Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
Carl_Wallmark
Valued Contributor

FortiOS 4.3.2 is out

.

FCNSA, FCNSP
---
FortiGate 200A/B, 224B, 110C, 100A/D, 80C/CM/Voice, 60B/C/CX/D, 50B, 40C, 30B
FortiAnalyzer 100B, 100C
FortiMail 100,100C
FortiManager VM
FortiAuthenticator VM
FortiToken
FortiAP 220B/221B, 11C

FCNSA, FCNSP---FortiGate 200A/B, 224B, 110C, 100A/D, 80C/CM/Voice, 60B/C/CX/D, 50B, 40C, 30BFortiAnalyzer 100B, 100CFortiMail 100,100CFortiManager VMFortiAuthenticator VMFortiTokenFortiAP 220B/221B, 11C
39 REPLIES 39
pcraponi

@Selective - good catch! The OID have changed in MR3 CPU: .1.3.6.1.4.1.12356.101.4.1.3.0 MEMORY: .1.3.6.1.4.1.12356.101.4.1.4.0 SESSION: .1.3.6.1.4.1.12356.101.4.1.8.0 Thanks

Regards, Paulo Raponi

Regards, Paulo Raponi
ddskier
Contributor

Thanks for the feedback. I' ll try the upgrade again to see if it goes.

-DDSkier FCNSA, FCNSP FortiGate 400D, (2) 200D, (12) 100D, (2) 60D

-DDSkier FCNSA, FCNSP FortiGate 400D, (2) 200D, (12) 100D, (2) 60D
Carl_Wallmark
Valued Contributor

Packet capture is not visible for me :(
i think its only supported on newer models with internal storage, like the 60C. I just upgraded my 200A i got home, and no packet capture there

FCNSA, FCNSP
---
FortiGate 200A/B, 224B, 110C, 100A/D, 80C/CM/Voice, 60B/C/CX/D, 50B, 40C, 30B
FortiAnalyzer 100B, 100C
FortiMail 100,100C
FortiManager VM
FortiAuthenticator VM
FortiToken
FortiAP 220B/221B, 11C

FCNSA, FCNSP---FortiGate 200A/B, 224B, 110C, 100A/D, 80C/CM/Voice, 60B/C/CX/D, 50B, 40C, 30BFortiAnalyzer 100B, 100CFortiMail 100,100CFortiManager VMFortiAuthenticator VMFortiTokenFortiAP 220B/221B, 11C
ddskier
Contributor

This time the upgrade went successful. Strange. Oh well seems to be working pretty well. No obvious issues so far.

-DDSkier FCNSA, FCNSP FortiGate 400D, (2) 200D, (12) 100D, (2) 60D

-DDSkier FCNSA, FCNSP FortiGate 400D, (2) 200D, (12) 100D, (2) 60D
lmuir
New Contributor

I having latency issues after upgrade, I suspect it' s UTM related but haven' t had a chance to look into it yet. Non UTM policies work fine.
ddskier
Contributor

Found a few IPv6 related issues. * Can' t set the IPv6 address through the GUI interface. * Firewall will sometimes stop responding on IPv6 GUI, even though IPv4 continues to work. It seems the IPv6 GUI daemon is crashing. GUI Bugs * Column settings do not stay when you leave and return to page. (Both IE9 and Firefox 6) In my opinion this version is ssssoooo not ready for prime time. BTW - I don' t like the new interface changes. Takes more click to create policies.

-DDSkier FCNSA, FCNSP FortiGate 400D, (2) 200D, (12) 100D, (2) 60D

-DDSkier FCNSA, FCNSP FortiGate 400D, (2) 200D, (12) 100D, (2) 60D
Not applicable

I seem to be experiencing increased PPP instability in my 60CX-ADSL-A, rather than the reduction I' d expect after seeing this in the changelog:
Description: A FortiGate initiated PPPoA ADSL connection may be disconnected periodically on FWF-60CX-ADSL-A. Model Affected: FWF-60CX-ADSL-A Bug ID: 144571 Status: Fixed in v4.0 MR3 - Patch Release 2
This graphs shows the incidence of " pppd is exiting" over time. The update applied just after 12:00 -
Carl_Wallmark
Valued Contributor

i found two SSL VPN bugs, You cannot edit your bookmarks in the Webportal. When editing the bookmark in the FortiGate it will not save your changes. Had to do them from the CLI.

FCNSA, FCNSP
---
FortiGate 200A/B, 224B, 110C, 100A/D, 80C/CM/Voice, 60B/C/CX/D, 50B, 40C, 30B
FortiAnalyzer 100B, 100C
FortiMail 100,100C
FortiManager VM
FortiAuthenticator VM
FortiToken
FortiAP 220B/221B, 11C

FCNSA, FCNSP---FortiGate 200A/B, 224B, 110C, 100A/D, 80C/CM/Voice, 60B/C/CX/D, 50B, 40C, 30BFortiAnalyzer 100B, 100CFortiMail 100,100CFortiManager VMFortiAuthenticator VMFortiTokenFortiAP 220B/221B, 11C
Carl_Wallmark
Valued Contributor

another " old" bug from 4.3.1 is still there: On a FortiGate 100A, the memory is jumping to 90-93% when going through the logs/monitor views. and looking at " diag sys top" , its the " httpsd" that is consuming a lot of memory. And its making it to go into " session fail mode" , disabling all UTM functions and SSL VPN etc...

FCNSA, FCNSP
---
FortiGate 200A/B, 224B, 110C, 100A/D, 80C/CM/Voice, 60B/C/CX/D, 50B, 40C, 30B
FortiAnalyzer 100B, 100C
FortiMail 100,100C
FortiManager VM
FortiAuthenticator VM
FortiToken
FortiAP 220B/221B, 11C

FCNSA, FCNSP---FortiGate 200A/B, 224B, 110C, 100A/D, 80C/CM/Voice, 60B/C/CX/D, 50B, 40C, 30BFortiAnalyzer 100B, 100CFortiMail 100,100CFortiManager VMFortiAuthenticator VMFortiTokenFortiAP 220B/221B, 11C
Not applicable

Same problem as MR3 and MR3 Patch1. I upgrade from MR2 Patch 7 to MR3 Patch 2 and web filtering has stopped working with the same configuration that working correctly in MR2Patch7. The error is the same: Every 10 seconds: Hostname: service.fortiguard.net Message: gethostbyname() failed. Error: unable to resolve hostname and every time when a user open a blocked website: Message: A rating error occurs Error: failed to resolve FortiGuard hostname
Labels
Top Kudoed Authors