What’s new in FortiOS 7.4.2
The following list contains new managed FortiSwitch features added in FortiOS 7.4.2:
-
You can now use FortiLink with HTTPS to manage FortiSwitch units. When you are using FortiLink with HTTPS to manage FortiSwitch units, the same FortiLink features are supported as when you are using FortiLink with the CAPWAP protocol. Using FortiLink with HTTPS simplifies the management process and improves the user experience and efficiency.
-
You can use new CLI commands to specify how the following RADIUS request attributes are formatted:
-
User-Name
-
User-Password
-
Called-Station-Id
-
Calling-Station-Id
-
-
You can now assign a priority to each VLAN used in the 802.1X security policy. If there is more than one VLAN with the same name (specified in the
set description
command), FortiSwitchOS selects the VLAN with the lowestassignment-priority
value (which is the highest priority) of the VLANs with names that match the value of the RADIUS Tunnel-Private-Group-Id or Egress-VLAN-Name attribute. Theassignment-priority
value can be 1-255. By default, theassignment-priority
is 128. The lowestassignment-priority
value gets the highest priority. -
When a FortiSwitch unit is capable of forward error correction (FEC), the default setting for
fec-state
is nowdetect-by-module
, which automatically detects whether FEC is supported by the module. -
You can now dynamically assign a different NAS-IP-Address attribute to the managed switches when authenticating users with a RADIUS server. If needed, you can override the dynamic assignment and manually assign the NAS-IP-Address attribute to individual managed switches. NOTE: FortiSwitchOS supports only IPv4 addresses for the NAS-IP-Address attribute.