Fortinet black logo

Version F 7.2.2

Version F 7.2.2

Ticket #

Description

889125

FortiNAC Azure zip file appears to be corrupt.

883680 Updated API path for device queries when Firewall Session Polling FortiGates runs 7.0 and higher.
883221 By default, FortiNAC now processes static mac address entries for Arista switches.
875720 Updated prepared statement to handle sorting order correctly for issue where REST API v2 query for Scan Results returns no results.
880811 Solved issue where API GET calls which return a group can be infinitely recursive.
880796 Removed Logical Network required check from Access Configuration.
882260 Always allow outbound TCP connections regardless of "allowaccess" config.
848851 Added hs_err files to grab-log-snapshot.
882265 Fixed endpoint serial number sent by FortiNAC to FAZ.
882782 Fixed NullPointerException in MessagingGatewayPlugin.sendSMS().
878102 Fixed RADIUS SSID Parsing for Extreme Campus Controller.
894554 Remove the early development code that favored MGMT ports over port1-N.
894157 Fixed broken Send SMS button.
0888616, 0893561 Fixed Scheduler GUI error due to obsolete properties.
883068 Reworked how FortiNAC handles mobile numbers when sending SMS messages.
869316 Fixed issue where Events & Alarms gets many of "Authentication Failures" coming from Wi-Fi users.
893662 Addressed issue where TFTP transfers may not work on Azure and GCP; TFTP connection tracking should always be enabled.
856710 Added new tool to get/set image header info.
889132 Updated Global Custom Scans on deleting from NCM.
884345 Added check to validate values passed as SNMP Protocol, Auth Protocol and Priv Protocol. Updated error message to pass back the valid values.
890009 Added new VLAN table header for the Ruijie S5310 switch.
884986 Fixed issue removing tomcat on HA systems.
887915 Fixed Custom Scans not being disabled and hanging EPC Scan references to custom scans.
890929 Fixed restarting server after uploading new license key through settings view.
890923 Fixed issue where restartCampusMgr is not parsing arguments correctly.
890164 Fixed execute tcpdump command not running after update.
887864 Added DirectoryAgentServer to list of plugins that NCM loads.
890087 Install Button in UI does not display FortiNAC-OS versions correctly.
882129 Fixed integration issues with Meraki Cloud API which was causing L2 and L3 to failures.
878836 Intune MDM Integration 'Invalid Audience' when using an App registration in the Azure Government cloud.
866343 Added support for proxy radius for Arista switches for dot1x and FortiNAC for MAB.
887840 Current PCI addresses for Ethernet ports do not align with latest hardware sample for FortiNAC-500F. The sample has 4 ports Port1...Port4
888212 Endpoint Compliance Scans are not replicated.
874812 Added Private VLAN support for Cisco switches that are mapped to mibId 20.
884329 Fixed missing BasePolicyPermissions checks that stopped Base License from accessing User/Host profiles and Network Access Policies views.
881899 Added "set domain" & "unset domain" command to DNS configuration in NAC-cli.
895085 Improved proxy Radius response times by postponing the addition of new rogue hosts to the Rogue Clients group.
867183 Added new device attribute MultiKnownHostEntries. When set to true, FortiNAC will check the /bsc/.ssh/known_hosts for all potential matches and determine which to use.
896150 Adjustment to run FortiNAC-OS VM on Nutanix.
896471 Fixed licensetool to display the subscription level from the NCM
894065 Reverted "CLI image upgrade produces undesirable warnings". Use sfdisk to set bootable flag.
895012 Updated biosdump tool.
897921 Removed hostname column from Firewall Sessions view
899047 Replaced systemd-run -M VIRT_WINBIND_INST systemctl is-enabled winbindWith: systemctl is-enabled -M VIRT_WINBIND_INST winbind
774213 Added Kerberos support for admin and users authentication on FNAC CA & FNAC-M.
899362 FileNotFoundException in CampusManager.getPID().
877942 Added entries to hibernateServer.properties to purge older entries from table.
893582 Changing default credentials logs an error
874363 SSLVPN user loses and receive TAG periodically.
881321 Removed duplicate table refreshes when changing reply filter via toolbar.
879297 Fixed config wizard erroneous ip change warning on NAC-OS.
894933 Added FNCHW0 product to jenkins build script.
901240 Read certs from bios and make EFFECTIVE keystore.
900774 Enabled allowaccess ssh by default on hardware.
900451 Fixed issue with execute restore image version check failing
897601 Added support for reading VLANs and the mac-address-table.
900284 Telnet/SSH sessions take a long time to exit for Juniper devices.
899075 NPE in readarp function causing an incomplete ARP table for Sonicwall appliance.
902072 Replaced Hashtable with ConcurrentHashMap for DatabaseServer.savedObjects.
835149 When an endpoint is registered as a device in Host AND Inventory/Topology, it is not possible to edit the host role. The option is available, but changes do not apply.

891903

FortiNAC Manager on FortiNAC-OS (FNC-MX) does not check if the managed FortiNAC-OS appliances are the same type. The wrong .out update file may be pushed. Workaround: Update appliances from the local Administration UI instead of through the Manager.

894165

Test Device Profiling Rule results in "Rule Does Not Match" if rule name contains a double space between words. Workaround: Remove the extra space.

897151

Remove invalid device mapping for C9800-AP Software.

855043 Endpoint Compliance Scans - POST calls not working as expected.
875665 Default to single event map when rule not supplied in POST to /logging/event-alarm-mapping.
875663 Rest API GET /logging/event-alarm-mapping now returns results.
836557 Fixed "Unescaped left brace" errors reported by the Config Wizard.
0820108, 0820234 Policy changes audit missing enabled state.
0880386, 0861995 Fixed unnecessary NoSuchDatabaseObjectException.
0884322, 0855084 Fixed issue with Device Profiling Rule view where type would not render correctly.
889611 Fixed Guest enable/disable status in the GUI.
890052 Database Backup/Restore does not work after upgrading from 9.4 to 7.2F. Workaround: reboot appliance or restart nac-db-restore service.
888218 Suppress IOExceptions in master log when using SSHv1 with a device that does not support SSHv1.
849455 Fixed filtering of Network Device Roles by last modified by / last modified date
875153 Endpoint-Compliance Scan not showing up in the UI because they are not getting added to the file directory when created through API.
898014 Secondary CA is not restarting after running HA config.
888213 Do not attempt to delete temporarily created device from database as it will not be found.
882207 Fix for hitting ctrl-c during migration password entry displaying stack trace.
891339 Fixed issue running diagnose tail with nonexistent files.

Version F 7.2.2

Ticket #

Description

889125

FortiNAC Azure zip file appears to be corrupt.

883680 Updated API path for device queries when Firewall Session Polling FortiGates runs 7.0 and higher.
883221 By default, FortiNAC now processes static mac address entries for Arista switches.
875720 Updated prepared statement to handle sorting order correctly for issue where REST API v2 query for Scan Results returns no results.
880811 Solved issue where API GET calls which return a group can be infinitely recursive.
880796 Removed Logical Network required check from Access Configuration.
882260 Always allow outbound TCP connections regardless of "allowaccess" config.
848851 Added hs_err files to grab-log-snapshot.
882265 Fixed endpoint serial number sent by FortiNAC to FAZ.
882782 Fixed NullPointerException in MessagingGatewayPlugin.sendSMS().
878102 Fixed RADIUS SSID Parsing for Extreme Campus Controller.
894554 Remove the early development code that favored MGMT ports over port1-N.
894157 Fixed broken Send SMS button.
0888616, 0893561 Fixed Scheduler GUI error due to obsolete properties.
883068 Reworked how FortiNAC handles mobile numbers when sending SMS messages.
869316 Fixed issue where Events & Alarms gets many of "Authentication Failures" coming from Wi-Fi users.
893662 Addressed issue where TFTP transfers may not work on Azure and GCP; TFTP connection tracking should always be enabled.
856710 Added new tool to get/set image header info.
889132 Updated Global Custom Scans on deleting from NCM.
884345 Added check to validate values passed as SNMP Protocol, Auth Protocol and Priv Protocol. Updated error message to pass back the valid values.
890009 Added new VLAN table header for the Ruijie S5310 switch.
884986 Fixed issue removing tomcat on HA systems.
887915 Fixed Custom Scans not being disabled and hanging EPC Scan references to custom scans.
890929 Fixed restarting server after uploading new license key through settings view.
890923 Fixed issue where restartCampusMgr is not parsing arguments correctly.
890164 Fixed execute tcpdump command not running after update.
887864 Added DirectoryAgentServer to list of plugins that NCM loads.
890087 Install Button in UI does not display FortiNAC-OS versions correctly.
882129 Fixed integration issues with Meraki Cloud API which was causing L2 and L3 to failures.
878836 Intune MDM Integration 'Invalid Audience' when using an App registration in the Azure Government cloud.
866343 Added support for proxy radius for Arista switches for dot1x and FortiNAC for MAB.
887840 Current PCI addresses for Ethernet ports do not align with latest hardware sample for FortiNAC-500F. The sample has 4 ports Port1...Port4
888212 Endpoint Compliance Scans are not replicated.
874812 Added Private VLAN support for Cisco switches that are mapped to mibId 20.
884329 Fixed missing BasePolicyPermissions checks that stopped Base License from accessing User/Host profiles and Network Access Policies views.
881899 Added "set domain" & "unset domain" command to DNS configuration in NAC-cli.
895085 Improved proxy Radius response times by postponing the addition of new rogue hosts to the Rogue Clients group.
867183 Added new device attribute MultiKnownHostEntries. When set to true, FortiNAC will check the /bsc/.ssh/known_hosts for all potential matches and determine which to use.
896150 Adjustment to run FortiNAC-OS VM on Nutanix.
896471 Fixed licensetool to display the subscription level from the NCM
894065 Reverted "CLI image upgrade produces undesirable warnings". Use sfdisk to set bootable flag.
895012 Updated biosdump tool.
897921 Removed hostname column from Firewall Sessions view
899047 Replaced systemd-run -M VIRT_WINBIND_INST systemctl is-enabled winbindWith: systemctl is-enabled -M VIRT_WINBIND_INST winbind
774213 Added Kerberos support for admin and users authentication on FNAC CA & FNAC-M.
899362 FileNotFoundException in CampusManager.getPID().
877942 Added entries to hibernateServer.properties to purge older entries from table.
893582 Changing default credentials logs an error
874363 SSLVPN user loses and receive TAG periodically.
881321 Removed duplicate table refreshes when changing reply filter via toolbar.
879297 Fixed config wizard erroneous ip change warning on NAC-OS.
894933 Added FNCHW0 product to jenkins build script.
901240 Read certs from bios and make EFFECTIVE keystore.
900774 Enabled allowaccess ssh by default on hardware.
900451 Fixed issue with execute restore image version check failing
897601 Added support for reading VLANs and the mac-address-table.
900284 Telnet/SSH sessions take a long time to exit for Juniper devices.
899075 NPE in readarp function causing an incomplete ARP table for Sonicwall appliance.
902072 Replaced Hashtable with ConcurrentHashMap for DatabaseServer.savedObjects.
835149 When an endpoint is registered as a device in Host AND Inventory/Topology, it is not possible to edit the host role. The option is available, but changes do not apply.

891903

FortiNAC Manager on FortiNAC-OS (FNC-MX) does not check if the managed FortiNAC-OS appliances are the same type. The wrong .out update file may be pushed. Workaround: Update appliances from the local Administration UI instead of through the Manager.

894165

Test Device Profiling Rule results in "Rule Does Not Match" if rule name contains a double space between words. Workaround: Remove the extra space.

897151

Remove invalid device mapping for C9800-AP Software.

855043 Endpoint Compliance Scans - POST calls not working as expected.
875665 Default to single event map when rule not supplied in POST to /logging/event-alarm-mapping.
875663 Rest API GET /logging/event-alarm-mapping now returns results.
836557 Fixed "Unescaped left brace" errors reported by the Config Wizard.
0820108, 0820234 Policy changes audit missing enabled state.
0880386, 0861995 Fixed unnecessary NoSuchDatabaseObjectException.
0884322, 0855084 Fixed issue with Device Profiling Rule view where type would not render correctly.
889611 Fixed Guest enable/disable status in the GUI.
890052 Database Backup/Restore does not work after upgrading from 9.4 to 7.2F. Workaround: reboot appliance or restart nac-db-restore service.
888218 Suppress IOExceptions in master log when using SSHv1 with a device that does not support SSHv1.
849455 Fixed filtering of Network Device Roles by last modified by / last modified date
875153 Endpoint-Compliance Scan not showing up in the UI because they are not getting added to the file directory when created through API.
898014 Secondary CA is not restarting after running HA config.
888213 Do not attempt to delete temporarily created device from database as it will not be found.
882207 Fix for hitting ctrl-c during migration password entry displaying stack trace.
891339 Fixed issue running diagnose tail with nonexistent files.