Fortinet Document Library

Version:

Version:

Version:

Version:

Version:

Version:

Version:

Version:

Version:

Version:

Version:

Version:

Version:


Table of Contents

Resolved issues

The following issues have been fixed in version 6.2.1. For inquiries about a particular bug, contact Customer Service & Support.

Endpoint control

Bug ID

Description

553718 FortiClient forces password change before FortiGate local user password expires.

553977

FortiClient always sends previous avatar image to EMS when configured to send the OS avatar.

554236

FortiClient still reports that it is connected to FortiGate when FortiGate changes the registration port.

550158

FortiClient (Windows) fails to unregister when EMS is not reachable.

563396

FortiClient shows all features when registered to on-premium EMS with Sandbox license only.

Malware Protection

Bug ID

Description

557098 FortiClient online installer fails to trigger AV scan on clean system.
563144 FortiClient registers to Windows security center even if no AV is installed.

Sandbox

Bug ID

Description

563467 Right-clicking a file to select Sandbox scan in the context menu resets the number of files submitted for Sandbox scan.

563697

fortimon3 service does not run when no Sandbox is installed.

564177

FortiClient blocks file access when it reaches the daily count limit.

564363 FortiClient Sandbox Cloud daily count resets when EMS profile switches between physical and cloud Sandbox.

Web Filter

Bug ID

Description

416909

RTP should support blocking malicious webpages and known attack communication channels when only AV is installed.

450181 FortiClient makes connections to FortiGuard servers even when Web Filter and FortiProxy are disabled.
529450 FortiClient shows Unrated for HTTPS sites while HTTP shows correct category.

551211

Client Web Filtering When On-Net setting in EMS profile fails to work for Chrome plugin.

561788

FortiClient Web Filter plugin blocks any URL as unknown when FortiClient Web Filter is disabled.

Remote Access

Bug ID

Description

538722

VPN-only free client shows always-up/auto-connect.

538752

EMS settings for <show_remember_password>, <show_alwaysup>, and <show_autoconnect> should override similar FortiOS settings.

551538 Onnet FortiClient triggers VPN autoconnect after system reboot even when autoconnect only when offnet is enabled.
551919 Fails to reconnect from FortiTray if username has "\" or domain user format.
554014 When using local machine certificate, SSL VPN resilience is stuck and does not try next available remote gateway.
555676 Dialup IPsec VPN with DHCP over IPsec VPN has no Internet access with split tunneling.
558488 SSL VPN always_up does not work when connecting from tray.
559907 IPsec VPN cannot connect if started from tray with GUI open.
561826 SSL VPN with FortiToken two-factor authentication (2FA) does not automatically reconnect when network connection reestablishes after network failure.
563257 FortiClient (Windows) cannot save phase 2 DH group properly.
563263 PFS DH group is 1 on GUI, but IPsec daemon sent 5 to FortiOS.
565074 VPN before logon does not work properly.
566503 With FortiClient registered to EMS, always up does not work properly with FortiToken 2FA.
567911 FortiToken 2FA fails to make VPN connection.
568019 Client certificate is empty on GUI when connecting from FortiTray when tunnel requires a certificate.

Vulnerability Scan

Bug ID

Description

394362 FortiClient requests reboot even if automatic patching is disabled.

538267

FortiClient fails to create scheduled vcm scan when EMS enables maintenance setting.

Install and upgrade

Bug ID

Description

566360

.exe installer fails to run except on US-English Windows.

Other

Bug ID

Description

534194 fcdblog rewrites hosts file without any changes.

545427

FortiClient scheduled daily update from MFGD communicates with MFGD very frequently.

548918 FortiClient AV causes high CPU usage on endpoints.

552481

Standalone FSSO fails to work after installation with FortiClientSSOSetup_6.2.0.0780_x64.zip.

565128

FortiClient (Windows) should automatically update avatar page based on EMS settings.

566703

FortiTray crashes randomly.

Common Vulnerabilities and Exposures
Bug ID Description

433685

FortiClient (Windows) is no longer vulnerable to the following CVE reference:

  • CVE-2019-5589

559607

FortiClient (Windows) is no longer vulnerable to the following CVE reference:

  • CVE-2019-6692

Resolved issues

The following issues have been fixed in version 6.2.1. For inquiries about a particular bug, contact Customer Service & Support.

Endpoint control

Bug ID

Description

553718 FortiClient forces password change before FortiGate local user password expires.

553977

FortiClient always sends previous avatar image to EMS when configured to send the OS avatar.

554236

FortiClient still reports that it is connected to FortiGate when FortiGate changes the registration port.

550158

FortiClient (Windows) fails to unregister when EMS is not reachable.

563396

FortiClient shows all features when registered to on-premium EMS with Sandbox license only.

Malware Protection

Bug ID

Description

557098 FortiClient online installer fails to trigger AV scan on clean system.
563144 FortiClient registers to Windows security center even if no AV is installed.

Sandbox

Bug ID

Description

563467 Right-clicking a file to select Sandbox scan in the context menu resets the number of files submitted for Sandbox scan.

563697

fortimon3 service does not run when no Sandbox is installed.

564177

FortiClient blocks file access when it reaches the daily count limit.

564363 FortiClient Sandbox Cloud daily count resets when EMS profile switches between physical and cloud Sandbox.

Web Filter

Bug ID

Description

416909

RTP should support blocking malicious webpages and known attack communication channels when only AV is installed.

450181 FortiClient makes connections to FortiGuard servers even when Web Filter and FortiProxy are disabled.
529450 FortiClient shows Unrated for HTTPS sites while HTTP shows correct category.

551211

Client Web Filtering When On-Net setting in EMS profile fails to work for Chrome plugin.

561788

FortiClient Web Filter plugin blocks any URL as unknown when FortiClient Web Filter is disabled.

Remote Access

Bug ID

Description

538722

VPN-only free client shows always-up/auto-connect.

538752

EMS settings for <show_remember_password>, <show_alwaysup>, and <show_autoconnect> should override similar FortiOS settings.

551538 Onnet FortiClient triggers VPN autoconnect after system reboot even when autoconnect only when offnet is enabled.
551919 Fails to reconnect from FortiTray if username has "\" or domain user format.
554014 When using local machine certificate, SSL VPN resilience is stuck and does not try next available remote gateway.
555676 Dialup IPsec VPN with DHCP over IPsec VPN has no Internet access with split tunneling.
558488 SSL VPN always_up does not work when connecting from tray.
559907 IPsec VPN cannot connect if started from tray with GUI open.
561826 SSL VPN with FortiToken two-factor authentication (2FA) does not automatically reconnect when network connection reestablishes after network failure.
563257 FortiClient (Windows) cannot save phase 2 DH group properly.
563263 PFS DH group is 1 on GUI, but IPsec daemon sent 5 to FortiOS.
565074 VPN before logon does not work properly.
566503 With FortiClient registered to EMS, always up does not work properly with FortiToken 2FA.
567911 FortiToken 2FA fails to make VPN connection.
568019 Client certificate is empty on GUI when connecting from FortiTray when tunnel requires a certificate.

Vulnerability Scan

Bug ID

Description

394362 FortiClient requests reboot even if automatic patching is disabled.

538267

FortiClient fails to create scheduled vcm scan when EMS enables maintenance setting.

Install and upgrade

Bug ID

Description

566360

.exe installer fails to run except on US-English Windows.

Other

Bug ID

Description

534194 fcdblog rewrites hosts file without any changes.

545427

FortiClient scheduled daily update from MFGD communicates with MFGD very frequently.

548918 FortiClient AV causes high CPU usage on endpoints.

552481

Standalone FSSO fails to work after installation with FortiClientSSOSetup_6.2.0.0780_x64.zip.

565128

FortiClient (Windows) should automatically update avatar page based on EMS settings.

566703

FortiTray crashes randomly.

Common Vulnerabilities and Exposures
Bug ID Description

433685

FortiClient (Windows) is no longer vulnerable to the following CVE reference:

  • CVE-2019-5589

559607

FortiClient (Windows) is no longer vulnerable to the following CVE reference:

  • CVE-2019-6692