Version:

Version:

Version:

Version:

Version:

Version:

Version:

Version:

Version:


Table of Contents

What's New in FortiSandbox 3.2.0

The following is a list of new features and improvements in version 3.2.0:

  • This version supports MTA on all FortiSandbox models. The MTA adapter helps with analyzing email contents, URLs, and attachments. The MTA adapter is available with a contract.
  • You can choose regional DC for Windows Cloud VM.
  • This version starts phasing out support for Windows XP including custom Windows XP. If you currently use Windows XP, plan to migrate to a later Windows version.
  • You can set up two-factor authentication for FortiToken Cloud. This feature is only available for FortiSandbox appliances, not for FortiSandbox VM.
  • A new set-cfg-backup-key CLI command lets you configure a password for configuration file backup and restore.
  • PDF reports now support Russian language.
  • When configuring a network share in Scan Input > Network Share, a new Send notification email after each scan option lets you email a summary report for each network share scan.
  • In Scan Input > Network Share, a new Clone button lets you clone an existing network share. You only need to give it a different Network Share Name. You can clone a network share or quarantine.
  • Interface ports support LACP.
  • Users whose Admin Profile is not Super Admin can only view their own submissions. They cannot view other users' submissions.
  • Scan Input > File On-Demand and URL On-Demand now have an Enable AI option to use AI mode for scanning files or URLs.
  • System > Administrators has a new Default On-Demand Submit settings option to help you save time by setting defaults in Scan Input > File On-Demand and URL On-Demand. When you manually submit a file or URL, these settings are already configured. Each administrator can have their own default settings. Each HA node can have its own default settings.

    In this version, if you select Force to scan inside the following VMs, you cannot select Ubuntu, AndroidVM, or MACOSX.

  • The Job Rescan page is redesigned to follow the On-Demand page.
  • You can add FortiSandbox devices to FortiGate as a Security Fabric device. You can add a standalone FortiSandbox device or a FortiSandbox HA-Cluster primary (master) to FortiGate. For more information, see the FortiGate / FortiOS guides in the Fortinet Document Library.
  • When you download and install VM images in Virtual Machine > VM Images, the installation does not require rebooting.
  • This version introduces a new model FSA-1000F-DC that supports DC power supply.
  • In the ICAP adapter, you can select the interface port that FortiSandbox listens to. The default is port1. See Scan Input > Adapter.
  • This version has a new reliable TCP option for syslog server definition. In Log & Report > Log Servers, for Type, select Syslog TCP.
  • This version support TLS 1.3 for HTTPS access.
  • The green banner shows if FortiSandbox is running in regular mode or AI mode. After changing modes, refresh the page to see the change.

    To enable AI mode, use the CLI command ai-mode -e

    To disable AI mode, use the CLI command ai-mode -d

  • When sandboxing-embeddedurl is enabled, if the URL is a direct download link, the file is downloaded and sent with the URL to be scanned.
  • This version supports LDAP group filters.
  • From this version on, the first time you log in using the CLI, you must set the admin password (6–64 characters).

What's New in FortiSandbox 3.2.0

The following is a list of new features and improvements in version 3.2.0:

  • This version supports MTA on all FortiSandbox models. The MTA adapter helps with analyzing email contents, URLs, and attachments. The MTA adapter is available with a contract.
  • You can choose regional DC for Windows Cloud VM.
  • This version starts phasing out support for Windows XP including custom Windows XP. If you currently use Windows XP, plan to migrate to a later Windows version.
  • You can set up two-factor authentication for FortiToken Cloud. This feature is only available for FortiSandbox appliances, not for FortiSandbox VM.
  • A new set-cfg-backup-key CLI command lets you configure a password for configuration file backup and restore.
  • PDF reports now support Russian language.
  • When configuring a network share in Scan Input > Network Share, a new Send notification email after each scan option lets you email a summary report for each network share scan.
  • In Scan Input > Network Share, a new Clone button lets you clone an existing network share. You only need to give it a different Network Share Name. You can clone a network share or quarantine.
  • Interface ports support LACP.
  • Users whose Admin Profile is not Super Admin can only view their own submissions. They cannot view other users' submissions.
  • Scan Input > File On-Demand and URL On-Demand now have an Enable AI option to use AI mode for scanning files or URLs.
  • System > Administrators has a new Default On-Demand Submit settings option to help you save time by setting defaults in Scan Input > File On-Demand and URL On-Demand. When you manually submit a file or URL, these settings are already configured. Each administrator can have their own default settings. Each HA node can have its own default settings.

    In this version, if you select Force to scan inside the following VMs, you cannot select Ubuntu, AndroidVM, or MACOSX.

  • The Job Rescan page is redesigned to follow the On-Demand page.
  • You can add FortiSandbox devices to FortiGate as a Security Fabric device. You can add a standalone FortiSandbox device or a FortiSandbox HA-Cluster primary (master) to FortiGate. For more information, see the FortiGate / FortiOS guides in the Fortinet Document Library.
  • When you download and install VM images in Virtual Machine > VM Images, the installation does not require rebooting.
  • This version introduces a new model FSA-1000F-DC that supports DC power supply.
  • In the ICAP adapter, you can select the interface port that FortiSandbox listens to. The default is port1. See Scan Input > Adapter.
  • This version has a new reliable TCP option for syslog server definition. In Log & Report > Log Servers, for Type, select Syslog TCP.
  • This version support TLS 1.3 for HTTPS access.
  • The green banner shows if FortiSandbox is running in regular mode or AI mode. After changing modes, refresh the page to see the change.

    To enable AI mode, use the CLI command ai-mode -e

    To disable AI mode, use the CLI command ai-mode -d

  • When sandboxing-embeddedurl is enabled, if the URL is a direct download link, the file is downloaded and sent with the URL to be scanned.
  • This version supports LDAP group filters.
  • From this version on, the first time you log in using the CLI, you must set the admin password (6–64 characters).