Changes in default behavior
|
Bug ID |
Description |
|---|---|
|
1107163 |
The default DH groups for Phase1 and Phase2 IPsec VPN tunnels is updated from 14 and 5 to 20 and 21 when configured from the CLI. Upon upgrade, VPNs that had the default DH group 14 and 5 will be updated to DH groups 14, 20 and 21 when upgraded. |
|
1138921 |
On FortiGates with NP7 processors, the default setting for config system npu
set vlan-lookup-cache disable
set htab-msg-queue dedicated
end
See also Changing vlan-lookup-cache requires system restart. |
|
1166396 |
With config system settings
set asymroute-icmp {enable | disable}
set asymroute6-icmp {enable | disable}
end
|
|
1176942 |
When |
|
1189391 |
FortiGate models with two (2) WAN ports will have the following added to their default configuration:
Affected models (where x can be 0 or 1): 6xE, 6xF, 7xF, 7xG, 8xE, 8xF, 9xE, 9xG, 10xE, 100EF, 10xF, 12xG, 140E, 20xE, 20xF. See also Create default configuration of SD-WAN on FortiGate models with two WAN ports. |
|
1204277 |
The default auto-update schedule for FortiGuard packages has been changed from automatic to daily. |