Version:

Version:

Version:

Version:

Version:

Version:

Version:

Version:

Version:

Version:

Version:

Version:

Version:

Version:

Version:

Version:

Version:

Version:

Version:

Version:

Version:

Version:

Version:

Version:

Version:


Table of Contents

Resolved issues

The following issues have been resolved in FortiADC 5.3.6 release. For inquiries about particular bugs, please contact Fortinet Customer Service & Support.

Resolved issues
Bug ID Description
644119 CPU gets stuck and device becomes inoperative
620616 ADC CPU at 100% usage and stops responding
616646 Fetch DN issue when there are multiple spaces
625266 Request old password before allowing user to change password
644221 Shutdown of Hyper-V instance fails
643217 GUI not accessible
616628 MIB Misspelling on facdTrapSysCrlExpires
638621 L7VS will not process traffic if error page and RS pool share the same name
618398 Route Health Injection (RHI) for OSPF and BGP are not working with non-root vdom
619764 Connections to msgctrl1.fortinet.com do not use FortiGuard tunnel
641421 Httproxy-ssl crashes
614083 Forward Proxy doesn't add the certificate chain along with the signed cert during TLS handshake.
627651 Connection reset by L7 SMTP VS
633350 LACP interface intermittently down
650760 Software switch interface displayed on the HA remote IP monitor if it is accessed to FGT through GUI.
620051 Source NAT pool setting does not work well.
640543 SNAT wrongly NATed after LLB failover
628261 L2 Load Balancing configured along with Content Routing rules cause break to Content Routing
651561 netlink interface list portX linkstat unrealistic counters output
652382 Remote IP Monitor List not shown on the GUI in HA settings when language is Japanese
594801 Resource Usage and Server Load Balance graph has no data
609969 Synchronization status stuck at Not sync due to the special characters in admin password settings.
614682 Losing Internet access and the access of websites published via VRRP Active-Active ADC sporadically.
623196 Changes via GUI for HA only not occurring
611170 IP address conflict Event Logs observed in Master node of HA-AA
607420 Non working VRRP ADC node generates Router LSA for the active ippool addresses causing services to fail.
638415 HA AP slave node with dedicated management should use master node as FDS proxy
626517 Generic error message with admin user configuration
625035 Add a CLI for 40G interface promiscuous mode
612763 httproxy crashes when ddos http and AV are enabled
611334 WAF OWASP TOP10 load failed, load info db failed
625195 Plenty of update result system event log after deploy ADC
614963 Incorrect connections is shown on Dashboard SLB when waf_heur_sqlxss_inject_detect appears
632894 VS status changing causes some packets drop
617299 FAD VM shutdown incomplete on vmware
633570 SNAT doesn't work for the existing session after reboot in some circumstances
631916 SLB ISO8583 has transactions with null response when response is received in different orders as sending
631943 LLB gw status is not correct after changing gw ip to subnet that is not directly connected to ADC
622287 All-in-one debug enhancement to collect more information
623635 cookie security stability enhancement
634774 Adjust the default value for the health check parameters
658496 LLB nexthop gateway remain unchanged despite updated configuration
616356

SSL - Server Accepts Weak Diffie-Hellman Keys

SSH - Weak MAC Algorithms

Resolved issues

The following issues have been resolved in FortiADC 5.3.6 release. For inquiries about particular bugs, please contact Fortinet Customer Service & Support.

Resolved issues
Bug ID Description
644119 CPU gets stuck and device becomes inoperative
620616 ADC CPU at 100% usage and stops responding
616646 Fetch DN issue when there are multiple spaces
625266 Request old password before allowing user to change password
644221 Shutdown of Hyper-V instance fails
643217 GUI not accessible
616628 MIB Misspelling on facdTrapSysCrlExpires
638621 L7VS will not process traffic if error page and RS pool share the same name
618398 Route Health Injection (RHI) for OSPF and BGP are not working with non-root vdom
619764 Connections to msgctrl1.fortinet.com do not use FortiGuard tunnel
641421 Httproxy-ssl crashes
614083 Forward Proxy doesn't add the certificate chain along with the signed cert during TLS handshake.
627651 Connection reset by L7 SMTP VS
633350 LACP interface intermittently down
650760 Software switch interface displayed on the HA remote IP monitor if it is accessed to FGT through GUI.
620051 Source NAT pool setting does not work well.
640543 SNAT wrongly NATed after LLB failover
628261 L2 Load Balancing configured along with Content Routing rules cause break to Content Routing
651561 netlink interface list portX linkstat unrealistic counters output
652382 Remote IP Monitor List not shown on the GUI in HA settings when language is Japanese
594801 Resource Usage and Server Load Balance graph has no data
609969 Synchronization status stuck at Not sync due to the special characters in admin password settings.
614682 Losing Internet access and the access of websites published via VRRP Active-Active ADC sporadically.
623196 Changes via GUI for HA only not occurring
611170 IP address conflict Event Logs observed in Master node of HA-AA
607420 Non working VRRP ADC node generates Router LSA for the active ippool addresses causing services to fail.
638415 HA AP slave node with dedicated management should use master node as FDS proxy
626517 Generic error message with admin user configuration
625035 Add a CLI for 40G interface promiscuous mode
612763 httproxy crashes when ddos http and AV are enabled
611334 WAF OWASP TOP10 load failed, load info db failed
625195 Plenty of update result system event log after deploy ADC
614963 Incorrect connections is shown on Dashboard SLB when waf_heur_sqlxss_inject_detect appears
632894 VS status changing causes some packets drop
617299 FAD VM shutdown incomplete on vmware
633570 SNAT doesn't work for the existing session after reboot in some circumstances
631916 SLB ISO8583 has transactions with null response when response is received in different orders as sending
631943 LLB gw status is not correct after changing gw ip to subnet that is not directly connected to ADC
622287 All-in-one debug enhancement to collect more information
623635 cookie security stability enhancement
634774 Adjust the default value for the health check parameters
658496 LLB nexthop gateway remain unchanged despite updated configuration
616356

SSL - Server Accepts Weak Diffie-Hellman Keys

SSH - Weak MAC Algorithms