Fortinet black logo

Other features and changes

Other features and changes

FortiProxy 7.4.0also includes the following features and changes:

New and consolidated isolator settings

Isolator settings are consolidated and enhanced in the following ways:

  • The Proxy Settings > Isolator Server and Security Profiles > Isolator Profile pages are consolidated as tabs under the new Policy & Objects > Isolator Setting page.

  • The new Policy & Objects > Isolator Setting page includes a new Setting tab where you can configure the default isolator profile and/or configure the action to perform on isolator sessions that do not match any existing policies (unmatched-session) or have missing information (defective-session).

New URL Lookup tab under Policy & Objects

Under Policy & Objects, use the new URL Lookup tab to check if a website has been rated and what category and classification it is filed as. If you find a site that has been wrongly categorized, use this page to request that the site be re-evaluated: https://www.fortiguard.com/webfilter.

Configure extra servers for domain controllers

Under User & Authentication > Domain Controller, when you create or edit a domain controller, you can create extra servers in the new Extra Servers window.

Alternatively, use the config extra-server option under the config user domain-controller command to configure extra servers for the domain controller.

Changed options for Log HTTP Transaction

Under Policy & Objects > Policy, when you create or edit a profile, the options for Log HTTP Transaction changed from Enable and Disable to All, Security Profiles, Disable.

Under Proxy Settings > Web Proxy Setting, the Http Transaction field is renamed Log HTTP Transaction and the options changed from Enable and Disable to All, Security Profiles, Disable.

Use image-analyzer to categorize images with unknown FortiGuard categories

The image-analyzer (IA) engine can be used to categorize images that had unknown categories from the FortiGuard web filter. The results of an IA scan are cached for twelve hours.

When a URL filter request is received, if the request's URL is in the cache then the cached result is returned. When an image response is received that has an unknown category and IA categorization is enabled, the image is sent to the IA engine for results. The IA engine results are added to the shared memory IA cache.

To enable image-analyzer categorization:
config webfilter profile
    edit <name>
        set ia-categorization enable
    next
end

License usage history

The License Usage History widget can show both the Global or Local SWG Bundle License, Browser Isolation License, and Content Analysis License usage.

The diagnose wad license glob-usage <period> CLI command shows the total license usage history of the Fabric group. The period can be seconds, minutes, hour, day, week, month, or year.

For example:

# diagnose wad license glob-usage day
days:
        furl:
                min=0, max=1, average=0
        fnbi:
                min=0, max=0, average=0
        fcas:
                min=1, max=2, average=1

Other features and changes

FortiProxy 7.4.0also includes the following features and changes:

New and consolidated isolator settings

Isolator settings are consolidated and enhanced in the following ways:

  • The Proxy Settings > Isolator Server and Security Profiles > Isolator Profile pages are consolidated as tabs under the new Policy & Objects > Isolator Setting page.

  • The new Policy & Objects > Isolator Setting page includes a new Setting tab where you can configure the default isolator profile and/or configure the action to perform on isolator sessions that do not match any existing policies (unmatched-session) or have missing information (defective-session).

New URL Lookup tab under Policy & Objects

Under Policy & Objects, use the new URL Lookup tab to check if a website has been rated and what category and classification it is filed as. If you find a site that has been wrongly categorized, use this page to request that the site be re-evaluated: https://www.fortiguard.com/webfilter.

Configure extra servers for domain controllers

Under User & Authentication > Domain Controller, when you create or edit a domain controller, you can create extra servers in the new Extra Servers window.

Alternatively, use the config extra-server option under the config user domain-controller command to configure extra servers for the domain controller.

Changed options for Log HTTP Transaction

Under Policy & Objects > Policy, when you create or edit a profile, the options for Log HTTP Transaction changed from Enable and Disable to All, Security Profiles, Disable.

Under Proxy Settings > Web Proxy Setting, the Http Transaction field is renamed Log HTTP Transaction and the options changed from Enable and Disable to All, Security Profiles, Disable.

Use image-analyzer to categorize images with unknown FortiGuard categories

The image-analyzer (IA) engine can be used to categorize images that had unknown categories from the FortiGuard web filter. The results of an IA scan are cached for twelve hours.

When a URL filter request is received, if the request's URL is in the cache then the cached result is returned. When an image response is received that has an unknown category and IA categorization is enabled, the image is sent to the IA engine for results. The IA engine results are added to the shared memory IA cache.

To enable image-analyzer categorization:
config webfilter profile
    edit <name>
        set ia-categorization enable
    next
end

License usage history

The License Usage History widget can show both the Global or Local SWG Bundle License, Browser Isolation License, and Content Analysis License usage.

The diagnose wad license glob-usage <period> CLI command shows the total license usage history of the Fabric group. The period can be seconds, minutes, hour, day, week, month, or year.

For example:

# diagnose wad license glob-usage day
days:
        furl:
                min=0, max=1, average=0
        fnbi:
                min=0, max=0, average=0
        fcas:
                min=1, max=2, average=1