We are currently using version 5.6.11 on Fortigate 200E (data center) and Fortigate 80E (branch offices). I am evaluating the benefits of upgrading FortiOS into 6.X. Here are my questions:
1.) What are the biggest benefits of upgrading from the 5.6.X versions into at least 6.2?
2.) I am considering either 6.2.2, 6.2.3 or 6.4. Of these versions, are there any which have been unstable or have displayed issues? I would much rather be on a stable version which isn't necessarily the latest rather than one which may cause issues.
Any and all input is very much appreciated.
Solved! Go to Solution.
Nominating a forum post submits a request to create a new Knowledge Article based on the forum post topic. Please ensure your nomination includes a solution within the reply.
The biggest benefit upgrading from 5.6 is to keep getting bug/vulnerability fixes. I think they already stopped implementing minor fixes to 5.6, while they need to mainin 6.0, 6.2, then now 6.4.
If you want to go to stable version, I would wait until 6.2.4 comes out. Currently planned at the end of May according to an SE. I tried 6.2.3 but decided not to go to due to some odd behaviors. You can find some problem reports with 6.2.3 on this forum.
On the other hand, we encountered a major problem related to SSL VPN w/ 6.0.9. It might work fine for you if you're not using SSL VPN.
The biggest benefit upgrading from 5.6 is to keep getting bug/vulnerability fixes. I think they already stopped implementing minor fixes to 5.6, while they need to mainin 6.0, 6.2, then now 6.4.
If you want to go to stable version, I would wait until 6.2.4 comes out. Currently planned at the end of May according to an SE. I tried 6.2.3 but decided not to go to due to some odd behaviors. You can find some problem reports with 6.2.3 on this forum.
On the other hand, we encountered a major problem related to SSL VPN w/ 6.0.9. It might work fine for you if you're not using SSL VPN.
6.2.x comes with a big performance boost in being able to select proxy or flow per policy, this was a 50% reduction in CPU for the same workload for me when comparing a purely proxy mode firewall.
6.2.x also supports new standards, TLS 1.3, WPA3 etc, so long term is an essential upgrade to continue full traffic inspection and best security.
I am running 6.2.3, stable but a few bugs, I have high hopes for 6.2.4 :)
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1662 | |
1077 | |
752 | |
443 | |
220 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.