Skip to main content
ddskier
New Member
December 18, 2020
Question

FortiOS 6.2.7 Out

  • December 18, 2020
  • 2 replies
  • 10831 views

FortiOS 6.2.7 is out.

 

Anyone brave enough to try it out?   Is the 6.2.x branch finally stable enough to upgrade from 6.0.11?

    2 replies

    emnoc
    New Member
    December 18, 2020

    fortios 6.2 has been out for 14+ months. It should be very stable and specially with the 7th maintenance-release. IMHO

     

    Ken Felix

    tioeudes
    New Member
    December 18, 2020

    The main thing about this release is that only 6.2.6 and later are not vulnerable to this:[link]https://www.fortiguard.com/psirt/FG-IR-20-068[/link]

     

    but 6.2.6 has this ipsec issue:

    FortiOS 6.2.6 IKE process crash2020-11-25 Subject: FortiOS 6.2.6 IKE process crash Released: 2020-11-25 Modified: 2020-11-25 Product: FortiGate

    Description:

    Upon upgrading to FortiOS 6.2.6, a device with IPsec configured may experience IKE process crashes when any configuration change is made or an address change occur on a dynamic interface.

    Potentially Affected Products:

    FortiGate

    Potentially Affected OS:

    FortiOS 6.2.6

    Workaround: Use software version 6.2.5 until FortiOS 6.2.7 is available

    Resolution:

    Fortinet has resolved the issue in the upcoming FortiOS 6.2.7. Contact Fortinet Technical Support to request a 6.2.6 special build hot fix for an interim solution for use until FortiOS 6.2.7 is available.

     

     

    So upgrading to 6.2.7 would solve both situations.

     

     

     

     

     

    Toshi_Esumi
    SuperUser
    SuperUser
    December 18, 2020

    That bug 668554 is in resolved issue list in the release notes. I'll upgrade ours from the special patch to 6.2.7 this evening to see if it doesn't happen any more permanently. But the crash trigger mechanism didn't seem to be as simple as the description based on other reports for the crash. Please let all of us know who experienced the crash 6.2.6 like me if it doesn't happen to you any more.

     

    Toshi

    Toshi_Esumi
    SuperUser
    SuperUser
    December 21, 2020

    Ours don't have any iked crash for last 2.5 days. Previously it happened a couple times a day.

    Although there seemed to have been many way to trigger it, I'm guessing the direct cause was relatively simple and they must have fixed it right away, which is in this release. When I opened a TT, they sounded really confident and already had a patch available. So probably don't have to worry about it anymore at least with this release.

    ddskier
    ddskierAuthor
    New Member
    December 22, 2020

    toshiesumi wrote:

    Ours don't have any iked crash for last 2.5 days. Previously it happened a couple times a day.

    Although there seemed to have been many way to trigger it, I'm guessing the direct cause was relatively simple and they must have fixed it right away, which is in this release. When I opened a TT, they sounded really confident and already had a patch available. So probably don't have to worry about it anymore at least with this release.

    Toshi has you gone up to 6.2.7?  How has your experience been?

    Toshi_Esumi
    SuperUser
    SuperUser
    December 22, 2020

    so far no particular problems we encountered.