, see hash-config {src-dst-ip | 5-tuple | src-ip}. Added a note about setting the hash-config for the FortiGate-3500F and 3501F to FortiGate 3500F and 3501F fast path architecture.

February 7, 2023

The dedicated management CPU feature is supported by the FortiGates with the NP6XLite (SOC4) processor. This information has been added to Improving GUI and CLI responsiveness (dedicated management CPU).

January 3, 2023

Corrected information about NTurbo support and interface policies, see NTurbo offloads flow-based processing.

Corrected the documented default values for many of the individual traffic types monitored by NP7 HPE, see NP7 HPE for individual traffic types.

December 30, 2022

New section: Tunneling protocols that can be offloaded by NP7 processors.

November 10, 2022

FortiOS 7.2.3 document release.

November 7, 2022

FortiOS 7.0.0 added support for creating LAGs between interfaces connected to different NP6 processors for FortiGates with multiple NP6 processors and no internal switch fabric. For more information, see Increasing NP6 offloading capacity using link aggregation groups (LAGs).

The following FortiGate models support this feature and the sections linked below have been updated with this information:

November 3, 2022

Removed the section "Viewing SSL acceleration status" because the get vpn status ssl hw-acceleration-status command has been removed. The command has been removed because FortiOS 7.2.2 uses OpenSSL 3.0.x, which doesn't support the CP9 functionality used by this command. Removed information about the FortiGate-1200D because this model is not supported by FortiOS 7.2.2.

October 4, 2022

FortiOS 7.2.2 document release. Corrections to FortiGate-5001E and 5001E1 fast path architecture.