Producent oprogramowania Fortinet wydał aktualizację dla produktu FortiSwitch w wersji 7.2.6, która naprawia kilka znanych występujących wcześniej problemów takich jak wyświetlanie nieprawidłowych ostrzeżeń dla niezarejestrowanych jednostek FortiSwitch w zakładce ManagedFortiSwitches. Naprawiono również błąd z znikaniem ustawień optymalizacji sieci VLAN i trybu vlan-all, którego nie można przywrócić z poziomu interfejsu CLI po restarcie urządzania FortiGate. Ponadto dodane zostało nowe polecenie CLI pozwalające FortiOS na akceptowanie opisów sieci VLAN FortiSwitchOS o maksymalnej długości 64 znaków (wcześniej ograniczone do 15 znaków). Wiele więcej poprawek wprowadzonych w aktualizacji można znaleźć w artykule poniżej.
Wspierane modele:
FortiSwitch 1xx | FS-108E, FS-108E-POE, FS-108E-FPOE, FS-108F, FS-108F-POE, FS-108F-FPOE, FS-124E, FS-124E-POE, FS-124E-FPOE, FS-124F, FS-124F-POE, FS-124F-FPOE, FS-148E, FS-148E-POE, FS-148F, FS-148F-POE, FS-148F-FPOE |
FortiSwitch 2xx | FS-224D-FPOE, FS-224E, FS-224E-POE, FS-248D, FS-248E-POE, FS-248E-FPOE |
FortiSwitch 4xx | FS-424E, FS-424E-POE, FS-424E-FPOE, FS-424E-Fiber, FS-M426E-FPOE, FS-448E, FS-448E-POE, FS-448E-FPOE |
FortiSwitch 5xx | FS-524D, FS-524D-FPOE, FS-548D, FS-548D-FPOE |
FortiSwitch 1xxx | FS-1024D, FS-1024E, FS-1048E, FS-T1024E |
FortiSwitch 3xxx | FS-3032E |
FortiSwitch Rugged | FSR-112D-POE, FSR-124D, FSR-424F-POE |
Rozwiązane problemy:
Description | |
---|---|
848632 | After upgrading to FortiOS 6.4.9 or 6.4.10, the link to the managed switch does not come up. |
858749 | Redirected traffic should not hit the firewall policy when allow-traffic-redirect is enabled. |
875382 | When accessing the Managed FortiAP or Managed FortiSwitches view with a large number of devices in the topology, the page would take a long time to load. |
893405 | After discovery, one transmit buffer was allocated and was not released when the connection was terminated. |
894735 | Users should be able to use the same EMS tags in multiple NAC policies on different FortiSwitch groups. |
902338 | If you configure multitenancy in the CLI and then add another VLAN in the GUI, the VLAN is removed from the other VDOM. |
904640 | When a FortiSwitch port is reconfigured, the FortiGate device might incorrectly retain old detected device data from the port that results in an unexpected number of detected device MAC addresses for the port. Using diagnose switch-controller mac-cache show to check the device data can result in the Device Information column being blank on the WiFi & Switch Controller > FortiSwitch Ports page or in the Assets widget. |
911232 | The security rating shows an incorrect warning for unregistered FortiSwitch units on the WiFi & Switch Controller > Managed FortiSwitches page. |
920231 | When the FortiGate device is rebooted, the configuration for config switch-controller qos ip-dscp-map reverts to the default FortiGate ip-dscp-map values. |
924654 | The MAC address flaps on the FortiSwitch unit when a UDP packet passes through a virtual wire pair multiple times with ASIC offload. |
936081 | When the FortiGate device is rebooted, the VLAN-optimization and vlan-all-mode settings disappear and cannot be restored in the CLI. |
941673 | FortiSwitch events should be listed in the log with the configured FortiSwitch name, instead of the FortiSwitch serial number. |
Znane problemy:
Bug ID | Description |
---|---|
298348, 298994 | Enabling the hw-switch-ether-filter command on the FG-92D model (the default setting) causes FortiSwitch devices to not be discovered. |
520954 | When a “FortiLink mode over a layer-3 network” topology has been configured, the FortiGate GUI does not always display the complete network. |
527695 | Starting in FortiOS 6.4.0, VLAN optimization is enabled by default (set vlan-optimization enable under config switch-controller global ). On a network running FortiSwitchOS earlier than 6.0.0, this change results in a synchronization error, but the network still functions normally. If you have FortiSwitchOS 6.0.x, you can upgrade to remove the synchronization error or disable VLAN optimization.
On a network with |
586801 | NetBIOS stops working when proxy ARP is configured and the access VLAN is enabled because FortiGate units do not support NetBIOS proxy. |
621785 | user.nac-policy[].switch-scope might contain a data reference to switch-controller.managed-switch . When this reference is set by an admin, the admin needs to remove this reference before deleting the managed-switch . |
789914 |
|
813216 | After CAPWAP offload is enabled or disabled, FortiLink goes down. |
891642 | The FortiGate 6000 and 7000 platforms do not support managing FortiSwitch devices over FortiLink. |
939011 | The config switch-controller auto-config policy and config switch-controller qos commands are not supported in VDOMs with transparent mode. |
Notatki producenta: FortiSwitch 7.2.6
Pozdrawiamy,
Zespół B&B
Bezpieczeństwo w biznesie