FortiSwitch 6.0.1
W aktualizacji dla przełączników FortiSwitch oznaczonej numerem 6.0.1 znajdziemy kilka ciekawych rozwiązań ze strony producenta. Pierwszą z nich to implementacja Energy-efficient Ethernet (EEE) czyli technologia dzięki której urządzenia Ethernet pobierają znacznie mniej energii niż standardowe rozwiązania sieciowe.Od teraz wykres warstwowy na pulpicie wyświetla bieżące wartości dla procesora, pamięci RAM oraz PoE(tylko dla modeli FortiSwitch PoE).
Wprowadzone poprawki:
Bug ID Description
456851 Very large VLAN maps cause the CLI to list attributes multiple times or cause a crash.
460999 When you enable Energy Efficiency Ethernet (EEE) on an Apple Thunderbolt to Gigabit Ethernet Adapter, the FortiSwitch port might flap continuously.
466710 There should be reminder to change the password the first time a user logs in to the administration account.
482989 Static MAC addresses are not counted in the limit for learned MAC addresses on an interface or VLAN.
489064 When connecting two 224D FortiSwitch units together, the SFP ports RX alarm reports a loss of signal, but the network traffic is not interrupted.
489451 An obsolete object identifier (OID) appears in the Management Information Base (MIB).
491980 When configuring RIP routing in Router > Config > RIP > Interfaces, setting the Send Version and Receive Version to Global or Both does not work. Setting the send-version and receive-version to both in the CLI causes an Internal Server Error.
492804 A method is needed in the FortiSwitch 6.x GUI to download all event logs.
492166 The Add Static Route (Router > Config > Static > Add Route) page needs the option of Any for the Device field.
492190 The Switch > Port > Trunk page should show which ports are members of the trunk.
493089 In a network topology that contains layer-2 loops, the network monitor should be disabled.
493778 If an admin account has configurations for the pre-6.0 GUI dashboards, upon upgrading to FortiSwitchOS 6.0.0, that accountʼs password will be reset to blank, and all administrator accounts after that one will be lost, regardless of their configuration.
494714 The port associated with a trunk used as the inter-chassis link (ICL) between two FortiSwitch units in a multichassis link aggregation group (MCLAG) was not removed within 10 minutes after the port was disconnected from the trunk.
496213 A CLI command is needed to control whether untrusted broadcast client packets are dropped or forwarded.
497615 In the Switch > Interface > Physical page and the Edit Physical Port Interface page, the Allowed VLANs area needs to be larger.
498873 The „POE Power Delivered” value in the FortiSwitch Cloud is not updated.
499938 Next and Previous buttons are needed for the Edit VLAN page.
501297 The maximum number of paths for equal-cost multi-path (ECMP) routing needs to be configured in the CLI.
502079 Running multiple SNMP queries at the same time causes a timeout.
502280 After the FSW-124E-POE is upgraded to 3.6.6, 3.6.7, or 6.0, there is a high-pitched noise when the switch starts.
Znane problemy:
Bug ID Description
380239 IGMP-snooped multicast groups are not immediately flushed out of the snooping table when the querier port is shut down.
391607 Switch does not send gratuitous ARP for IP conflict when the system boots up and adds a new switch virtual interface (SVI).
414972 IGMP snooping might not work correctly when used with 802.1x Dynamic VLAN functionality.
416655 When using DHCP, the IPv6 address cannot be configured. Also, the automatic configuration of the global address does not work.
438441 DHCP snooping and dynamic ARP inspection (DAI) do not work with private VLANs (PVLANs).
480605 When DHCP snooping is enabled on the FSR-112D-POE, the switched virtual interface (SVI) cannot get the IP address from the DHCP server.
481151 When IGMP snooping and PIM are enabled on the same VLAN, multicast traffic might still flood.
Workaround: Remove the SVI and then add it from a protocol-independent
multicast (PIM) network containing a VLAN with IGMP snooping enabled or disabled.
488044 On a Protocol Independent Multicast (PIM) topology using the assert mechanism, when the assert winner lost the route to the source, no multicast route was created, and the multicast traffic stopped.
488359 When the same host joins multicast groups from different sources, all multicast routes are deleted if some of the sources are set to Exclude (Record Type 2).
489769 In a two-tier MCALG topology, some second tier FortiSwitch MCLAG peer groups have high levels of STPD processing. When this happens, Fortinet recommends both of the following actions:
(a) Disable STP on the first tier MCLAG trunks with the following commands:
config switch global
set mclag-stp-aware disable
end
STP will still be operational on each peer.
(b) Do NOT use access-ring connections on the first tier MCLAG peer group.
Zachęcam do przeczytania notatek: Notatki do wydania
Pozdrawiamy,
Zespół B&B
Bezpieczeństwo w biznesie