FortiOS 5.2.8 Release Notes

SSL VPN

Bug ID Description
364918 SSLVPN_TUNNEL_ADDR1 added to TP mode vdom when system reboots.
276730 When split-tunneling is set to a non default value, it is not shown in the config.
371276 SSL client can not login proxy smb/cifs server.
290818 SSL VPN stops working when canceling a SSL VPN webmode ftp upload.
306982 Auth policy is ignored if the specified user is a member of group in the following policy.

Resolved Issues

System

Bug ID Description
282204 NP6 Anomaly settings not working.
372632 FGT-3700D kernel crash.
373033 Deep SSL inspection stops working when Inspect All Ports is enabled.
371660 FMG fails to set uninterruptible-upgrade settings.
365497 Possible packet out-of-order with NP6 during established TCP session.
367471 Fragmented out-of-sequence ICMP Reply can loop endlessly in npu-vlink.
356245 FortiGate is ignores remote side change Aggregation IDs, and keeping this ports active in LACP.
309821 ICMPv6 packets with Hop-by-Hop Options are not decoded properly by built in sniffer.
374706 Proxyworker memory keep increasing.
355482 LACP negotiation causes wrong HA master election.
356611 Customized portal message cannot be displayed.
304742 IPSec clients need to login twice, except when debug IKE is enabled.
302606 Comlog is disabled by failure to read or Ctrl+C.
368459 No link down trap when a LAG member port is down.
295139 After disabling IPS, UDP traffic from the existing sessions will be blocked.
306321 GRE tunnel interface is mandatory (changed from 5.2.3).
310071 A specific SFP shared port’s LED (Port18 on FG-1000C) is not lit properly.
354337 Loss of custom replacement image post upgrade 5.0.X to 5.2.X.
304740 Memory leak in imd.
369526 After restoring VDOM config, the VDOM connectivity is completely lost.
309844 Packets dropped by nturbo sometimes causing unclosed sessions.
302908 smbcd continuously requests for memory and causes system to go into conserve mode.
307191 Upload speed reduced and system CPU increased when IPsec is offloaded to SP2.

Resolved

Bug ID Description
310195 Sometimes LACP failed to negotiate on FG-100D.
245987 SNMP clients blocks trap requests to SNMP server

User

Bug ID Description
293299 2FA email token expiration issues for LDAP users.
307920 authd inserted two non-portrange entries into FSSO list with the same IP address.
This entry was posted in Release Notes and tagged , , on by .

About Mike

Michael Pruett, CISSP has a wide range of cyber-security and network engineering expertise. The plethora of vendors that resell hardware but have zero engineering knowledge resulting in the wrong hardware or configuration being deployed is a major pet peeve of Michael's. This site was started in an effort to spread information while providing the option of quality consulting services at a much lower price than Fortinet Professional Services. Owns PacketLlama.Com (Fortinet Hardware Sales) and Office Of The CISO, LLC (Cybersecurity consulting firm).

Leave a Reply

Your email address will not be published. Required fields are marked *

This site uses Akismet to reduce spam. Learn how your comment data is processed.