What's new
FortiAppSec Cloud 25.4 offers the following new features:
FortiAI Assistant Enhancements
The FortiAI Assistant now supports analyzing Threat Analytics Incidents and Attack Logs from on-premises devices. enable directly from the log by clicking Analyze with AI, or by clicking the FortiAI icon in the top-right corner of the page.
For more information, please refer to FortiAI Assistant.
New 30-day License Upgrade Trial
If you have an active license, you can now explore more advanced features from other FortiAppSec Cloud Plans with a free 30-day upgrade trial.
To enable, please contact Fortinet Sales.
Contract and Usage Status Alert
The Home page now displays alerts for contract and usage updates, such as license expirations, overages, and other critical notices.
Scheduled System Upgrade Notifications
FortiAppSec Cloud now displays banners notifying users of upcoming system upgrades and maintenance windows, improving visibility of potential feature unavailability and service delays.
WAF
Role-based Permissions Granularity Enhancement
To provide additional granularity for role-based access control, the WAF- Application permission profile in FortiCloud is now divided into WAF- Application Management, WAF- Application Networking, and WAF- Application Security. This allows for more precise control over permissions in the WAF module. For more details, please refer to the FortiAppSec Cloud User Guide.
For details on how this affects your applications, please refer to FortiCloud IAM.
API Gateway Template backend enhancements
The API Gateway feature has been restructured to improve security and fix permission issues.
Changing an API Gateway's template inheritance now automatically regenerates API keys. Replace any existing keys in use with the new ones to avoid service interruptions.
For more information, please refer to API Gateways.
GSLB
New outbound connections IP address
If you have connected a FortiGate server to a FortiAppSec Cloud GSLB application, you have received an email from no-reply-appsec@fortinet.com requesting you to update your allowlist.
To ensure uninterrupted connectivity, update your configuration to redirect all outbound connections to 44.241.230.143
Backend enhancements
GSLB now provides improved Security Fabric connectivity.
Advanced Bot Protection
New self-service onboarding Capability
To improve efficiency, a new Advanced Bot Protection self-service Auto-Discovery capability has been added to replace manual Pre-Provisioning in application onboarding.
For details on the new concepts introduced in the onboarding system and configuration instructions, refer to Creating ABP Applications.