23.12.2015 Views

FortiOS Handbook - What's New

fortigate-whats-new-54

fortigate-whats-new-54

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

TCP sessions can be created without TCP syn flag checking (236078) 79<br />

Mirroring of traffic decrypted by SSL inspection (275458) 79<br />

Support for full cone NAT (269939) 79<br />

Enable or disable inspecting IPv4 and IPv6 ICMP traffic (258734) 80<br />

Policy names (246575 269948 293048) 80<br />

Policy and route lookup (266996 222827) 80<br />

Support NAT 64 CLAT (244986) 81<br />

VIPs can contain FQDNs (268876) 81<br />

Access Control Lists (ACLs) in DoS policies (293399) 81<br />

GUI improvement for DoS Policy configuration (286905) 82<br />

Expired Policy Object warnings (259338) 82<br />

FortiGate VM 83<br />

You can reset FortiGate VMs to factory defaults without deleting the VM license<br />

(280471) 83<br />

FortiGate VM Single Root I/O Virtualization (SR-IOV) support (275432) 83<br />

VM License Check Time Extension (262494) 83<br />

Integrate VMtools Into FortiGate-VM for VMware (248842) 83<br />

Hardware acceleration 84<br />

NP6 diagnose commands and get command changes (288738) 84<br />

NP6 session accounting enabled when traffic logging is enabled in a firewall policy<br />

(268426) 84<br />

Determining why a session is not offloaded (245447) 84<br />

IPsec pass-through traffic is now offloaded to NP6 processors (253221) 85<br />

Enabling or disabling offloading globally (269555) 85<br />

High Availability 86<br />

FGCP supports BFD enabled BGP graceful restart after an HA failover (255574) 86<br />

FRUP is not supported by <strong>FortiOS</strong> 5.4 (295198) 86<br />

VOIP application control sessions are no longer blocked after an HA failover (273544) 86<br />

Firewall local-in policies are supported for the dedicated HA management interface<br />

(276779 246574) 86<br />

HA heartbeat traffic set to the same priority level as data traffic (276665) 87<br />

FGSP CLI command name changed (262340) 87<br />

FGSP now supports synchronizing IPsec sessions (262340) 87<br />

Monitoring VLAN interfaces (220773) 87<br />

FortiGate HA cluster support for managed switches (276488 266084) 87<br />

HA cluster health displayed on the Unit Operation dashboard widget (260547) 87<br />

IPsec VPN 89<br />

IKE/IPsec Extended Sequence Number (ESN) support (255144) 89<br />

Updates and enhancements to the IPsec VPN wizard (222339 290377 287021<br />

289251) 89<br />

Cisco compatible keep-alive support for GRE (261595) 89<br />

Repeated Authentication in Internet Key Exchange (IKEv2) Protocol (282025) 90<br />

Improvements to IPsec VPN in ADVPN hub-and-spoke (275322) 90

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!