What's new for hyperscale firewall for FortiOS 7.2.4
This section lists the new NP7 hyperscale firewall features added to FortiOS 7.2.4. For new FortiOS 7.2.4 NP7 features, see What's new for FortiOS 7.2.4.
-
You can use the new
exclude-ip
CGN resource allocation IP pool option to block a CGN IP pool from allocating one or more source IP addresses. See the description of theexclude-ip
option in Port block allocation CGN IP pool. -
New FGCP HA hardware session synchronization timers, see FGCP HA hardware session synchronization timers.
-
You can only use a static mode LAG as the hardware session synchronization interface, see Configuring FGCP HA hardware session synchronization.
-
Hardware logging for hyperscale firewall polices that block sessions, see Hardware logging for hyperscale firewall polices that block sessions.
-
View summary information about IPv4 and IPv6 sessions offloaded to NP7 processors, see diagnose sys npu-session list-brief [{44 | 46}] and diagnose sys npu-session list-brief6 [{66 | 64}] .
For more information about FortiOS 7.2.4 hyperscale firewall, see the FortiOS 7.2.4 Hyperscale Firewall Release Notes.