Fortinet black logo

New Features

Hide proxy features in the GUI by default for models with 2 GB RAM or less 7.2.4

Hide proxy features in the GUI by default for models with 2 GB RAM or less 7.2.4

Note

This information is also available in the FortiOS 7.2 Administration Guide:

This enhancement introduces the gui-proxy-inspection setting under config system settings, which is enabled on most models except for entry-level platforms with 2 GB of RAM or less. When this setting is disabled:

  • Proxy-based only profiles such as ICAP, Web Application Firewall, Video Filter, and Zero Trust Network Access are disabled (grayed out) on the System > Feature Visibility page.

  • The Feature set field is disabled on UTM profiles. Only flow-based features are shown.

    Example AV profile:

  • Firewall policy pages do not have option to select a Flow-based or Proxy-based inspection mode.

  • Proxy-based UTM profiles cannot be selected within policy configurations or other areas.

Note the following exceptions:

  • If the proxy feature set is enabled from the CLI or carried over from upgrading, it can be displayed in the GUI.

  • If proxy-based inspection mode is enabled from the CLI or carried over from upgrading, it can be displayed in GUI firewall policy pages.

    Example AV profile being edited from the New Policy page after upgrading:

To enable proxy features on entry-level platforms:
config system settings
    set gui-proxy-inspection enable
end

Hide proxy features in the GUI by default for models with 2 GB RAM or less 7.2.4

Note

This information is also available in the FortiOS 7.2 Administration Guide:

This enhancement introduces the gui-proxy-inspection setting under config system settings, which is enabled on most models except for entry-level platforms with 2 GB of RAM or less. When this setting is disabled:

  • Proxy-based only profiles such as ICAP, Web Application Firewall, Video Filter, and Zero Trust Network Access are disabled (grayed out) on the System > Feature Visibility page.

  • The Feature set field is disabled on UTM profiles. Only flow-based features are shown.

    Example AV profile:

  • Firewall policy pages do not have option to select a Flow-based or Proxy-based inspection mode.

  • Proxy-based UTM profiles cannot be selected within policy configurations or other areas.

Note the following exceptions:

  • If the proxy feature set is enabled from the CLI or carried over from upgrading, it can be displayed in the GUI.

  • If proxy-based inspection mode is enabled from the CLI or carried over from upgrading, it can be displayed in GUI firewall policy pages.

    Example AV profile being edited from the New Policy page after upgrading:

To enable proxy features on entry-level platforms:
config system settings
    set gui-proxy-inspection enable
end