Resolved issues
The following issues have been fixed in 7.6.2. To inquire about a particular bug, please contact Customer Service & Support.
AP Manager
|
Bug ID |
Description |
|---|---|
| 955558 |
FortiManager Cloud unsets the Protected Management Frame (PMF) setting when the SSID security mode is configured to OWE-enabled in the AP Manager. |
| 1040365 |
FortiManager Cloud is generating false vulnerability reports for certain FortiAPs:
|
| 1041445 | The AP attributes do not automatically update in the AP Manager. |
| 1050466 |
The 802.11ax-5g AP profile is missing for all FAPs that support WiFi 6. |
| 1060238 |
FortiManager Cloud is attempting to unset the FortiAP's name. |
| 1076200 |
Policy install fails due to FortiManager Cloud installs unexpected changes related to "<wifi_intf> address". |
Device Manager
|
Bug ID |
Description |
|---|---|
| 796842 |
Failed to reload the configuration due to the "datasrc invalid" error message. |
| 952422 |
IPsec templates created by SDWAN Overlay does not create tunnels for all the underlay interfaces. |
| 963025 |
When using the static route template, the "SD-WAN Zone" does not appear under the Interface column. |
| 1003899 |
FortiManager Cloud generates a VPN certificate that is not accepted by the FIPS-enabled FortiGate devices. |
| 1020257 |
Packet Capture feature for managed FortiGates does not work; it starts but immediately stops. |
| 1034355 |
When assigning a provisioning template with Admin Settings configuration, FortiManager Cloud changes the hostname of the device. |
|
1039591 |
The Link Status entries are blank under the Interfaces >>> Network. |
| 1041440 |
Some FortiGtate platforms (FGT-40F and FGT-60F)
does not support the " |
| 1050126 |
Setting up a FortiGate-HA with ZTP fails because the FortiLink is not deleted during the "HA config pushed to FGT" process. |
| 1053194 |
If the " |
| 1063635 | FortiManager Cloud does not support the "FortiWiFi-80F-2R-3G4G-DSL". |
| 1063835 |
FortiManager Cloud ZTP installation to FortiGate versions 7.2.8 and lower may fail due to
differing default " |
| 1063850 | FortiManager Cloud is attempting to install a "PRIVATE KEY" with every installation, even after retrieving the configuration. |
| 1074717 |
An error might be observed when the SD-WAN template health check name contains a space, displaying the following message: "Bad health check name...". |
| 1075052 |
Occasionally, installations may fail on FortiGates in HA mode due to a "Serial number does NOT match" error. This can happen if the HA device's serial number on FortiManager Cloud does not immediately update after a failover. |
|
1075747 |
SD-WAN Monitor does not display the members under the SD-WAN Rules (Map View or Table View). This issue is most likely to occur when "priority-zone" is configured. |
| 1080414 |
CSV import fails to set metadata variables due to old header format ("name"). |
|
1099824 |
FortiManager may push the ICAP and WAF profile configurations to low-end FortiGate models that do not support these features, potentially causing installation failures. |
FortiSwitch Manager
|
Bug ID |
Description |
|---|---|
| 1040428 |
FortiSwitch diagnostics tools do not display thecable test diagnose results, device information on Ports, and update Registration status. |
| 1053220 |
Unable to delete FortiSwitches when central management is enabled for FortiSwitch. |
| 1060242 |
Unable to change the FortiSwitch name from the FortiSwitch Manager. |
| 1075021 | Users with the "admin profile" rights cannot access the "FortiSwitch Manger". |
Others
|
Bug ID |
Description |
|---|---|
| 998198 |
When upgrading ADOM, the upgrade process fails with the following error: "invalid value - can not find import template 'XYZ'". |
| 1003711 |
During the FortiGate HA upgrade, both the primary and secondary FortiGates may reboot simultaneously, which can disrupt the network. This issue is more likely to occur in FortiGates that require disk checks, leading to longer boot times. |
| 1015890 |
Unable to upgrade ADOM from v6.4 to v7.0 due to "switch-controller traffic-policy" error. |
| 1055417 |
Unable to upgrade the firmware version of the FortiGates in HA cluster by using the firmware template when HA is in-sync status. The failure to upgrade FortiGate HA cluster firmware is caused by a crash in "dmserver" daemon. |
| 1058185 | FortiProxy policies not imported if the policies have either internet service or IPv6 used in the source or destination. |
| 1062128 |
After upgrading to the latest available build, the FortiManager Cloud GUI displays the warning message: "A new firmware version is available". |
| 1071064 | Unable to upgrade the ADOMs. |
| 1078947 |
Repeatedly testing the URL rating on FortiManager Cloud ( |
Policy and Objects
|
Bug ID |
Description |
|---|---|
| 843716 |
FortiManager Cloud tries to unset url-map for TCP forwarding ZTNA virtual server. |
| 963536 |
The policy package feature "Export to Excel" is not functioning. |
| 969923 | The "View Mode" button, which is used to check the interface in Pair View, is missing in the Firewall Policy under Policy Packages. |
| 971610 |
FortiManager Cloud does not able to import the Central SNAT, DNAT, DOS, local-in, and traffic shaping policies. |
| 978136 |
Occasionally, installation may fail due to an error message, "Waiting for another session", which prevents policies from being installed from FortiManager Cloud. During this issue, the following message may also appear: "Blocked by session id(XYZ) username(n/a)". This issue may be caused by a signal loss between the child and parent security console processes, leading the parent process to continue waiting for a copy result. |
| 986256 |
When creating the application list on the FortiManager Cloud, if the Category ID is set to 33 or 34, the installation does not display any errors. However, these invalid categories cannot be set on the FortiGate. Consequently, the assigned application list entry will be created without a specific category and will default to the "block" action. This behavior may cause network interruptions. |
| 991720 |
FortiManager Cloud still has an option to enable the "match-vip" through the policy package for "allow" policies. However, this is not supported anymore on the FortiGates. |
| 1004056 |
The installation may encounter an error related to Syntax support for the "ssh-enc-algo" command. |
| 1005161 |
The policy package status changes for all devices even when an address object is opened and saved without any modifications. This issue is particularly observed in objects utilizing the per-device mapping feature. |
| 1013948 |
After upgrading to FortiManager Cloud versions 7.2.5 or 7.4.3, the installation preview may hang. However, the installation process itself can be completed successfully. |
| 1014035 |
Video filter profile config is not getting pushed completely from FortiManager Cloud to FortiGate. |
| 1025012 |
Configuring the SSL/SSH inspection profile may result in the following error: "The server certificate replacement mode cannot support category exemptions." |
| 1029787 |
The Firewall Policy pane in the FortiManager Cloud GUI may occasionally display both "Standard Security Profiles" (SSL no-inspection and protocol default profiles) and "Security Profile Groups" simultaneously. |
| 1029921 |
Under the "Web Application Firewall" security profiles, users are unable to disable the signatures through the GUI. |
| 1039766 |
The Firewall Policy Lookup feature does not display the list of source interfaces for FortiGates. |
| 1040160 |
When installing policy to a FortiGate that uses FortiSandbox inline scanning on an AV profile, FortiManager Cloud unsets the configuration on install. |
| 1055795 | During device import via multiple CSV files at same time, some devices were imported successfully, while others encountered errors and had missing metadata variables. Additionally, FortiManager Cloud forced the admin to log out. When attempting to log back in, the following error message appeared: "ADOM not found". |
| 1057228 |
Importing the SDN Objects, with multiple tags, will addmultiple entries listed as SDN objects; when clients add anything into the filters section ,browser immediately redirects to an error page showing: " Oops! Sorry, an unexpected error has occurred " |
| 1066617 |
Unable to create the IP address object type wildcard, the following error message is displayed: "Invalid IP netmask". |
| 1066638 |
In 7.4 ADOM, installation to 7.6 FortiGates may unset firewall service tcp-portrange (if a firewall policy references a firewall service). |
| 1068736 |
Best Quality SDWAN rules installation may fail with the following error message: "Commit failed: Bad health check name". |
| 1070800 |
FortiManager Cloud is attempting to install the "cli-cmd-audit" command on a FortiGate (FortiGate-101E and FortiGate-2000E) running version 7.2.8, which does not support this command, leading to an installation error. |
|
1071226 |
Policy Lookup is not showing result as highlighted when the sections are not expended. |
| 1072354 |
FortiManager Cloud may attempt to install "ssl-ssh-profile" settings to "quic" objects. However, this syntax might not be supported on smaller FortiGate hardware platforms, particularly those with 2GB of RAM, such as the 60F/61F models. |
| 1076659 |
When policy package configured with policy block, installation to multiple devices may have copy fail errors if combined length of the Policy Block name and Policy name is greater than 35 characters and if the total number of such policies exceeds 1000. |
| 1079037 | The "internet-service-id" attribute is configurable in the FortiManager Cloud, whereas this attribute cannot be modified on the FortiGate. |
| 1079128 | ZTNA Server Per-Device Mapping may display a copy error failure if a new per-device mapping is created without specifying the object interface. |
| 1079678 |
FortiManager Cloud does not provide any warning when there is a "deny all" policy in the middle of a Policy Package. This can be still seen on the "task monitor". |
| 1086603 | Unable to create local-in policy with ISDB objects |
Script
|
Bug ID |
Description |
|---|---|
| 931088 |
Unable to delete VDOMs using the FortiManager Cloud script. Interfaces remain in the device database, causing the installation to fail. |
System Settings
|
Bug ID |
Description |
|---|---|
| 1005098 |
Verification of the LDAP Server through the LDAP Browser may display an "Operation Error" message. |
|
1027547 |
In certain cases, the License Status on FortiManager Cloud may be incorrectly displayed as "Expired" despite the license being active in the account. |
|
1047252 |
Incorrect warning message displayed in FortiManager Cloud GUI during upgrade from Feature build to Mature build. |
| 1060943 |
FGFM Tunnel does not automatically come back online after disabling the "Offline Mode". |
Common Vulnerabilities and Exposures
Visit https://fortiguard.com/psirt for more information.
| Bug ID | CVE references |
|---|---|
|
1102080 |
FortiManager Cloud7.6.2 is no longer vulnerable to the following CVE Reference:
|
|
1086927 |
FortiManager Cloud7.6.2 is no longer vulnerable to the following CVE Reference:
|