Fortinet white logo
Fortinet white logo

Hardware Acceleration

Change log

Change log

Date

Change description

March 31, 2026

New limitation added to NP7 and NP7Lite traffic shaping limitations: Changes to outbandwidth or egress shaping profiles on a physical or VLAN interface do not take effect for IPsec tunnels or sessions that are already established and offloaded by NP7 or NP7Lite (SOC5) processors. To apply the updated egress shaping settings, you must flush or reinstall the affected IPsec SAs and clear any offloaded sessions. Doing this rebuilds the IPsec tunnel and associated sessions using the new interface shaping configuration.

March 27, 2026

New section: FortiGate 3800G and 3801G fast path architecture.

February 19, 2026

Corrected the following sections to show that interfaces 1 to 18 are connected to one ISF switch and interfaces 19 to 22 are connected to the other ISF switch:

February 17, 2026

Added information about NP7 and NP7Lite traffic shaping to NP7 and NP7Lite traffic shaping limitations.

Added information about a hardware issue that affects the FortiGate 3000F and 3001F, see FortiGate 3000F and 3001F fast path architecture.

January 27, 2026

FortiOS 7.4.11 document release.

January 15, 2026

FortiOS 7.4.10 document release.

November 3, 2025

New section: FortiGate 700G and 701G fast path architecture.

October 24, 2025

New section: FortiGate 70G and 71G fast path architecture.

October 13, 2025

NP7 and NP7Lite processors do not support setting a priority in a traffic shaping profile. For more information, see NP7 and NP7Lite (SOC5) traffic shaping.

September 25, 2025

FortiOS 7.4.9 document release.

July 25, 2025

Added more information about NP7 and NP7Lite (SOC5) traffic shaping changes to FortiOS 7.4.8. See What's new for FortiOS 7.4.8, and NP7 and NP7Lite (SOC5) traffic shaping.

May 27, 2025

FortiOS 7.4.8 document release.

May 9, 2025

NPU port mapping and, where applicable, interface group updates to:

April 1, 2025

Added information about how FortiOS handles NTurbo sessions after an FGCP HA failover, see NTurbo offloads flow-based processing.

February 28, 2025

Added information about NP support for offloading NAT session setup for NAT44, NAT66, NAT64 and NAT46 traffic in the following sections:

New information about NP processor packet ordering and IPsec anti-replay protection, see:

January 21, 2025

FortiOS 7.4.7 document release.

December 16, 2024

Added more information about NP7 and NP6 performance monitoring:

December 12, 2024

FortiOS 7.4.6 document release.

October 29, 2024

Added more information about VNE and GRE tunnels and NP6 and NP7 acceleration, see:

September 19, 2024

Corrections to the descriptions of how interface groups work for the following models:

  • FortiGate 1100E and 1101E

  • FortiGate 2200E and 2201E

  • FortiGate 3300E and 3301E

  • FortiGate 3400E and 3401E

  • FortiGate 3600E and 3601E

September 17, 2024

FortiOS 7.4.5 document release.

August 13, 2024

NP6XLite and NP6Lite processors do not support offloading IPIP tunneling or IPIP encapsulated traffic. This information has been added to NP6 session fast path requirements.

June 17, 2024

Corrected the information about support for interface-based traffic shaping for NP6 and NP7 offloaded traffic, see:

May 28, 2024

Added missing information about config system npu command options, see Configuring NP7 processors.

May 22, 2024

FortiOS 7.4.4 document release.

April 18, 2024

NP7 offloading of GRE over a loopback interface is not supported, see NP7 session fast path requirements, Tunneling protocols that can be offloaded by NP7 processors, and Protocols that can be offloaded by NP7 processors.

April 4, 2024

Updated Software switch interfaces and NP processors to explain that NP processors support offloading software switch traffic if intra-switch-policy is set to explicit and you have created firewall policies to allow traffic between interfaces in the software switch.

Changes to Configuring NP7 processors to add missing information and remove options only available if your FortiGate is licensed for Hyperscale firewall.

March 15, 2024

Added information about FortiGate 7000F FIMs and FPMs, including FortiGate 7000F support for HPE, see

February 14, 2024

Corrections to hash-config {src-dst-ip | 5-tuple | src-ip}.

February 8, 2024

FortiOS 7.4.3 document release.

January 26, 2024

Updated NP7 session fast path requirements to include GRE.

December 20, 2023

FortiOS 7.4.2 document release.

October 20, 2023

Changes to NTurbo offloads flow-based processing.

October 18, 2023

New section: Performance reduction for NP6 processors with 1Gbps interfaces.

Changes to:

October 6, 2023

New section: FortiGate Rugged 70F fast path architecture. Changes to most FortiGate fast path architecture descriptions.

September 22, 2023

New section: FortiGate Rugged 60F fast path architecture. Changes to the following sections:

August 31, 2023

FortiOS 7.4.1 document release.

August 28, 2023

Updates to NP7 performance optimized over KR links.

Changes to the following sections to correct information related to the SOC4 and SOC5:

August 3, 2023

Corrections to FortiGate NP7 architecture interface speeds, see FortiGate NP7 architectures.

Changes to FortiGate 3960E fast path architecture and FortiGate 3980E fast path architecture to explain that in multi-ISF systems, such as the FortiGate 3860E and FortiGate 3890E, NP6 offloading is not supported for LAGs containing interfaces connected to different ISF switches.

Corrected the section CP9 capabilities because FortiOS uses OpenSSL 3.0.x, which doesn't support the CP9 for SSL/TLS encryption and decryption.

July 17, 2023

Added information about NP6 and NP7 support for IPv6 SD-WAN segmentation over single relay sessions that include an IPsec VPN phase 1 configuration that enables VPN ID with IPIP encapsulation. See NP7 session fast path requirements and NP6 session fast path requirements.

July 4, 2023

Misc. changes throughout the document.

May 11, 2023

FortiOS 7.4.0 document release.

Change log

Change log

Date

Change description

March 31, 2026

New limitation added to NP7 and NP7Lite traffic shaping limitations: Changes to outbandwidth or egress shaping profiles on a physical or VLAN interface do not take effect for IPsec tunnels or sessions that are already established and offloaded by NP7 or NP7Lite (SOC5) processors. To apply the updated egress shaping settings, you must flush or reinstall the affected IPsec SAs and clear any offloaded sessions. Doing this rebuilds the IPsec tunnel and associated sessions using the new interface shaping configuration.

March 27, 2026

New section: FortiGate 3800G and 3801G fast path architecture.

February 19, 2026

Corrected the following sections to show that interfaces 1 to 18 are connected to one ISF switch and interfaces 19 to 22 are connected to the other ISF switch:

February 17, 2026

Added information about NP7 and NP7Lite traffic shaping to NP7 and NP7Lite traffic shaping limitations.

Added information about a hardware issue that affects the FortiGate 3000F and 3001F, see FortiGate 3000F and 3001F fast path architecture.

January 27, 2026

FortiOS 7.4.11 document release.

January 15, 2026

FortiOS 7.4.10 document release.

November 3, 2025

New section: FortiGate 700G and 701G fast path architecture.

October 24, 2025

New section: FortiGate 70G and 71G fast path architecture.

October 13, 2025

NP7 and NP7Lite processors do not support setting a priority in a traffic shaping profile. For more information, see NP7 and NP7Lite (SOC5) traffic shaping.

September 25, 2025

FortiOS 7.4.9 document release.

July 25, 2025

Added more information about NP7 and NP7Lite (SOC5) traffic shaping changes to FortiOS 7.4.8. See What's new for FortiOS 7.4.8, and NP7 and NP7Lite (SOC5) traffic shaping.

May 27, 2025

FortiOS 7.4.8 document release.

May 9, 2025

NPU port mapping and, where applicable, interface group updates to:

April 1, 2025

Added information about how FortiOS handles NTurbo sessions after an FGCP HA failover, see NTurbo offloads flow-based processing.

February 28, 2025

Added information about NP support for offloading NAT session setup for NAT44, NAT66, NAT64 and NAT46 traffic in the following sections:

New information about NP processor packet ordering and IPsec anti-replay protection, see:

January 21, 2025

FortiOS 7.4.7 document release.

December 16, 2024

Added more information about NP7 and NP6 performance monitoring:

December 12, 2024

FortiOS 7.4.6 document release.

October 29, 2024

Added more information about VNE and GRE tunnels and NP6 and NP7 acceleration, see:

September 19, 2024

Corrections to the descriptions of how interface groups work for the following models:

  • FortiGate 1100E and 1101E

  • FortiGate 2200E and 2201E

  • FortiGate 3300E and 3301E

  • FortiGate 3400E and 3401E

  • FortiGate 3600E and 3601E

September 17, 2024

FortiOS 7.4.5 document release.

August 13, 2024

NP6XLite and NP6Lite processors do not support offloading IPIP tunneling or IPIP encapsulated traffic. This information has been added to NP6 session fast path requirements.

June 17, 2024

Corrected the information about support for interface-based traffic shaping for NP6 and NP7 offloaded traffic, see:

May 28, 2024

Added missing information about config system npu command options, see Configuring NP7 processors.

May 22, 2024

FortiOS 7.4.4 document release.

April 18, 2024

NP7 offloading of GRE over a loopback interface is not supported, see NP7 session fast path requirements, Tunneling protocols that can be offloaded by NP7 processors, and Protocols that can be offloaded by NP7 processors.

April 4, 2024

Updated Software switch interfaces and NP processors to explain that NP processors support offloading software switch traffic if intra-switch-policy is set to explicit and you have created firewall policies to allow traffic between interfaces in the software switch.

Changes to Configuring NP7 processors to add missing information and remove options only available if your FortiGate is licensed for Hyperscale firewall.

March 15, 2024

Added information about FortiGate 7000F FIMs and FPMs, including FortiGate 7000F support for HPE, see

February 14, 2024

Corrections to hash-config {src-dst-ip | 5-tuple | src-ip}.

February 8, 2024

FortiOS 7.4.3 document release.

January 26, 2024

Updated NP7 session fast path requirements to include GRE.

December 20, 2023

FortiOS 7.4.2 document release.

October 20, 2023

Changes to NTurbo offloads flow-based processing.

October 18, 2023

New section: Performance reduction for NP6 processors with 1Gbps interfaces.

Changes to:

October 6, 2023

New section: FortiGate Rugged 70F fast path architecture. Changes to most FortiGate fast path architecture descriptions.

September 22, 2023

New section: FortiGate Rugged 60F fast path architecture. Changes to the following sections:

August 31, 2023

FortiOS 7.4.1 document release.

August 28, 2023

Updates to NP7 performance optimized over KR links.

Changes to the following sections to correct information related to the SOC4 and SOC5:

August 3, 2023

Corrections to FortiGate NP7 architecture interface speeds, see FortiGate NP7 architectures.

Changes to FortiGate 3960E fast path architecture and FortiGate 3980E fast path architecture to explain that in multi-ISF systems, such as the FortiGate 3860E and FortiGate 3890E, NP6 offloading is not supported for LAGs containing interfaces connected to different ISF switches.

Corrected the section CP9 capabilities because FortiOS uses OpenSSL 3.0.x, which doesn't support the CP9 for SSL/TLS encryption and decryption.

July 17, 2023

Added information about NP6 and NP7 support for IPv6 SD-WAN segmentation over single relay sessions that include an IPsec VPN phase 1 configuration that enables VPN ID with IPIP encapsulation. See NP7 session fast path requirements and NP6 session fast path requirements.

July 4, 2023

Misc. changes throughout the document.

May 11, 2023

FortiOS 7.4.0 document release.