Technical Note: Interface ssl.root can not be part of a zone from FortiOS 5.2
Description
Solution
FortiOS 4.x and 5.0.x allows the insertion of a ssl.root interface into a zone.
After upgrading FortiOS to 5.2.x, or starting from FortiOS 5.2.0 and above, the ssl.root interface, automatically created when creating a SSL-VPN can not longer be part of a firewall zone.
After upgrading FortiOS to 5.2.x, or starting from FortiOS 5.2.0 and above, the ssl.root interface, automatically created when creating a SSL-VPN can not longer be part of a firewall zone.
Solution
This is a design decision that ssl.root interface could not be longer part of a zone, starting from FortiOS 5.2.0.