What's New
The following table summarizes the new features and enhancements in this release. For details, see the FortiMail Administration Guide.
AntiSpam/AntiVirus
|
Feature |
Description |
|---|---|
|
On-premise Exchange Email Scan |
In addition to real-time and on-demand email scan from Microsoft 365 and Gmail, on-premise MS Exchange email can be scanned now. |
|
FortiGuard SRR |
For Business Email Compromise (BEC) scanning, set score for strong or weak relation result obtained from querying FortiGuard Sender and Recipient Relation (SRR). |
|
Spam Submission per Domain |
When there are multiple protected domains, the domain administrators can only view the spam submission from their own domains. |
| QR Code URL Scan in PDF |
Support QR code URL scan in PDF attachments. |
|
STIX/TAXII threat feeds |
Introduction of the STIX/TAXII threat feeds function. |
|
System/Domain Quarantine Notification |
Notifications can be sent to senders, recipients, or any specified users so that they can request to release the quarantined email. |
|
DMARC Overrides SPF and DKIM |
If enable, DMARC result will take precedence over SPF and DKIM result. |
|
Sender Alignment Enhancement |
Add setting to allow Sender Alignment check to bypass Reply-to and Displayname alignment check. |
|
LZH/LHA File Scan |
Support to scan archive contents of LZH/LHA file format. |
|
Intra Domain DKIM Signing |
Add option to DKIM sign email sent from one protected domain to the same domain. |
|
Exempt Image Source from Antispam Actions |
Add options to exempt URLs of images from rewriting, removal, and FortiIsolator isolation under Security > Disarm & Reconstruction > URL. |
Mail Delivery
|
Feature |
Description |
|---|---|
|
Delivery Status View for Outgoing Email |
Record mail delivery status in history logs. |
|
Access Control Delivery Policy Enhancement |
Add LDAP group option for sender/recipient pattern, and add IP group for Destination IP/netmask. |
System
|
Feature |
Description |
|---|---|
|
Group HA Support |
Introduced group HA concept. Two HA modes are supported now: member HA as before, and the new group HA. A new member can join the member/group HA by sending a request. |
|
IBE Notification: URL-base per Domain |
Each protected domain will use its own domain based IBE URL to send IBE notification emails to its external IBE recipients. |
|
Recipient Exclusion from Recipient Policy |
Support recipient exclusion settings in recipient policy. |
|
Config Download Option Before Upgrading |
Enhance GUI popup to download the config file before upgrading. |
|
SSO Enhancement |
Support dynamic IP addresses within the same SAML session. |
|
Support HVM on XenServer |
Support HVM (hardware virtual machine) on XenServer. |
|
Support Reverse DNS Pattern in IP Policy |
In the IP-based policy, a pattern can be entered to compare to the result of a reverse DNS look-up of the IP address of the SMTP client delivering the email message. |
|
DMARC Report Collector and Visualization |
Collect DMARC reports and display statistics on the dashboard. |
|
Global Editing Tool for User Preference |
The user preferences of the selected users/all domain users can be edited all at once. |
|
Web Release Page Customization |
Support quarantine web release page customization under System -> Customization -> Custom Message. |
Log and Report
|
Feature |
Description |
|---|---|
|
Syslog Enhancement |
Add option for syslog message delimiters when logging to syslog server with TCP. |
|
Time Zone in Logs |
Add time zone information to raw logs. |
Admin GUI/Webmail
|
Feature |
Description |
|---|---|
|
Calendar Enhancement |
Calendar and CalDav server: add task (VTODO) support. |
|
Dedicated IBE URL |
Dedicated IBE portal for encrypted email access now. It was shared with the regular mail access before. |
|
Use LDAP Display Name for Webmail |
Added settings in LDAP profile to allow the LDAP-authenticated webmail user to automatically retrieve the display name in the LDAP server, instead of the user preference. |