Block Google QUIC protocol in default Application Control configuration (385190)
Block Google QUIC protocol in default Application Control configuration (385190) QUIC is an experimental protocol from Google. With recent Google Chrome versions (52 and above), and updated Google...
View ArticleBotnet database changes (390756)
Botnet database changes (390756) Starting in FortiOS 5.6, FortiGate units and FortiGuard Distribution Servers (FDS0 will use object IDs IBDB and DBDB to download and update the Botnet database. Botnet...
View ArticleSecurity Fabric audit check for endpoint vulnerability and unauthorized FAP...
Security Fabric audit check for endpoint vulnerability and unauthorized FAP and FSW (401462) The new Security Fabric Audit feature allows for the display of endpoint vulnerability status in real-time....
View ArticleChange to CLI commands for configuring custom Internet services (397029)
Change to CLI commands for configuring custom Internet services (397029) Custom internet services are no longer configured through use of the commands config application internet-service and config...
View ArticleEnable “sync-session-ttl” in “config ips global” CLI by default (399737)
Enable “sync-session-ttl” in “config ips global” CLI by default (399737) sync-session-ttl is now set to enable by default in order to: l enhance detection of P2P traffic. Efficient detection of P2P is...
View ArticleCASI functionality moved into application control (385183 372103)
CASI functionality moved into application control (385183 372103) Cloud Access Security Inspection (CASI) is merged with Application Control resulting in changes to the GUI and the CLI. GUI Changes...
View ArticleNew diagnose command to delete avatars (388634)
New diagnose command to delete avatars (388634) Commands to delete avatars by FortiClient UID or avatar name have been added to the CLI. the two following commands has been added to diagnose endpoint...
View ArticleFortinet bar option disabled in profile protocol options when VDOM is in...
Fortinet bar option disabled in profile protocol options when VDOM is in flow-based inspection mode (384953) In order to prevent the Fortinet Bar from being enabled and redirecting traffic to proxy...
View ArticleSSL/SSH profile certificate handling changes (373835)
SSL/SSH profile certificate handling changes (373835) In order to support DSA and ECDSA key exchange (in addition to RSA) in SSL resign and replace mode, CLI commands for deep-inspection have changed....
View ArticleRestricting access to YouTube (replacement for the YouTube Education filter...
Restricting access to YouTube (replacement for the YouTube Education filter feature) (378277) Previous versions of FortiOS supported YouTube for Schools (YTfS). As of July 1, 2016 this feature is no...
View ArticleEnhancements to IPS Signatures page (285543)
Enhancements to IPS Signatures page (285543) The IPS signatures list page now shows which IPS package is currently deployed. Users can also change their IPS package by linking directly to the...
View ArticleDLP sensor GUI changes (307225)
DLP sensor GUI changes (307225) The DLP sensor for file size has been corrected to indicate that the file size has to be greater than the number of KB entered. Previously, the GUI incorrectly showed...
View ArticleWeb Filter profile page GUI updates (309012)
Web Filter profile page GUI updates (309012) The GUI for the Web Filter security profile and Web Profile Overrides pages are changed. Web Filter profile page removed multilist for override user group...
View ArticleWeb Filter Quota traffic can no longer be set to 0 (374380)
Web Filter Quota traffic can no longer be set to 0 (374380) To fix a bug in older major release, the CLI has been changed so that minimum traffic quota does not allow 0 as an entry. The value entered...
View ArticleWebcache-https and SSL deep inspection profile configuration changes (381101)
Webcache-https and SSL deep inspection profile configuration changes (381101) In older releases, the CLI blocked the configuration of the SSL deep inspection profile when webcache-https was enabled....
View ArticleFortiGate conserve mode changes (242562, 386503)
FortiGate conserve mode changes (242562, 386503) The following changes were made to rework conserve mode and facilitate its implementation: Implemented CLI commands to configure extreme, red, and green...
View ArticleNew custom IPS and Application Control Signatures list (280954)
New custom IPS and Application Control Signatures list (280954) You can now create IPS and Application control custom signatures by going to Security Profiles > Custom Signatures. From here you can...
View ArticleServer Load balancing (5.6.1)
Server Load balancing (5.6.1) New load balancing features added to FortiOS 5.6.1. Add server load balancing real servers on the Virtual Server GUI page (416709) In previous versions of the FortiOS GUI,...
View ArticleServer Load balancing (5.6)
Server Load balancing (5.6) New load balancing features added to FortiOS 5.6. IPv6, 6to4, and 4to6 server load balancing (280073) Sever load balancing is supported for: Server Load balancing (5.6) l...
View ArticleSession-aware Load Balancing (SLBC) (5.6.1)
Session-aware Load Balancing (SLBC) (5.6.1) New SLBC features added to FortiOS 5.6.1. FortiController-5000 series independent port splitting (42333) FortiOS 5.6.1 supports splitting some 40G...
View Article