Fortinet Document Library

Version:

Version:

Version:

Version:

Version:

Version:

Version:

Version:

Version:

Version:

Version:

Version:

Version:

Version:

Version:

Version:

Version:

Version:


Table of Contents

Known Issues

The following issues have been identified in 6.2.1. For inquires about a particular bug or to report a bug, please contact Customer Service & Support.

Bug ID

Description

546246 Restore ADOM revision does not restore removed installation targets. 
547854 FortiManager cannot manage shaping profiles with the same name from multiple FortiGate. 
548976 Unauthorized device alert directs to a page showing duplicate devices. 
549113 In the case that FortiGate is in NGFW policy-based mode, URL/Application control profiles should not be visible on FortiManager side. 
549175 FortiManager does not install active directory group filter changes to FortiGate. 
549384 FortiManager cannot show any query when FortiGate has CSF enabled but the CSF group is not established on FortiManager. 
549504 Wildcard remote admin cannot run schedule install. 
549546 If an address group contains many addresses, user cannot hover the number icon to view the address members. 
549566 Device Manager does not show a FortiGate in a CSF group when the FortiGate is connected to the root FortiGate's FG-Traffic VDOM. 
549587 All the FortiSwitch ports are incorrectly displayed as POE enabled.
549818 FortiManager cannot display external resource setting on consolidated policy list. 
549824 Consolidated policy page is missing external resource as data source. 
550015 FortiManager can communicate with mail server with secure option enabled. 
550157 Assigned AP profile is not shown while editing APs from Map View. 
550161 Under per-device management, managed AP status information is missing in Map View. 
550344 FortiManager is unable to import firewall policy due to invalid FQDN error. 
550441 After upgrade, verification fails for company-identifier with a DLP sensor. 
550460 Duplicated default QoS profiles are listed when editing a FortiSwitch template. 
551231 Under per-device management, editing a SD-WAN rule generates duplicate entry.
552403 FortiManager does not does not reflect the negation of either source or destination fields.
554892 Internet Service Groups need to be filtered by direction.
556967 Re-Install policy may hang when a Security Fabric cluster is selected. 
561008 Second IP in central-management may be removed by master FortiManager on re-connection.
561262 Users cannot use question mark in CLI while setting password for an admin user.
561481 Under Device Manager, VPN IPsec phase2 should not allow user to save settings if phase 1 name is not set.
562041 Import with AP Manager cannot create dynamic mapping for SSIDs.
563373 FortiManager may not be able to add FortiGate VM FNDN.
563606 Authorizing or de-authorizing a FortiSwitch may not work.
563689 Import All Objects fails when security policy is defined for FortiSwitch.

564400

ADOM upgrade may show the error "firewall ssl-ssh-profile ssl-exempt wildcard-fqdn. detail: table limit".

564497 Installing policy package will delete host-check-software after FortiManager and FortiGate are upgraded to 6.2.1.
564959 Creating a new neighbor should only list not-configured neighbors.

565138

Installation to FortiGate failed for passphrase and password when private-data-encryption was enabled.

565636 The global address, gall, may trigger FortiManager to display validation error.
565751 FortiSwitch Manager may not be able to select multiple FortiSwitch for upgrade.
565772 When adding a black hole route with Named Address option, it fails with the error message.
566034 JSON API or GUI does not work when user is restricted to a Policy package.
566298 Device Manager may not be able to add member to an empty aggregate interface.
566346 SD-WAN rules are lack of way to add Internet Service, Custom Internet, Application groups, and Custom Internet Service.
566409 When an object contains 79 characters, tool-tip with mouse over cannot properly show the object name.
566947 FortiManager should not allow users to configure ICAP profile and WAF profile under flow-based policy.
567534 Editing or importing email filter profile protocol may append an extra ":" to the end of tag-msg causing installation to fail.
568626 Users can only modify the order of DNS forwarder if the IP addresses are in quotes ("") and when the IP addresses are not separated by comma.
568631 Per-Device Mapping for FortiAP SSID in Bridge mode is incorrect.
568955 Installation may fail for consolidated policy after changed package to profile mode. 
568988 Users may not be able to create access-list entries with IPv6 format based subnet mask or wild card.
569066 FortiSwitch manager does not display FortiSwitch online status correctly.
569253 The Managed APs summary page may not properly display assigned SSID.
569266 FortiManager may not turn off the "Schedule background scan disable" option within the WIDS profile.
569306 FortiManager may fail to edit the property of a VDOM when there are more than 50 VDOMs on a 7000 series FortiGate unit.
569515 SD-WAN Monitor map view should have ability to drill down into individual details.
570220 FortiManager may not list upgrade images for 6000 or 7000 series of FortiGate units.

Known Issues

The following issues have been identified in 6.2.1. For inquires about a particular bug or to report a bug, please contact Customer Service & Support.

Bug ID

Description

546246 Restore ADOM revision does not restore removed installation targets. 
547854 FortiManager cannot manage shaping profiles with the same name from multiple FortiGate. 
548976 Unauthorized device alert directs to a page showing duplicate devices. 
549113 In the case that FortiGate is in NGFW policy-based mode, URL/Application control profiles should not be visible on FortiManager side. 
549175 FortiManager does not install active directory group filter changes to FortiGate. 
549384 FortiManager cannot show any query when FortiGate has CSF enabled but the CSF group is not established on FortiManager. 
549504 Wildcard remote admin cannot run schedule install. 
549546 If an address group contains many addresses, user cannot hover the number icon to view the address members. 
549566 Device Manager does not show a FortiGate in a CSF group when the FortiGate is connected to the root FortiGate's FG-Traffic VDOM. 
549587 All the FortiSwitch ports are incorrectly displayed as POE enabled.
549818 FortiManager cannot display external resource setting on consolidated policy list. 
549824 Consolidated policy page is missing external resource as data source. 
550015 FortiManager can communicate with mail server with secure option enabled. 
550157 Assigned AP profile is not shown while editing APs from Map View. 
550161 Under per-device management, managed AP status information is missing in Map View. 
550344 FortiManager is unable to import firewall policy due to invalid FQDN error. 
550441 After upgrade, verification fails for company-identifier with a DLP sensor. 
550460 Duplicated default QoS profiles are listed when editing a FortiSwitch template. 
551231 Under per-device management, editing a SD-WAN rule generates duplicate entry.
552403 FortiManager does not does not reflect the negation of either source or destination fields.
554892 Internet Service Groups need to be filtered by direction.
556967 Re-Install policy may hang when a Security Fabric cluster is selected. 
561008 Second IP in central-management may be removed by master FortiManager on re-connection.
561262 Users cannot use question mark in CLI while setting password for an admin user.
561481 Under Device Manager, VPN IPsec phase2 should not allow user to save settings if phase 1 name is not set.
562041 Import with AP Manager cannot create dynamic mapping for SSIDs.
563373 FortiManager may not be able to add FortiGate VM FNDN.
563606 Authorizing or de-authorizing a FortiSwitch may not work.
563689 Import All Objects fails when security policy is defined for FortiSwitch.

564400

ADOM upgrade may show the error "firewall ssl-ssh-profile ssl-exempt wildcard-fqdn. detail: table limit".

564497 Installing policy package will delete host-check-software after FortiManager and FortiGate are upgraded to 6.2.1.
564959 Creating a new neighbor should only list not-configured neighbors.

565138

Installation to FortiGate failed for passphrase and password when private-data-encryption was enabled.

565636 The global address, gall, may trigger FortiManager to display validation error.
565751 FortiSwitch Manager may not be able to select multiple FortiSwitch for upgrade.
565772 When adding a black hole route with Named Address option, it fails with the error message.
566034 JSON API or GUI does not work when user is restricted to a Policy package.
566298 Device Manager may not be able to add member to an empty aggregate interface.
566346 SD-WAN rules are lack of way to add Internet Service, Custom Internet, Application groups, and Custom Internet Service.
566409 When an object contains 79 characters, tool-tip with mouse over cannot properly show the object name.
566947 FortiManager should not allow users to configure ICAP profile and WAF profile under flow-based policy.
567534 Editing or importing email filter profile protocol may append an extra ":" to the end of tag-msg causing installation to fail.
568626 Users can only modify the order of DNS forwarder if the IP addresses are in quotes ("") and when the IP addresses are not separated by comma.
568631 Per-Device Mapping for FortiAP SSID in Bridge mode is incorrect.
568955 Installation may fail for consolidated policy after changed package to profile mode. 
568988 Users may not be able to create access-list entries with IPv6 format based subnet mask or wild card.
569066 FortiSwitch manager does not display FortiSwitch online status correctly.
569253 The Managed APs summary page may not properly display assigned SSID.
569266 FortiManager may not turn off the "Schedule background scan disable" option within the WIDS profile.
569306 FortiManager may fail to edit the property of a VDOM when there are more than 50 VDOMs on a 7000 series FortiGate unit.
569515 SD-WAN Monitor map view should have ability to drill down into individual details.
570220 FortiManager may not list upgrade images for 6000 or 7000 series of FortiGate units.