Fortinet black logo

Hyperscale Firewall Guide

What's new for hyperscale firewall for FortiOS 7.4.0

What's new for hyperscale firewall for FortiOS 7.4.0

This section lists the new hyperscale firewall features added to FortiOS 7.4.0.

  • On FortiGates licensed for hyperscale firewall features, the config system setting options nat46-force-ipv4-packet-forwarding and nat64-force-ipv6-packet-forwarding now also apply to NP7-offloaded traffic. The former config system npu option nat46-force-ipv4-packet-forwarding has been removed.

  • The policy-offload-level option of the config system npu command has been removed. The policy offload level is set using the policy-offload-level option of the config system settings command; allowing you to configure the policy offload level separately for each VDOM. By default, policy-offload-level is set to disable. In any VDOM, you can change the policy-offload-level to dos-offload. To enable hyperscale firewall features in a hyperscale firewall VDOM, you set the policy-offload-level to full-offload. For more information, see Enabling hyperscale firewall features.

What's new for hyperscale firewall for FortiOS 7.4.0

This section lists the new hyperscale firewall features added to FortiOS 7.4.0.

  • On FortiGates licensed for hyperscale firewall features, the config system setting options nat46-force-ipv4-packet-forwarding and nat64-force-ipv6-packet-forwarding now also apply to NP7-offloaded traffic. The former config system npu option nat46-force-ipv4-packet-forwarding has been removed.

  • The policy-offload-level option of the config system npu command has been removed. The policy offload level is set using the policy-offload-level option of the config system settings command; allowing you to configure the policy offload level separately for each VDOM. By default, policy-offload-level is set to disable. In any VDOM, you can change the policy-offload-level to dos-offload. To enable hyperscale firewall features in a hyperscale firewall VDOM, you set the policy-offload-level to full-offload. For more information, see Enabling hyperscale firewall features.