FortiOS 5.4.1 Release Notes

High Availability

Bug ID Description
304433 New import local certificate causes the HA to become out of sync in a Multi VDOM environment.
365661 Some TCP session can not be synced with master on a slave unit.
366745 FortiCloud can not be activated via the HA GUI.
Bug ID Description
357298 After a policy installation, session hardware off-load does not work as expected.
307013 hasync crash signal 11 (FGSP) occurs in stand-alone-config-sync.
302687 ha-mgmt-interface IP address is not assigned after rebooting.
289516 RTP pinholes are deleted after some time on the slave unit.
286827 BGP MD5 authentication error occurs after a HA failover.
356239 HA HeartBeat is down when using the following command: restore vdom config.
371446,

270267

Slave/Passive unit in HA virtual cluster generates traffic logs for failed traffic.
365669 FGSP cannot establish session-helper protocols in an asymmetrical traffic environment.

IPS

Bug ID Description
306277 Flow-based local URL filter does not work on FGT-3700D/FGT-1500D.
364309 ipsufd does not work as expected in a HA failover.
309844 NTUrbo mbuf error occurs because tx packets are not handled properly. Correct a typo which causes the unnecessary checksum updates for each packet.
308064 Performance improvement for NTurbo IPS on FG-3000D and FG-600D
306713 NTurbo local mbuf handling problems when processing IP fragmented packets.
307443 Fragment IPv6 packet triggers a bad IP header log.
299585 IPS engines remained 99.9% busy due to production traffic.
306648 The Virtual Wire default configuration should use certificate-inspection as the ssl-ssh-profile.
This entry was posted in FortiOS and tagged , , on by .

About Mike

Michael Pruett, CISSP has a wide range of cyber-security and network engineering expertise. The plethora of vendors that resell hardware but have zero engineering knowledge resulting in the wrong hardware or configuration being deployed is a major pet peeve of Michael's. This site was started in an effort to spread information while providing the option of quality consulting services at a much lower price than Fortinet Professional Services. Owns PacketLlama.Com (Fortinet Hardware Sales) and Office Of The CISO, LLC (Cybersecurity consulting firm).

3 thoughts on “FortiOS 5.4.1 Release Notes

  1. David

    FYI. I ran into a terrible problem using a Fortigate VM00. 5.4.1 will not run because the virtual appliance only has 1GB of memory available. Fortinet was nice enough to diagnose the problem, but really does not have an easy way of upgrading to the 2GB virtual appliance.

    Reply
  2. Pablo

    Problems of download speed, I have a fortigate 30e and I have problems in the download speed 4.2 mbps, instead in upload speed is correct 89.55 mbps, I do not know where the problem may come from. I have version 5.4.1 build1064. You can help me.

    Reply

Leave a Reply

Your email address will not be published. Required fields are marked *

This site uses Akismet to reduce spam. Learn how your comment data is processed.