Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
Hosemacht
Contributor II

FortiOS 6.0.12 is out!

A lot of Bug Fixes and few known issues.

maybe the best 6.0.x version?

sudo apt-get-rekt

sudo apt-get-rekt
7 REPLIES 7
Baptiste
Contributor II

Hello,

I will update next week, I have some bugs with sslvpn portal, I hope this update fix them...

2 FGT 100D  + FTK200

3 FGT 60E  FAZ VM  some FAP 210B/221C/223C/321C/421E

2 FGT 100D + FTK200 3 FGT 60E FAZ VM some FAP 210B/221C/223C/321C/421E
rete
New Contributor

Seems to solve also "IPSA self test failed, disable IPSA" issue with extended IPS database on recent small ARM based appliances, like our 61F

 

Resolution is new IPS Engine Version 4.00076 coming with 6.0.12

 

No notes at all though neither in resolved issues or prior versions known issues.

 

shaping and DOS policies reorder error (starting at least on 6.0.10) still here and now finally reported partially in known issues 591731, but it affects all of our firewalls, not only 100F.

comsec
New Contributor

Seems to solve also "IPSA self test failed, disable IPSA" issue with extended IPS database on recent small ARM based appliances, like our 61F   Resolution is new IPS Engine Version 4.00076 coming with 6.0.12   No notes at all though neither in resolved issues or prior versions known issues.   shaping and DOS policies reorder error (starting at least on 6.0.10) still here and now finally reported partially in known issues 591731, but it affects all of our firewalls, not only 100F.

Baptiste

Hi, I've updated a 100D cluster, I had some bugs with SSLVPN portal, it's fixed.

2 FGT 100D  + FTK200

3 FGT 60E  FAZ VM  some FAP 210B/221C/223C/321C/421E

2 FGT 100D + FTK200 3 FGT 60E FAZ VM some FAP 210B/221C/223C/321C/421E
comsec
New Contributor

"IPSA self test failed, disable IPSA" is indeed not resolved, it appeared back after some hours.

 

Memory exhaustion problems with extended IPS on 61F seems gone instead.

comsec
New Contributor

Also updated a 1801F cluster today.

 

After a few hours no new bugs emerged, but all issues from 6.0.10 remain, most important the terrible DOS policies issue, and the policy reorder issues affecting newer appliances with special branch builds, that affects our 61F also:

 

671982 - Dos Policy cause traffic drop 591731 - Cannot reorder shaping policy via GUI or CLI (FG-100F)

0695803 Description: B6828: Unable to reorder firewall DoS policy neither via GUI nor CLI on 1800/1801F

 

Special branch supported models

FG‑30E-MG

is released on build 5477.

FG-40F

is released on build 6875.

FG-40F-3G4G

is released on build 6875.

FG-60F

is released on build 6878.

FG-61F

is released on build 6878.

FG‑100F

is released on build 6878.

FG‑101F

is released on build 6878.

FG-1100E

is released on build 6874.

FG-1101E

is released on build 6874.

FG-1800F

is released on build 6877.

FG-1801F

is released on build 6877.

FG‑2200E

is released on build 6876.

FG‑2201E

is released on build 6876.

FG‑3300E

is released on build 6876.

FG‑3301E

is released on build 6876.

FG‑VM64‑AZURE

is released on build 5478.

FG-VM64-AZUREONDEMAND

is released on build 5478.

FG-VM64-RAXONDEMAND

is released on build 9290.

FWF-40F

is released on build 6875.

FWF-40F-3G4G

is released on build 6875.

FWF-60F

is released on build 6878.

FWF-61F

is released on build 6878.

 

 

comsec
New Contributor

Update, we received a special build 6883 to resolve all three issues, the first one seems 1800F series specifi, the others selected special branches.

671982 - Dos Policy cause traffic drop
591731 - Cannot reorder shaping policy either via GUI or CLI (FortiGate 100F)
695803 - Unable to reorder firewall DoS policy neither via GUI nor CLI on 1800/1801F

Labels
Top Kudoed Authors