FortiClient został właśnie zaktualizowany do wersji 6.0.3. Producent wspomina o dwóch nowych funkcjonalnościach Clienta, czyli obsługa dzielonego tunelowania DNS dla SSL VPN oraz możliwość zarządzania dostępem do portów USB na punktach końcowych. Aktualizacja zawiera wiele poprawek wykluczających błędy znane użytkownikom z poprzedniej wersji oprogramowania. Zapraszamy do zapoznania się z listą naniesionych poprawek.
Rozwiązane problemy:
Malware Protection
Bug ID Description
477831 FortiClient (Windows) AV causes compilation error.
483523 Black screen for a few minutes after login/logoff.
507954 FortiClient (Windows) dashboard shows Sandbox as unauthorized even when the Test button shows it as valid.
511291 FortiClient (Windows) reports signature to be out-of-date if it is updated to the signature more than X days ago, regardless of version.
512236 AV RTP does not register to the Security Center in Windows 10 RS5.
512771 Skype-received files do not trigger Sandbox scan.
513591 Able to delete/restore quarantine file via virus alert popup when managed via EMS.
518062 FortiClient (Windows) failed to block USB access for the first insertion when using the system built-in policy to block USB access.
Web Filter
Bug ID Description
469696 Safe Search does not work.
516012 FortiClient (Windows) Web Filter enable/disable setting change failed to apply.
Application Firewall
Bug ID Description
509902 Application Firewall cannot be set to invisible.
Remote Access
Bug ID Description
404746 SSL VPN with certificate authorization does not work from tray, but works from console.
450272 IPsec resiliency error message '”failed to launch IPsec service”.
472223 Unable to select certificate for SSL VPN.
486712 Connecting to FortiGate clears authorized machine configuration (NAC node).
496190 Current personal VPN vibrates back to others in dual registration mode.
504185 FortiClient (Windows) console on Windows 7 PCs inaccessible in Windows system tray – SSL VPN failure.
508186 Phase 1/phase 2 IKE proposal not populated for IPv6 tunnel.
508392 With IPv6 as remote gateway, custom port changes to the default after editing/saving.
508400 Failed to remove split tunnel.
510060 Save password, Auto-connect, and Always up do not display when VPN is down.
510375 6.0.2 RC1 fails to connect to VPN from task tray with user certificate authentication (no username or password).
510748 If FortiClient (Windows) 5.6.x is installed on a different drive (E:\), manual upgrade to 6.0.x completes, but FortiClient (Windows) does not work after reboot.
510860 If Prompt on connect is selected, certificate filter does not work properly.
510945 Right-click is not working for username and password VPN fields.
511084 RSA new PIN mode does not work for IPsec v4/v6 tunnel.
511100 FortiClient (Windows) failed to switch auto-connect tunnels when FortiClient (Windows) is registered to FortiGate.
511110 FortiClient (Windows) VPN dashboard shows empty VPN tunnel after connecting from FortiTray.
511844 FortiClient (Windows) failed to show IP address for IPsec VPN.
513171 FortiClient (Windows) not displaying actual username used for SSL VPN tunnel.
513802 FortiClient (Windows) should report that VPN connection failed after two wrong passwords.
514666 Connected SSL VPN failed to display tunnel info when password contained special characters.
516090 FortiClient (Windows) IPsec VPN accepts invalid server certificate with IKEv2.
516156 Backing up and restoring FortiClient (Windows) causes loss of IPsec VPN pre-shared key.
516469 Should not display certificate dropdown for tunnel without certificate configured.
GUI
Bug ID Description
492890 FortiClient (Windows) malware GUI says malware is quarantined when it is not.
511104 Default tab not working.
515821 Vulnerability schedule scan weekly is undefined in GUI.
Install and upgrade
Bug ID Description
497115 GUI is blank.
505191 Remote Access (IPsec) loses saved username/password when upgrading to 6.0.0.
510335 Update Diagnostic Tool’s collected information.
513716 Unable to upgrade FortiClient (Windows) 6.0.1 to 6.0.2 from EMS with password lock enabled.
517047 Fortitray.exe running PowerShell error prompt.
518212 Unable to open FortiClient (Windows) GUI in Windows 10 Education.
Install and uninstall
Bug ID Description
510765 FortiClient (Windows) has many leftover files after uninstallation.
Other
Bug ID Description
510979 Remembered FortiGate list needs to refresh after clicking Forget.
516401 MSFT_HW_API does not survive ephemeral Microsoft service outages.
Znane problemy do rozwiązania:
Endpoint Control
Bug ID Description
512783 FortiShield blocks FortiClient.exe from changing the registry.
516325 Software Inventory not showing all applications installed on the user PC.
Malware Protection
Bug ID Description
481003 FortiClient causing longer logon time to terminal server(Citrix) for first user.
489052 Memory leak caused by FortiAptFilter.sys.
495880 Non-admin domain users can stop/pause USB media scans enforced by EMS configuration.
496084 AV exclusion list does not work in on-demand scan if %windir% or %systemroot% variables are used.
496326 FortiClient is sending intermittently files from local disk to the FortiSandbox for analysis.
499891 Scan on insertion does not work all the time.
507588 AV custom scan still scans files in the exclusion list.
509624 Newly installed FortiClient with RTP enabled does not disable Windows Defender’s Real Time Protection on Windows 7.
514009 FortiClient (Windows) fails to inject into Firefox application.
516298 Windows 10 build 1803 reports No Anti-Virus Installed after FortiClient (Windows) 6.0.2 is installed via EMS.
516431 FortiClient (Windows) Sandbox still shows to submit trusted files on network driver.
516704 AV should recognize Windows signed files.
516841 FortiClient (Windows) Sandbox still holds files with sizes larger than 200 MB until timeout.
518018 FortiClient (Windows) failed to configure custom schedule AV scan for network path.
518873 New empty line was added to the host file after each enable and then disable Safe Search configuration.
519096 FortiClient (Windows) failed to log USB block action for Google Pixel 2.
519098 Potential wrong block state for USB access after FortiClient (Windows) was uninstalled.
519213 FortiClient (Windows) failed to write on demand scan information to fclog.dat file.
Web Filter
Bug ID Description
489821 FortiClient 5.6.6 and Windows 8.1 SSL error.
Application Firewall
Bug ID Description
482920 FortiClient blocking DF set response.
509128 FortiClient 6.0.1 Application Firewall is blocking Avaya.
Remote Access
Bug ID Description
450245 Need to add a switch for the number of auto-connect retries.
452476 FortiClient registers all interfaces’ IP addresses to the DNS server, when SSL VPN tunnel is up.
486362 FortiClient 5.6.6 disables Windows IKE and AuthIP IPsec keying modules when connecting the VPN which effects MS direct access.
491407 FortiClient AutoConnect when Offnet not working (IPsec certificate).
502615 Without xAuth, connecting from FortiTray does not work properly.
504191 FortiClient connected via IPsec IKE (IPv4/v6 dual stack) unable to receive IPv6 address from the FortiGate.
504291 FortiClient with IPv6-only configuration fails to connect with remote IKE 2 IPv6 IPsec tunnel.
508650 Without xAuth, setting to 0 with cert filter configured fails to make VPN connection from FortiTray.
510735 6.0.2 RC1 fails to connect to VPN from task tray with user cert authentication – it prompts for certificate
515819 With cert filter configured, if Save password is enabled, should not prompt GUI during making VPN connection.
515937 ipsec.exe crashes in VCRUNTIME140.dll, version : 14.0.24210.0
516228 No error message for wrong IPsec VPN password when Save password and Always up are enabled.
516244 Changing/saving VPN setting should not remove IPv6 .
516544 Cannot save username with certificate in SSL VPN (profile managed by EMS).
516717 Empty username is not allowed when using pushed tunnel without xAuth to connect from FortiTray.
516931 Standard user fails to establish VPN if choosing a tunnel that requires a certificate and connecting from FortiTray.
518061 Windows SSL VPN hostcheck by guid does not work.
GUI
Bug ID Description
511436 Avatar setting was lost after logging out and logging in with a different user.
518103 Fails to connect to VPN from task tray with user certificate authentication (no username/password).
Install and upgrade
Bug ID Description
497387 FortiClient Configurator should support automatic group assignment.
510748 If FortiClient (Windows) 5.6.x is installed on a different drive (E:\), manual upgrade to 6.0.x completes but FortiClient (Windows) does not work after reboot.
517242 FortiClient (Windows) failed to install FortiUmon.sys driver when upgrading from old FortiClient (Windows) with AV feature installed.
518260 Unable to deploy-uninstall FortiClient (Windows) 6.0.3 build 0152 from EMS with password lock enabled.
518592 FortiClient (Windows) 6.0.3 failed to upgrade to new FortiClient version from FortiTray when using RDP session.
Other
Bug ID Description
463956 Diagnostic Tool result does not have AV scan and RTP scan logs.
488842 Total uninstall 6.22.1 completely removing managed FortiClient.
502067 FortiClient (Windows) keeps prompting for reboot after connecting to EMS and finding a newer version.
506548 Vulnerability scan results do not display on EMS.
515473 Hiding any feature (except Application Firewall) causes FortiClient (Windows) to report feature as Installed and not Enabled.
515815 Unable to update from FDS.
516658 Disabling automatic maintenance from EMS does not delete the schedule in Windows client task scheduler.
517359 Observed FCDblog daemon crash on win81x86 platform.
518771 FortiShield blocks FortiClient.exe from changing the registry – FA_Scheduler.
Więcej informacji znajdą Państwo w notatkach: Notatki do wydania
Pozdrawiamy,
Zespół B&B
Bezpieczeństwo w biznesie