Fortinet black logo

Resolved Issues Version F 7.4.0

Resolved Issues Version F 7.4.0

Note

See also Resolved Issues for Versions:

Ticket # Description

981753

Discovery frequency check and discovery quantity check could be incorrectly done on single range when there are lists of ranges in one request. Moved the checking to the beginning of the request.

913595

Removed "Default" from Device/VDOM/SSID RADIUS Attribute Group label to avoid confusion with Logical Network attribute group.

990531

Migration script fails to bundle on Control and Application server pairs configured for High Availability.

932570

Unable to determine mibID when FirmwareVersion contains no suffix (e.g. FirmwareVersion = Huawei instead of Huawei.10). Causes operations requiring the mibID to fail (L2 Polling, reading SSIDs, etc).

955711 Guest account creation does not retain some account data.
901925 Removing profile mapping operation deletes the admin user account.
858184 Custom subject line for Self Registration Request sent to sponsor does not reflect custom text.
810574 Unable to scan using Dissolvable agent when scan configuration label contains non-US-ASCII characters.
972884 Config backup file taken before the FortiNAC factory reset cannot be restored after factory reset, and vice versa.
909376 FortiNAC-OS CLI: Unable to tail named.log file in CLI due to permissions.
907413 Include get hardware status and get system status in grab-log-snapshot.
906910 Include show full-configuration in grab-log-snapshot.
896471 Licensetool is not correctly reporting the license level from the NCM.
848851 hs_err_ files missing from grab log snapshot.
845008 Grab-log-snapshot should collect more master log files than the two collected.
969258 Config Wizard: Configuring an invalid Subnet Mask (255.255.225.0) on an Isolation Interface (Isol-Reg...) is accepted.
900281 Unable to add a scope in Config Wizard when Administration UI is accessed through a port other than 8443.
881899 FortiNAC is unable to resolve hostnames unless they are fully qualified domain names (FQDNs).
987145 PlanetSwitch Port Switching using ifIndex instead of ifName.
986049 FortiSwitch MAC Trap Notifications not mapping to the correct switch port.
983350 Parsed VLAN is incorrect for Mist AP.
982255 Unable to gather L3 data on HPE 5130 Switch.
980338 When enabling authentication in MICROSENS G6 Micro-Switch port, the host information appears only in port 1.
977249 L2 poll not detecting 802.1x authenticated endpoints on NEC-QX switch.
974223 RADIUS support for NEC-QX switches.
956436 FortiNAC doesn't work as RADIUS proxy properly when integrated with NEC-QX switch.
954103 After FortiGate power cycle, FortiNAC shows incorrect port state for FortiSwitches (FortiLink) once the device is pingable again.
922095 Grab-Device-Debug does not successfully run due to permissions errors.
914193 Issues with Brocade switch - not seeing all VLANs and hence unable to set VLANs in model.
912128 FortiNAC is not sending CoA to Meraki MS switch on host state changes.
907854 VLAN change commands fail for Cisco SG-250.
904541 FirmwareVersion value missing from Meraki AP's on upgrade to 9.4.
900284 Juniper switches are taking longer than they should to make changes.
899075 Incomplete ARP table for Sonicwall appliance.
897851 FortiNAC not supporting QX series Mac-notification trap.
897151 Remove invalid device mapping for C9800-AP Software.
885306 WLC Extreme VX9000 MAC table can't be parsed.
882129 Meraki Switch doesn't populate data from L3 polling.
881650 HP J9776A 2530-24G Switch - uplink ports are not properly displayed in Ports view.
878102 FortiNAC not recognizing Extreme Wireless SSID.
874363 FortiGate VPN user not consistently retaining firewall tag when multiple connected adapters exist on the endpoint.
871657 Pnetworks newer Switches OS are using generic firewall OID.
866343 Added proxy RADIUS support for Arista switches.
989711 Get error when import csv-file with host.expireDate.
981854 Registration Requests view is visible for admin users that do not have Host Registration Requests permissions.
980783 CLI Tool does not set Device Name completely.
977208 Override Scan Control doesn't work in latest GUI.
969091 Admin with System Administrator profile cannot delete another user in the UI with Base license.
969037 In the Adapters view in Ports tab, PA status will show the green tick when the agent hasn’t checked in.
956088 WebUI Session Timer not working.
951938 Admin Profile for Guest Permissions can see other accounts.
905865 Cannot enable 'Enable Quarantine VLAN Switching' option in GUI.
902533 Modifying port name value via port properties that include '&' generates 'amp;' in port name.
901257 HTML is not supported in the 'Guest Account details'.
897921 Firewall session polling does not get hostname.
894165 Test Device Profiling Rule results in 'Rule Does Not Match' if rule name contains a double space.
893561 Load CLI Configuration error when navigating to System > Scheduler.
890988 Device View in Inventory does not load for users with 'Network Devices->Access' read only permissions.
890929 Unable to restart server after uploading new license key through GUI.
890015 Can't edit the syslog files, 'filter values consisting of only alphanumeric characters'.
888616 Scheduler errors after upgrade from old versions 8.8.
887470 Domain with single character between dots in multiple dot domains results in error when adding to allowed domains.
884077 Guests & Contractors - Modifying a Guest account with 'Can view passwords:' permission disabled generates error.
883989 Default attribute for Phone is incorrect when adding an AD server to LDAP settings.
835149 Host role cannot be modified for endpoint registered as device in host and inventory view from within inventory/topology view.
833305 Guest account password is unmasked on badge when user does not have password viewing permissions.
888212 Endpoint Compliance Scans are not replicated.
800870 If High Availability was re-configured with another FortiNAC Secondary Server, it is possible for the Primary Server to stop its processes if it receives communication from the original Secondary Server.
950004 Jamf MDM Integration - Need Bearer Token Authentication Support to Replace Basic Authentication.
919953

Enhance MSIntune Integration to query MSIntune API for a specific host on-demand. For details, see:

https://docs.fortinet.com/document/fortinac-f/7.4.0/mdm-integration/825384/microsoft-intune

878836 Intune MDM Integration 'Invalid Audience' when using an App registration in the Azure Government cloud.
884986 Remove Log4j package.
992236 Device Profiling rule with WINRM method not matching properly.
944935 FortiNAC unable to start processes during a failover or resuming control in High Availability configuration
911631 Remove setupAdvanceRouting.
889125 FortiNAC Azure zip file appears to be corrupt.
982765 Proxy Radius validation and test and save function result in RADIUS reject due to incorrect password attribute.
978006 FortiNAC keeps sending disconnect-request with the old calling-station-ID even though it is connected to a new docking station.
918983 Additional Radius Attribute Groups applied to Logical Network misbehaving.
901236 Radius Authentication rejecting with network access policy setup with Direct configuration.
895085 RADIUS Performance problems on rogue host record creation.
864232 FortiNAC sends 2 Disconnect-Request after the device initially connects to Juniper/Nokia switches to determine the Correct Delimiter.
882265 FortiNAC is not sending the correct serial number field to FortiAnalyzer.
884345 REST API V2 error response.
909839 Repetitive SSO logon and logoffs.
902072 Improved DatabaseServer performance.
882782 NullPointerException in MessagingGatewayPlugin.sendSMS().
877942 Performance issues related to Firewall Session table growing too large.
987991 "This Host name contained characters not allowed in host names" appears if the length of host.host in csv file is 2 characters.
986547 Port Changes view in Admin GUI showing incorrect values.
980366 Unable to connect to Admin GUI on secondary after starting secondary GUI service.
896150 Interfaces not properly mapped when installing FortiNAC-OS KVM image.

Resolved Issues Version F 7.4.0

Note

See also Resolved Issues for Versions:

Ticket # Description

981753

Discovery frequency check and discovery quantity check could be incorrectly done on single range when there are lists of ranges in one request. Moved the checking to the beginning of the request.

913595

Removed "Default" from Device/VDOM/SSID RADIUS Attribute Group label to avoid confusion with Logical Network attribute group.

990531

Migration script fails to bundle on Control and Application server pairs configured for High Availability.

932570

Unable to determine mibID when FirmwareVersion contains no suffix (e.g. FirmwareVersion = Huawei instead of Huawei.10). Causes operations requiring the mibID to fail (L2 Polling, reading SSIDs, etc).

955711 Guest account creation does not retain some account data.
901925 Removing profile mapping operation deletes the admin user account.
858184 Custom subject line for Self Registration Request sent to sponsor does not reflect custom text.
810574 Unable to scan using Dissolvable agent when scan configuration label contains non-US-ASCII characters.
972884 Config backup file taken before the FortiNAC factory reset cannot be restored after factory reset, and vice versa.
909376 FortiNAC-OS CLI: Unable to tail named.log file in CLI due to permissions.
907413 Include get hardware status and get system status in grab-log-snapshot.
906910 Include show full-configuration in grab-log-snapshot.
896471 Licensetool is not correctly reporting the license level from the NCM.
848851 hs_err_ files missing from grab log snapshot.
845008 Grab-log-snapshot should collect more master log files than the two collected.
969258 Config Wizard: Configuring an invalid Subnet Mask (255.255.225.0) on an Isolation Interface (Isol-Reg...) is accepted.
900281 Unable to add a scope in Config Wizard when Administration UI is accessed through a port other than 8443.
881899 FortiNAC is unable to resolve hostnames unless they are fully qualified domain names (FQDNs).
987145 PlanetSwitch Port Switching using ifIndex instead of ifName.
986049 FortiSwitch MAC Trap Notifications not mapping to the correct switch port.
983350 Parsed VLAN is incorrect for Mist AP.
982255 Unable to gather L3 data on HPE 5130 Switch.
980338 When enabling authentication in MICROSENS G6 Micro-Switch port, the host information appears only in port 1.
977249 L2 poll not detecting 802.1x authenticated endpoints on NEC-QX switch.
974223 RADIUS support for NEC-QX switches.
956436 FortiNAC doesn't work as RADIUS proxy properly when integrated with NEC-QX switch.
954103 After FortiGate power cycle, FortiNAC shows incorrect port state for FortiSwitches (FortiLink) once the device is pingable again.
922095 Grab-Device-Debug does not successfully run due to permissions errors.
914193 Issues with Brocade switch - not seeing all VLANs and hence unable to set VLANs in model.
912128 FortiNAC is not sending CoA to Meraki MS switch on host state changes.
907854 VLAN change commands fail for Cisco SG-250.
904541 FirmwareVersion value missing from Meraki AP's on upgrade to 9.4.
900284 Juniper switches are taking longer than they should to make changes.
899075 Incomplete ARP table for Sonicwall appliance.
897851 FortiNAC not supporting QX series Mac-notification trap.
897151 Remove invalid device mapping for C9800-AP Software.
885306 WLC Extreme VX9000 MAC table can't be parsed.
882129 Meraki Switch doesn't populate data from L3 polling.
881650 HP J9776A 2530-24G Switch - uplink ports are not properly displayed in Ports view.
878102 FortiNAC not recognizing Extreme Wireless SSID.
874363 FortiGate VPN user not consistently retaining firewall tag when multiple connected adapters exist on the endpoint.
871657 Pnetworks newer Switches OS are using generic firewall OID.
866343 Added proxy RADIUS support for Arista switches.
989711 Get error when import csv-file with host.expireDate.
981854 Registration Requests view is visible for admin users that do not have Host Registration Requests permissions.
980783 CLI Tool does not set Device Name completely.
977208 Override Scan Control doesn't work in latest GUI.
969091 Admin with System Administrator profile cannot delete another user in the UI with Base license.
969037 In the Adapters view in Ports tab, PA status will show the green tick when the agent hasn’t checked in.
956088 WebUI Session Timer not working.
951938 Admin Profile for Guest Permissions can see other accounts.
905865 Cannot enable 'Enable Quarantine VLAN Switching' option in GUI.
902533 Modifying port name value via port properties that include '&' generates 'amp;' in port name.
901257 HTML is not supported in the 'Guest Account details'.
897921 Firewall session polling does not get hostname.
894165 Test Device Profiling Rule results in 'Rule Does Not Match' if rule name contains a double space.
893561 Load CLI Configuration error when navigating to System > Scheduler.
890988 Device View in Inventory does not load for users with 'Network Devices->Access' read only permissions.
890929 Unable to restart server after uploading new license key through GUI.
890015 Can't edit the syslog files, 'filter values consisting of only alphanumeric characters'.
888616 Scheduler errors after upgrade from old versions 8.8.
887470 Domain with single character between dots in multiple dot domains results in error when adding to allowed domains.
884077 Guests & Contractors - Modifying a Guest account with 'Can view passwords:' permission disabled generates error.
883989 Default attribute for Phone is incorrect when adding an AD server to LDAP settings.
835149 Host role cannot be modified for endpoint registered as device in host and inventory view from within inventory/topology view.
833305 Guest account password is unmasked on badge when user does not have password viewing permissions.
888212 Endpoint Compliance Scans are not replicated.
800870 If High Availability was re-configured with another FortiNAC Secondary Server, it is possible for the Primary Server to stop its processes if it receives communication from the original Secondary Server.
950004 Jamf MDM Integration - Need Bearer Token Authentication Support to Replace Basic Authentication.
919953

Enhance MSIntune Integration to query MSIntune API for a specific host on-demand. For details, see:

https://docs.fortinet.com/document/fortinac-f/7.4.0/mdm-integration/825384/microsoft-intune

878836 Intune MDM Integration 'Invalid Audience' when using an App registration in the Azure Government cloud.
884986 Remove Log4j package.
992236 Device Profiling rule with WINRM method not matching properly.
944935 FortiNAC unable to start processes during a failover or resuming control in High Availability configuration
911631 Remove setupAdvanceRouting.
889125 FortiNAC Azure zip file appears to be corrupt.
982765 Proxy Radius validation and test and save function result in RADIUS reject due to incorrect password attribute.
978006 FortiNAC keeps sending disconnect-request with the old calling-station-ID even though it is connected to a new docking station.
918983 Additional Radius Attribute Groups applied to Logical Network misbehaving.
901236 Radius Authentication rejecting with network access policy setup with Direct configuration.
895085 RADIUS Performance problems on rogue host record creation.
864232 FortiNAC sends 2 Disconnect-Request after the device initially connects to Juniper/Nokia switches to determine the Correct Delimiter.
882265 FortiNAC is not sending the correct serial number field to FortiAnalyzer.
884345 REST API V2 error response.
909839 Repetitive SSO logon and logoffs.
902072 Improved DatabaseServer performance.
882782 NullPointerException in MessagingGatewayPlugin.sendSMS().
877942 Performance issues related to Firewall Session table growing too large.
987991 "This Host name contained characters not allowed in host names" appears if the length of host.host in csv file is 2 characters.
986547 Port Changes view in Admin GUI showing incorrect values.
980366 Unable to connect to Admin GUI on secondary after starting secondary GUI service.
896150 Interfaces not properly mapped when installing FortiNAC-OS KVM image.