FortiManager Release Notes

FortiManager

FortiManager, 7.6.2, Release Notes

Fortinet Inc.

FortiManager 7.6.2 Release Notes

10 янв. 2025 г. — FortiManager uses port TCP/443 or TCP/4443 to connect to the Fortinet registry and download MEAs. Ensure that the port is also open on any upstream FortiGates.

FortiManager Release Notes

3 days ago — NCC 4.6 and later. ○. LCM 3.0 and later. ○. RedHat 9.1. ○. Other versions and Linux KVM distributions are also supported. ○. VMware ESXi versions 6.5 and later.

PDF preview unavailable. Download the PDF instead.

fortimanager-v7.6.2-release-notes
Release Notes
FortiManager 7.6.2

FORTINET DOCUMENT LIBRARY https://docs.fortinet.com FORTINET VIDEO LIBRARY https://video.fortinet.com FORTINET BLOG https://blog.fortinet.com CUSTOMER SERVICE & SUPPORT https://support.fortinet.com FORTINET TRAINING & CERTIFICATION PROGRAM https://www.fortinet.com/training-certification FORTINET TRAINING INSTITUTE https://training.fortinet.com FORTIGUARD LABS https://www.fortiguard.com END USER LICENSE AGREEMENT https://www.fortinet.com/doc/legal/EULA.pdf FEEDBACK Email: techdoc@fortinet.com
December 18, 2024 FortiManager 7.6.2 Release Notes 02-762-1092548-20241218

TABLE OF CONTENTS

Change Log

6

FortiManager 7.6.2 Release

7

Supported models

7

FortiManager VM subscription license

7

Management extension applications

8

Supported models for MEA

8

Minimum system requirements

8

Special Notices

10

FortiManager support for updated FortiOS private data encryption key

10

FortiSASE is currently not compatible on FortiManager 7.6

11

Shell access has been removed

11

Enable fcp-cfg-service for Backup Mode ADOMs

11

FortiSOAR MEA license must be activated or uploaded

12

System Templates include new fields

12

Custom certificate name verification for FortiGate connection

12

Additional configuration required for SSO users

13

When using VPN Manager, IPSEC VPN CA certificates must be re-issued to all devices

after upgrade

13

FortiGuard web filtering category v10 update

13

FortiManager 7.2.3 and later firmware on FortiGuard

14

Configuration backup requires a password

14

FortiManager-400E support

14

Serial console has changed for FortiManager deployments on Xen

15

OpenXen in PV mode is not supported in FortiManager 7.4.1

15

Option to enable permission check when copying policies

15

Install On column for policies

16

Changes to FortiManager meta fields

16

View Mode is disabled in policies when policy blocks are used

16

Reconfiguring Virtual Wire Pairs (VWP)

16

Citrix XenServer default limits and upgrade

16

Multi-step firmware upgrades

17

Hyper-V FortiManager-VM running on an AMD CPU

17

Upgrade Information

18

Downgrading to previous firmware versions

18

Firmware image checksums

18

FortiManager VM firmware

19

SNMP MIB files

20

Product Integration and Support

21

Supported software

21

Web browsers

22

FortiOS and FortiOS Carrier

22

FortiManager 7.6.2 Release Notes

3

Fortinet Inc.

FortiADC FortiAnalyzer FortiAnalyzer-BigData FortiAuthenticator FortiCache FortiCASB FortiClient FortiDDoS FortiDeceptor FortiFirewall and FortiFirewallCarrier FortiMail FortiPAM FortiProxy FortiSandbox FortiSOAR FortiSRA FortiSwitch ATCA FortiTester FortiToken FortiWeb Virtualization Feature support Language support Supported models FortiGate models FortiGate special branch models FortiCarrier models FortiCarrier special branch models FortiADC models FortiAnalyzer models FortiAnalyzer-BigData models FortiAuthenticator models FortiCache models FortiDDoS models FortiDeceptor models FortiFirewall models FortiFirewallCarrier models FortiMail models FortiPAM models FortiProxy models FortiSandbox models FortiSOAR models FortiSRA models FortiSwitch ATCA models FortiTester models FortiWeb models FortiExtender MODEM firmware compatibility
FortiManager 7.6.2 Release Notes
Fortinet Inc.

22 22 23 23 23 23 23 24 24 24 24 24 25 25 25 26 26 26 26 26 26 27 28 29 29 33 34 36 37 37 38 38 39 39 39 40 41 41 42 42 43 43 43 43 44 44 45
4

Resolved Issues

46

AP Manager

46

Device Manager

46

FortiSwitch Manager

47

Others

48

Policy and Objects

48

Script

50

System Settings

51

Known issues

52

New known issues

52

Existing known issues

52

AP Manager

52

Device Manager

52

Others

53

Policy & Objects

54

Script

54

Appendix A - FortiGuard Distribution Servers (FDS)

55

FortiGuard Center update support

55

Appendix B - Default and maximum number of ADOMs supported

56

Hardware models

56

Virtual Machines

56

FortiManager 7.6.2 Release Notes

5

Fortinet Inc.

Change Log

Date 2024-12-12 2024-12-13
2024-12-16 2024-12-18

Change Description Initial release of 7.6.2. Removed "Supported software > FortiSASE". For more information, see Special Notices on page 10. Updated Resolved Issues on page 46. Updated Resolved Issues on page 46 and Known issues on page 52.

FortiManager 7.6.2 Release Notes

6

Fortinet Inc.

FortiManager 7.6.2 Release

This document provides information about FortiManager version 7.6.2 build 3415.
The recommended minimum screen resolution for the FortiManager GUI is 1920 x 1080. Please adjust the screen resolution accordingly. Otherwise, the GUI may not display properly.
This section includes the following topics: l Supported models on page 7 l FortiManager VM subscription license on page 7 l Management extension applications on page 8

Supported models

FortiManager version 7.6.2 supports the following models:

FortiManager FortiManager VM

FMG-200F, FMG-200G, FMG-300F, FMG-400G, FMG-410G, FMG-1000F, FMG1000G, FMG-2000E, FMG-3000F, FMG-3000G, FMG-3100G, FMG-3700F, and FMG-3700G.
FMG_VM64, FMG_VM64_ALI, FMG_VM64_AWS, FMG_VM64_ AWSOnDemand, FMG_VM64_Azure, FMG_VM64_GCP, FMG_VM64_HV (including Hyper-V 2016, 2019, and 2022), FMG_VM64_IBM, FMG_VM64_KVM, FMG_VM64_OPC, FMG_VM64_XEN (for both Citrix and Open Source Xen).

For access to container versions of FortiManager, contact Fortinet Support.

FortiManager VM subscription license
The FortiManager VM subscription license supports FortiManager version 6.4.1 and later. For information about supported firmware, see FortiManager VM firmware on page 19. See also Appendix B - Default and maximum number of ADOMs supported on page 56.

FortiManager 7.6.2 Release Notes

7

Fortinet Inc.

FortiManager 7.6.2 Release
Management extension applications

The following section describes supported models and minimum system requirements for management extension applications (MEA) in FortiManager7.6.2.
FortiManager uses port TCP/443 or TCP/4443 to connect to the Fortinet registry and download MEAs. Ensure that the port is also open on any upstream FortiGates. For more information about incoming and outgoing ports, see the 7.6 Ports Guide.
As of FortiManager 7.4.0, the Management Extensions pane is only visible in the GUI when docker status is enabled and at least one MEA is enabled and downloaded. For more information about enabling and using the MEAs, see the Management Extensions documentation in the FortiManager Documents Library.

Supported models for MEA

You can use any of the following FortiManager models as a host for management extension applications:

FortiManager FortiManager VM

FMG-3000F, FMG-3000G, FMG-3100G, FMG-3700F, and FMG-3700G.
FMG_VM64, FMG_VM64_ALI, FMG_VM64_AWS, FMG_VM64_ AWSOnDemand, FMG_VM64_Azure, FMG_VM64_GCP, FMG_VM64_HV (including Hyper-V 2016, 2019, and 2022), FMG_VM64_IBM, FMG_VM64_KVM, FMG_VM64_OPC, FMG_VM64_XEN (for both Citrix and Open Source Xen).

Minimum system requirements
By default FortiManager VMs use the following system resource settings:
l 4 vCPU l 16 GB RAM l 500 GB disk space
Starting with FortiManager 7.0.0, RAM and CPU is capped at 50% for MEAs. (Use the config system docker command to view the setting.) If FortiManager has 8 CPUs and 16 GB RAM, then only 4 CPUs and 8 GB RAM are available to MEAs by default, and the 4 CPUs and 8 GB RAM are used for all enabled MEAs.
Some management extension applications have minimum system requirements that require you to increase system resources. The following table identifies the minimum requirements for each MEA as well as the recommended system resources to function well in a production environment.
MEA minimum system requirements apply only to the individual MEA and do not take into consideration any system requirements for resource-sensitive FortiManager features or multiple, enabled MEAs. If you are using multiple MEAs, you must increase the system resources to meet the cumulative need of each MEA.

FortiManager 7.6.2 Release Notes

8

Fortinet Inc.

FortiManager 7.6.2 Release

Management Extension Application FortiAIOps
FortiSigConverter
FortiSOAR
Policy Analyzer
Universal Connector
Wireless Manager (FortiWLM)

Minimum system requirements
l 8 vCPU l 32 GB RAM l 500 GB disk storage l 4 vCPU l 8 GB RAM l 4 vCPU l 8 GB RAM l 500 GB disk storage l 4 vCPU l 8 GB RAM l 1 GHZ vCPU l 2 GB RAM l 1 GB disk storage l 4 vCPU l 8 GB RAM

Recommended system resources for production* No change
No change
l 16 vCPU l 64 GB RAM l No change for disk storage No change
No change
No change

*The numbers in the Recommended system resources for production column are a combination of the default system resource settings for FortiManager plus the minimum system requirements for the MEA.

FortiManager 7.6.2 Release Notes

9

Fortinet Inc.

Special Notices
This section highlights some of the operational changes that administrators should be aware of in 7.6.2.
FortiManager support for updated FortiOS private data encryption key
With the introduction of FortiOS 7.6.1, Fortinet has updated the private-data-encryption key feature. Administrators are no longer required to manually input a 32-digit hexadecimal private-data-encryption key. Instead administrators simply enable the command, and a random private-data-encryption key is generated.
Previous FortiOS CLI behavior
config system global set private-data-encryption enable
end Please type your private data encryption key (32 hexadecimal numbers): 12345678901234567890123456789abc Please re-enter your private data encryption key (32 hexadecimal numbers) again: 12345678901234567890123456789abc Your private data encryption key is accepted.
New FortiOS CLI behavior
config system global set private-data-encryption enable
end This operation will generate a random private data encryption key! Previous config files encrypted with the system default key cannot be restored after this operation! Do you want to continue? (y/n)y
Private data encryption key generation succeeded!
FortiManager behavior
Support for the FortiGate private-data-encryption key by the Device Manager in FortiManager 7.6.2 and earlier is unchanged. It automatically detects the remote FortiGate private-data-encryption key status and prompts the administrator to manually type the private key (see picture below). FortiManager 7.6.2 and earlier does not support the updated, random private-data-encryption key as the administrator will have no knowledge of the key generated in the FortiOS CLI command above. It will be supported in a later version of FortiManager.

FortiManager 7.6.2 Release Notes

10

Fortinet Inc.

Special Notices

FortiOS upgrade behavior
If in FortiOS 7.4.5 or 7.6.0 the 32-digit hexadecimal private key is enabled, and then the FortiGate device is upgraded to 7.6.1, the 32-digit hexadecimal private-data-encryption key is preserved. As a result, FortiManager 7.6.2 and earlier is aware of the 32-digit hexadecimal private-data-encryption key and can continue to manage the FortiGate device. However, if the private-data-encryption key is enabled after an upgrade of FortiOS to 7.6.1, FortiManager 7.6.2 and earlier no longer can manage FortiGate devices running FortiOS 7.6.1.

FortiSASE is currently not compatible on FortiManager 7.6
The latest release of FortiSASE is not compatible with FortiManager 7.6. Compatibility is available for FortiManager 7.4. For more information, see the FortiSASE Release Notes.

Shell access has been removed
As of FortiManager 7.6.0, shell access has been removed. The following CLI variables have been removed, which were previously used to enable shell access:
config system admin setting set shell-access {enable | disable} set shell-password <passwd>
The following CLI command has been removed, which was previously used to access shell when enabled: execute shell

Enable fcp-cfg-service for Backup Mode ADOMs
When performing a configuration backup from the CLI of FortiGates managed by FortiManager in Backup Mode ADOMs, you must enable the "fcp-cfg-service" using the following command on the FortiManager:
config system global

FortiManager 7.6.2 Release Notes

11

Fortinet Inc.

Special Notices
set fcp-cfg-service enable end
FortiSOAR MEA license must be activated or uploaded
In previous versions, the trial license was automatically activated when the FortiSOAR MEA was enabled. Beginning in FortiManager 7.6.0, which includes the FortiSOAR MEA 7.6.0, you must activate the trial license or upload a license to use the FortiSOAR MEA. After enabling the FortiSOAR MEA, go to Management Extensions > FortiSOAR to activate or upload the license. For more information, see the Management Extensions documentation in the FortiManager Document Library.
System Templates include new fields
Beginning in FortiManager 7.4.3, the Hostname, Timezone, gui-device-latitude, and gui-device-longitude fields have been added to System Templates. System Templates created before upgrading to 7.4.3 must be reconfigured to specify these fields following the upgrade. If these fields are not specified in a System Template, the default settings will be applied the next time an install is performed which may result in preferred settings being overwritten on the managed device.
Custom certificate name verification for FortiGate connection
FortiManager 7.4.3 introduces a new verification of the CN or SAN of a custom certificate uploaded by the FortiGate admin. This custom certificate is used when a FortiGate device connects to a FortiManager unit. The FortiGate and FortiManager administrators may configure the use of a custom certificate with the following CLI commands: FortiGate-related CLI:
config system central-management local-cert Certificate to be used by FGFM protocol. ca-cert CA certificate to be used by FGFM protocol.
FortiManager-related CLI: config system global fgfm-ca-cert set the extra fgfm CA certificates. fgfm-cert-exclusive set if the local or CA certificates should be used exclusively. fgfm-local-cert set the fgfm local certificate.
Upon upgrading to FortiManager 7.4.3, FortiManager will request that the FortiGate certificate must contain the FortiGate serial number either in the CN or SAN. The tunnel connection may fail if a matching serial number is not found. If the tunnel connection fails, the administrator may need to re-generate the custom certificates to include serial number. Alternatively, FortiManager 7.4.3 provides a new CLI command to disable this verification. Fortinet recommends to keep the verification enabled.
config system global

FortiManager 7.6.2 Release Notes

12

Fortinet Inc.

Special Notices
fgfm-peercert-withoutsn set if the subject CN or SAN of peer's SSL certificate sent in FGFM should include the serial number of the device.
When the CLI setting fgfm-peercert-withoutsn is disabled (default), the FortiGate device's certificate must include the FortiGate serial number in the subject CN or SAN. When the CLI setting fgfm-peercert-withoutsn is enabled, the FortiManager unit does not perform the verification serial number in subject CN or SAN.

Additional configuration required for SSO users
Beginning in 7.4.3, additional configuration is needed for FortiManager Users declared as wildcard SSO users. When configuring Administrators as wildcard SSO users, the ext-auth-accprofile-override and/or ext-authadom-override features, under Advanced Options, should be enabled if the intent is to obtain the ADOMs list and/or permission profile from the SAML IdP.

When using VPN Manager, IPSEC VPN CA certificates must be reissued to all devices after upgrade
When FortiManager is upgraded to 7.4.2/7.6.0 or later, it creates a new CA <ADOM Name>_CA3 certificate as part of a fix for resolved issue 796858. See Resolved Issues in the FortiManager 7.4.2 Release Notes. These certificates are installed to the FortiGate devices on the next policy push. As a result, the next time any IPSEC VPNs which use FortiManager certificates rekey, they will fail authentication and be unable to re-establish. The old CA <ADOM Name>_CA2 cannot be deleted, as existing certificates rely on it for validation. Similarly, the new CA <ADOM Name>_CA3 cannot be deleted as it is required for the fix. Therefore, customers affected by this change must follow the below workaround after upgrading FortiManager to v7.4.2/7.6.0 or later. A maintenance period is advised to avoid IPSEC VPN service disruption. Workaround: Re-issue all certificates again to all devices, and then delete the old CA <ADOM Name>_CA2 from all devices. Next, regenerate the VPN certificates. To remove CA2 from FortiManager, Policy & Objects > Advanced > CA Certificates must be enabled in feature visibility.

FortiGuard web filtering category v10 update
Fortinet has updated its web filtering categories to v10, which includes two new URL categories for AI chat and cryptocurrency web sites. In order to use the new categories, customers must upgrade their Fortinet products to one of the versions below.
l FortiManager - Fixed in 6.0.12, 6.2.9, 6.4.7, 7.0.2, 7.2.0, 7.4.0. l FortiOS - Fixed in 7.2.8 and 7.4.1. l FortiClient - Fixed in Windows 7.2.3, macOS 7.2.3, Linux 7.2.3. l FortiClient EMS - Fixed in 7.2.1.

FortiManager 7.6.2 Release Notes

13

Fortinet Inc.

Special Notices
l FortiMail - Fixed in 7.0.7, 7.2.5, 7.4.1. l FortiProxy - Fixed in 7.4.1. Please read the following CSB for more information to caveats on the usage in FortiManager and FortiOS. https://support.fortinet.com/Information/Bulletin.aspx

FortiManager 7.2.3 and later firmware on FortiGuard
Starting in FortiManager 7.2.1, a setup wizard executes to prompt the user for various configuration steps and registration with FortiCare. During the execution, the FortiManager unit attempts to communicate with FortiGuard for a list of FortiManager firmware images currently available on FortiGuard ­ older and newer.
In the case of FortiManager 7.2.2, a bug in the GUI prevents the wizard from completing and prevents the user from accessing the FortiManager unit. The issue has been fixed in 7.2.3 and later and a CLI command has been added to bypass the setup wizard at login time.
config system admin setting set firmware-upgrade-check disable
end
Fortinet has not uploaded FortiManager 7.2.3 and later firmware to FortiGuard in order to work around the GUI bug, however, the firmware is available for download from the Fortinet Support website.

Configuration backup requires a password
As of FortiManager 7.4.2, configuration backup files are automatically encrypted and require you to set a password. The password is required for scheduled backups as well. In previous versions, the encryption and password were optional. For more information, see the FortiManager Administration Guide.

FortiManager-400E support

FortiManager 7.4.2 and later does not support the FortiManager-400E device.
FortiManager 7.4.2 introduces an upgrade of the OpenSSL library to address known vulnerabilities in the library. As a result, the SSL connection that is setup between the FortiManager-400E device and the Google Map server hosted by Fortinet uses a SHA2 (2048) public key length. The certificate stored on the BIOS that is used during the setup of the SSL connection contains a SHA1 public key length, which causes the connection setup to fail. Running the following command shows the key length.
FMG400E # conf sys certificate local (local)# ed Fortinet_Local (Fortinet_Local)# get name : Fortinet_Local password : * comment : Default local certificate

FortiManager 7.6.2 Release Notes

14

Fortinet Inc.

Special Notices
private-key : certificate : Subject: C = US, ST = California, L = Sunnyvale, O = Fortinet, OU = FortiManager, CN
= FL3K5E3M15000074, emailAddress = support@fortinet.com Issuer: C = US, ST = California, L = Sunnyvale, O = Fortinet, OU = Certificate
Authority, CN = support, emailAddress = support@fortinet.com Valid from: 2015-03-06 16:22:10 GMT Valid to: 2038-01-19 03:14:07 GMT Fingerprint: FC:D0:0C:8D:DC:57:B6:16:58:DF:90:22:77:6F:2C:1B Public key: rsaEncryption (1024 bits) Signature: sha1WithRSAEncryption Root CA: No Version: 3 Serial Num: 1e:07:7a Extension 1: X509v3 Basic Constraints: CA:FALSE ... (Fortinet_Local)#
Serial console has changed for FortiManager deployments on Xen
As of FortiManager 7.4.1, the serial console for Xen deployments has changed from hvc0 (Xen specific) to ttyS0 (standard).
OpenXen in PV mode is not supported in FortiManager 7.4.1
As of FortiManager 7.4.1, kernel and rootfs are encrypted. OpenXen in PV mode tries to unzip the kernel and rootfs, but it will fail. Therefore, OpenXen in PV mode cannot be used when deploying or upgrading to FortiManager 7.4.1. Only HVM (hardware virtual machine) mode is supported for OpenXen in FortiManager 7.4.1.
Option to enable permission check when copying policies
As of 7.4.0, a new command is added in the CLI: config system global set no-copy-permission-check {enable | disable} end
By default, this is set to disable. When set to enable, a check is performed when copying policies to prevent changing global device objects if the user does not have permission.

FortiManager 7.6.2 Release Notes

15

Fortinet Inc.

Special Notices
Install On column for policies
Prior to version 7.2.3, the 'Install-on' column for policies in the policy block had no effect. However, starting from version 7.2.3, the 'Install-on' column is operational and significantly impacts the behavior and installation process of policies. It's important to note that using 'Install-on' on policies in the policy block is not recommended. If required, this setting can only be configured through a script or JSON APIs.
Changes to FortiManager meta fields
Beginning in 7.2.0, FortiManager supports policy object metadata variables. When upgrading from FortiManager 7.0 to 7.2.0 and later, FortiManager will automatically create ADOM-level metadata variable policy objects for meta fields previously configured in System Settings that have per-device mapping configurations detected. Objects using the meta field, for example CLI templates, are automatically updated to use the new metadata variable policy objects. Meta fields in System Settings can continue to be used as comments/tags for configurations. For more information, see ADOM-level meta variables for general use in scripts, templates, and model devices.
View Mode is disabled in policies when policy blocks are used
When policy blocks are added to a policy package, the View Mode option is no longer available, and policies in the table cannot be arranged by Interface Pair View. This occurs because policy blocks typically contain policies with multiple interfaces, however, View Mode is still disabled even when policy blocks respect the interface pair.
Reconfiguring Virtual Wire Pairs (VWP)
A conflict can occur between the ADOM database and device database when a Virtual Wire Pair (VWP) is installed on a managed FortiGate that already has a configured VWP in the device database. This can happen when an existing VWP has been reconfigured or replaced. Before installing the VWP, you must first remove the old VWP from the device's database, otherwise a policy and object validation error may occur during installation. You can remove the VWP from the device database by going to Device Manager > Device & Groups, selecting the managed device, and removing the VWP from System > Interface.
Citrix XenServer default limits and upgrade
Citrix XenServer limits ramdisk to 128M by default. However the FMG-VM64-XEN image is larger than 128M. Before updating to FortiManager 6.4, increase the size of the ramdisk setting on Citrix XenServer.

FortiManager 7.6.2 Release Notes

16

Fortinet Inc.

Special Notices
To increase the size of the ramdisk setting: 1. On Citrix XenServer, run the following command:
xenstore-write /mh/limits/pv-ramdisk-max-size 536,870,912 2. Confirm the setting is in effect by running xenstore-ls.
----------------------limits = "" pv-kernel-max-size = "33554432" pv-ramdisk-max-size = "536,870,912" boot-time = "" --------------------------3. Remove the pending files left in /run/xen/pygrub.
The ramdisk setting returns to the default value after rebooting.
Multi-step firmware upgrades
Prior to using the FortiManager to push a multi-step firmware upgrade, confirm the upgrade path matches the path outlined on our support site. To confirm the path, please run: dia fwmanager show-dev-upgrade-path <device name> <target firmware> Alternatively, you can push one firmware step at a time.
Hyper-V FortiManager-VM running on an AMD CPU
A Hyper-V FMG-VM running on a PC with an AMD CPU may experience a kernel panic. Fortinet recommends running VMs on an Intel-based PC.

FortiManager 7.6.2 Release Notes

17

Fortinet Inc.

Upgrade Information
Prior to upgrading your FortiManager, please review the FortiManager Upgrade Guide in detail as it includes all of the necessary steps and associated details required to upgrade your FortiManager device or VM, including recommended upgrade paths. See the FortiManager Upgrade Guide in the Fortinet Document Library.
Before upgrading FortiManager, check ADOM versions. Check the ADOM versions supported by the destination firmware and the current firmware. If the current firmware uses ADOM versions not supported by the destination firmware, upgrade ADOM versions in FortiManager before upgrading FortiManager to the destination firmware version. For example, FortiManager 7.4 supports ADOM versions 7.0, 7.2, and 7.4, but FortiManager 7.6 supports ADOM versions 7.2, 7.4, and 7.6. Before you upgrade FortiManager 7.4 to 7.6, ensure that all ADOM 7.0 versions have been upgraded to ADOM version 7.2 or later. See the FortiManager Upgrade Guide in the Fortinet Document Library.
This section contains the following topics: l Downgrading to previous firmware versions on page 18 l Firmware image checksums on page 18 l FortiManager VM firmware on page 19 l SNMP MIB files on page 20
Downgrading to previous firmware versions
FortiManager does not provide a full downgrade path. You can downgrade to a previous firmware release by using the GUI or CLI, but doing so results in configuration loss. A system reset is required after the firmware downgrade process has completed. To reset the system, use the following CLI commands via a console port connection: execute reset {all-settings | all-except-ip} execute format {disk | disk-ext4 | disk-ext3}
Firmware image checksums
The MD5 checksums for all Fortinet software and firmware releases are available at the Customer Service & Support portal, https://support.fortinet.com. After logging in, go to Download > Firmware Image Checksums, enter the image file name including the extension, and select Get Checksum Code.

FortiManager 7.6.2 Release Notes

18

Fortinet Inc.

Upgrade Information
FortiManager VM firmware
Fortinet provides FortiManager VM firmware images for Amazon AWS, Amazon AWSOnDemand, Citrix and Open Source XenServer, Linux KVM, Microsoft Hyper-V Server, and VMware ESX/ESXi virtualization environments.
Amazon Web Services l The 64-bit Amazon Machine Image (AMI) is available on the AWS marketplace.
Citrix XenServer and Open Source XenServer l .out: Download the 64-bit firmware image to upgrade your existing FortiManager VM installation. l .out.OpenXen.zip: Download the 64-bit package for a new FortiManager VM installation. This package contains the QCOW2 file for the Open Source Xen Server. l .out.CitrixXen.zip: Download the 64-bit package for a new FortiManager VM installation. This package contains the Citrix XenServer Virtual Appliance (XVA), Virtual Hard Disk (VHD), and OVF files.
Google Cloud Platform l .out: Download the 64-bit firmware image to upgrade your existing FortiManager VM installation. l .out.gcp.zip: Download the 64-bit package for a new FortiManager VM installation.
Linux KVM l .out: Download the 64-bit firmware image to upgrade your existing FortiManager VM installation. l .out.kvm.zip: Download the 64-bit package for a new FortiManager VM installation. This package contains QCOW2 that can be used by qemu.
Microsoft Azure The files for Microsoft Azure have AZURE in the filenames, for example <product>_VM64_AZURE-v<number>build<number>-FORTINET.out.hyperv.zip.
l .out: Download the firmware image to upgrade your existing FortiManager VM installation.
Microsoft Hyper-V Server The files for Microsoft Hyper-V Server have HV in the filenames, for example, <product>_VM64_HV-v<number>build<number>-FORTINET.out.hyperv.zip.
l .out: Download the firmware image to upgrade your existing FortiManager VM installation. l .hyperv.zip: Download the package for a new FortiManager VM installation. This package contains a Virtual
Hard Disk (VHD) file for Microsoft Hyper-V Server.
Microsoft Hyper-V 2016 is supported.

FortiManager 7.6.2 Release Notes

19

Fortinet Inc.

Upgrade Information
Oracle Private Cloud l .out: Download the 64-bit firmware image to upgrade your existing FortiManager VM installation. l .out.opc.zip: Download the 64-bit package for a new FortiManager VM installation.
VMware ESX/ESXi l .out: Download the 64-bit firmware image to upgrade your existing VM installation. l .ovf.zip: Download either the 64-bit package for a new VM installation. This package contains an Open Virtualization Format (OVF) file for VMware and two Virtual Machine Disk Format (VMDK) files used by the OVF file during deployment.
For more information see the FortiManager Data Sheet available on the Fortinet web site. VM installation guides are available in the Fortinet Document Library.
SNMP MIB files
You can download the FORTINET-FORTIMANAGER-FORTIANALYZER.mib MIB file in the firmware image file folder. The Fortinet Core MIB file is located in the main FortiManager version 5.00 file folder.

FortiManager 7.6.2 Release Notes

20

Fortinet Inc.

Product Integration and Support
This section lists FortiManager 7.6.2 support of other Fortinet products. It also identifies what FortiManager features are supported for managed platforms and what languages FortiManager supports. It also lists which Fortinet models can be managed by FortiManager. The section contains the following topics:
l Supported software on page 21 l Feature support on page 27 l Language support on page 28 l Supported models on page 29 l FortiExtender MODEM firmware compatibility on page 45
Supported software
FortiManager 7.6.2 supports the following software: l Web browsers on page 22 l FortiOS and FortiOS Carrier on page 22 l FortiADC on page 22 l FortiAnalyzer on page 22 l FortiAnalyzer-BigData on page 23 l FortiAuthenticator on page 23 l FortiCache on page 23 l FortiCASB on page 23 l FortiClient on page 23 l FortiDDoS on page 24 l FortiDeceptor on page 24 l FortiFirewall and FortiFirewallCarrier on page 24 l FortiMail on page 24 l FortiPAM on page 24 l FortiProxy on page 25 l FortiSandbox on page 25 l FortiSOAR on page 25 l FortiSwitch ATCA on page 26 l FortiTester on page 26 l FortiToken on page 26 l FortiWeb on page 26 l Virtualization on page 26

FortiManager 7.6.2 Release Notes

21

Fortinet Inc.

Product Integration and Support
To confirm that a device model or firmware version is supported by the current firmware version running on FortiManager, run the following CLI command:
diagnose dvm supported-platforms list
Always review the Release Notes of the supported platform firmware version before upgrading your device.
Web browsers
FortiManager 7.6.2 supports the following web browsers: l Microsoft Edge 114 l Mozilla Firefox version 96 l Google Chrome version 114
Other web browsers may function correctly, but are not supported by Fortinet.
FortiOS and FortiOS Carrier
The FortiManager Release Notes communicate support for FortiOS versions that are available at the time of the FortiManager 7.6.2 release. For additional information about other supported FortiOS versions, please refer to the FortiManager compatibility chart in the Fortinet Document Library. See FortiManager compatibility with FortiOS.
FortiManager 7.6.2 supports the following versions of FortiOS and FortiOS Carrier: l 7.6.0 to 7.6.1 l 7.4.0 to 7.4.6 l 7.2.0 to 7.2.10
FortiADC
FortiManager 7.6.2 supports the following versions of FortiADC: l 7.4.0 and later l 7.2.0 and later l 7.1.0 and later
FortiAnalyzer
FortiManager 7.6.2 supports the following versions of FortiAnalyzer:

FortiManager 7.6.2 Release Notes

22

Fortinet Inc.

Product Integration and Support
l 7.6.0 and later l 7.4.0 and later l 7.2.0 and later l 7.0.0 and later
FortiAnalyzer-BigData
FortiManager 7.6.2 supports the following versions of FortiAnalyzer-BigData: l 7.2.0 and later l 7.0.0 and later
FortiAuthenticator
FortiManager 7.6.2 supports the following versions of FortiAuthenticator: l 6.6.0 and later l 6.5.0 and later l 6.4.0 and later l 6.3.0 and later
FortiCache
FortiManager 7.6.2 supports the following versions of FortiCache: l 4.2.0 and later l 4.1.0 and later l 4.0.0 and later
FortiCASB
FortiManager 7.6.2 supports the following versions of FortiCASB: l 23.2.0 and later
FortiClient
FortiManager 7.6.2 supports the following versions of FortiClient: l 7.4.0 and later l 7.2.0 and later l 7.0.0 and later l 6.4.0 and later

FortiManager 7.6.2 Release Notes

23

Fortinet Inc.

Product Integration and Support

FortiDDoS
FortiManager 7.6.2 supports the following versions of FortiDDoS:
l 7.0.0 and later l 6.6.0 and later l 6.5.0 and later l 6.4.0 and later l 6.3.0 and later l 6.2.0 and later l 6.1.0 and later l 5.7.0 and later l 5.6.0 and later
Limited support. For more information, see Feature support on page 27.

FortiDeceptor
FortiManager 7.6.2 supports the following versions of FortiDeceptor: l 6.0.0 and later l 5.3.0 and later l 5.2.0 and later l 5.1.0 and later l 5.0.0 and later l 4.3.0 and later

FortiFirewall and FortiFirewallCarrier
FortiManager 7.6.2 supports the following versions of FortiFirewall and FortiFirewallCarrier: l 7.4.0 and later l 7.2.0 and later l 7.0.0 and later

FortiMail
FortiManager 7.6.2 supports the following versions of FortiMail: l 7.6.0 and later l 7.4.0 and later l 7.2.0 and later l 7.0.0 and later

FortiPAM
FortiManager 7.6.2 supports the following versions of FortiPAM:

FortiManager 7.6.2 Release Notes

24

Fortinet Inc.

Product Integration and Support
l 1.4.0 and later l 1.3.0 and later l 1.2.0 and later l 1.1.0 and later l 1.0.0 and later
FortiProxy
FortiManager 7.6.2 supports configuration management for the following versions of FortiProxy: l 7.4.0 to 7.4.3, and 7.4.5 l 7.2.2, 7.2.3, 7.2.7, and 7.2.9 l 7.0.7 to 7.0.18

Configuration management support is identified as Management Features in these release notes. See Feature support on page 27.

FortiManager 7.6.2 supports logs from the following versions of FortiProxy: l 7.4.0 to 7.4.5 l 7.2.0 to 7.2.11 l 7.0.0 to 7.0.18 l 2.0.0 to 2.0.5 l 1.2.0 to 1.2.13 l 1.1.0 to 1.1.6 l 1.0.0 to 1.0.7
FortiSandbox
FortiManager 7.6.2 supports the following versions of FortiSandbox: l 4.4.0 and later l 4.2.0 and later l 4.0.0 and 4.0.1 l 3.2.0 and later
FortiSOAR
FortiManager 7.6.2 supports the following versions of FortiSOAR: l 7.6.0 and later l 7.5.0 and later l 7.4.0 and later l 7.3.0 and later l 7.2.0 and later

FortiManager 7.6.2 Release Notes

25

Fortinet Inc.

Product Integration and Support
FortiSRA
FortiManager 7.6.2 supports the following versions of FortiSRA: l 1.1.0 and later l 1.0.0 and later
FortiSwitch ATCA
FortiManager 7.6.2 supports the following versions of FortiSwitch ATCA: l 5.2.0 and later l 5.0.0 and later l 4.3.0 and later
FortiTester
FortiManager 7.6.2 supports the following versions of FortiTester: l 7.4.0 and later l 7.3.0 and later l 7.2.0 and later l 7.1.0 and later
FortiToken
FortiManager 7.6.2 supports the following versions of FortiToken: l 3.0.0 and later
FortiWeb
FortiManager 7.6.2 supports the following versions of FortiWeb: l 7.6.0 and later l 7.4.0 and later l 7.2.0 and later l 7.0.0 and later
Virtualization
FortiManager 7.6.2 supports the following virtualization software:

FortiManager 7.6.2 Release Notes

26

Fortinet Inc.

Product Integration and Support
Public Cloud
l Amazon Web Service AMI, Amazon EC2, Amazon EBS l Alibaba Cloud l Google Cloud Platform l IBM Cloud l Microsoft Azure l Oracle Cloud Infrastructure
Private Cloud
l Citrix XenServer 7.2 l OpenSource XenServer 4.2.5 l Microsoft Hyper-V Server 2016, 2019, and 2022 l Nutanix
l AHV 20220304 and later l AOS 6.5 and later l NCC 4.6 and later l LCM 3.0 and later l RedHat 9.1 l Other versions and Linux KVM distributions are also supported l VMware ESXi versions 6.5 and later

Feature support

The following table lists FortiManager feature support for managed platforms.

Platform
FortiGate FortiCarrier FortiADC FortiAnalyzer FortiAuthenticator FortiCache FortiClient FortiDDoS FortiDeceptor

Management Features
 

FortiGuard Update Services   



VM License Activation
   



Reports
 

  

Logging
 
    

FortiManager 7.6.2 Release Notes

27

Fortinet Inc.

Product Integration and Support

Platform

Management Features

FortiFirewall



FortiFirewall Carrier



FortiMail

FortiProxy



FortiSandbox

FortiSOAR

FortiSwitch ATCA



FortiTester

FortiWeb

Syslog

FortiGuard Update Services
   
 

VM License Activation
   


Reports
  


Logging
    
 

Language support

The following table lists FortiManager language support information.

Language

GUI

English



Chinese (Simplified)



Chinese (Traditional)



French



Japanese



Korean



Portuguese

Spanish

Reports        

To change the FortiManager language setting, go to System Settings > Admin > Admin Settings, in Administrative Settings > Language select the desired language on the drop-down menu. The default value is Auto Detect.
Russian, Hebrew, and Hungarian are not included in the default report languages. You can create your own language translation files for these languages by exporting a predefined language from FortiManager, modifying the text to a different language, saving the file as a different language name, and then importing the file into FortiManager. For more information, see the FortiManager Administration Guide.

FortiManager 7.6.2 Release Notes

28

Fortinet Inc.

Product Integration and Support
Supported models
The following tables list which FortiGate, FortiCarrier, FortiDDoS, FortiAnalyzer, FortiMail, FortiSandbox, FortiSwitch ATCA, FortiWeb, FortiCache, FortiProxy, and FortiAuthenticator models and firmware versions that can be managed by a FortiManager or send logs to a FortiManager running version 7.6.2.
Software license activated LENC devices are supported, if their platforms are in the supported models list. For example, support of FG-3200D indicates support of FG3200D-LENC.
This section contains the following topics: l FortiGate models on page 29 l FortiGate special branch models on page 33 l FortiCarrier models on page 34 l FortiCarrier special branch models on page 36 l FortiADC models on page 37 l FortiAnalyzer models on page 37 l FortiAnalyzer-BigData models on page 38 l FortiAuthenticator models on page 38 l FortiCache models on page 39 l FortiDDoS models on page 39 l FortiDeceptor models on page 39 l FortiFirewall models on page 40 l FortiFirewallCarrier models on page 41 l FortiMail models on page 41 l FortiPAM models on page 42 l FortiProxy models on page 42 l FortiSandbox models on page 43 l FortiSOAR models on page 43 l FortiSwitch ATCA models on page 43 l FortiTester models on page 44 l FortiWeb models on page 44
FortiGate models
The following FortiGate models are released with FortiOS firmware. For information about supported FortiGate models on special branch releases of FortiOS firmware, see FortiGate special branch models on page 33.

FortiManager 7.6.2 Release Notes

29

Fortinet Inc.

Product Integration and Support

Model

Firmware Version

FortiGate: FortiGate-40F, FortiGate-40F-3G4G, FortiGate-60F, FortiGate-61F, FortiGate- 7.6 70F, FortiGate-71F, FortiGate-80F, FortiGate-80F-Bypass, FortiGate-80F-POE, FortiGate81F, FortiGate-81F-POE, FortiGate-90G, FortiGate-91G, FortiGate-100F, FortiGate-101F, FortiGate-120G, FortiGate-121G, FortiGate-200E, FortiGate-200F, FortiGate-201E, FortiGate-201F, FortiGate-300E, FortiGate-301E, FortiGate-400E, FortiGate-400F, FortiGate-400E-Bypass, FortiGate-401E, FortiGate-401F, FortiGate-500E, FortiGate-501E, FortiGate-600E, FortiGate-600F, FortiGate-601E, FortiGate-601F, FortiGate-800D, FortiGate-900D, FortiGate-900G, FortiGate-901G, FortiGate-1000D, FortiGate-1000F, FortiGate-1001F, FortiGate-1100E, FortiGate-1101E, FortiGate-1800F, FortiGate-1801F, FortiGate-2000E, FortiGate-2200E, FortiGate-2201E, FortiGate-2500E, FortiGate-2600F, FortiGate-2601F, FortiGate-3000D, FortiGate-3000F, FortiGate-3001F, FortiGate-3100D, FortiGate-3200D, FortiGate-3200F, FortiGate-3201F, FortiGate-3300E, FortiGate-3301E, FortiGate-3400E, FortiGate-3401E, FortiGate-3500F, FortiGate-3501F, FortiGate-3600E, FortiGate-3600E-DC, FortiGate-3601E, FortiGate-3700D, FortiGate-3700F, FortiGate3701F, FortiGate-3960E, FortiGate-3980E, FortiGate-4200F, FortiGate-4201F, FortiGate4400F, FortiGate-4401F, FortiGate-4800F, FortiGate-4801F
FortiGate 5000 Series: FortiGate-5001E, FortiGate-5001E1
FortiGate 6000 Series: FortiGate-6000F, FortiGate-6001F, FortiGate-6300F, FortiGate6300F-DC, FortiGate-6301F, FortiGate-6301F-DC, FortiGate-6500F, FortiGate-6500F-DC, FortiGate-6501F, FortiGate-6501F-DC
FortiGate 7000 Series: FortiGate-7000E, FortiGate-7000F, FortiGate-7030E, FortiGate7040E, FortiGate-7060E, FortiGate-7060E-8-DC, FortiGate-7081F, FortiGate-7081F-DC, FortiGate-7081F-2-DC, FortiGate-7121F, FortiGate-7121F-2, FortiGate-7121F-2-DC, FortiGate-7121F-DC
FortiGate DC: FortiGate-400F-DC, FortiGate-401E-DC, FortiGate-401F-DC, FortiGate800D-DC, FortiGate-900G-DC, FortiGate-901G-DC, FortiGate-1100E-DC, FortiGate-1800FDC, FortiGate-1801F-DC, FortiGate-2201E-ACDC, FortiGate-2600F-DC, FortiGate-2601FDC, FortiGate-3000D-DC, FortiGate-3000F-ACDC, FortiGate-3000F-DC, FortiGate-3001FACDC, FortiGate-3001F-DC, FortiGate-3100D-DC, FortiGate-3200D-DC, FortiGate-3400EDC, FortiGate-3401E-DC, FortiGate-3700D-DC, FortiGate-3960E-ACDC, FortiGate-3960EDC, FortiGate-3980E-DC, FortiGate-4200F-DC, FortiGate-4201F-DC, FortiGate-4400F-DC, FortiGate-4401F-DC, FortiGate-4800F-DC, FortiGate-4801F-DC
FortiWiFi: FWF-40F, FWF-40F-3G4G, FWF-60F, FWF-61F, FWF-80F-2R, FWF-81F-2R, FWF-80F-2R-3G4G-DSL, FWF-81F-2R-3G4G-DSL, FWF-81F-2R-3G4G-POE, FWF-81F2R-POE
FortiGate VM: FortiGate-ARM64-AWS, FortiGate-ARM64-Azure, FortiGate-ARM64-GCP, FortiGate-ARM64-KVM, FortiGate-ARM64-OCI, FortiGate-VM64, FortiGate-VM64-AWS, FortiGate-VM64-Azure, FortiGate-VM64-GCP, FortiGate-VM64-HV, FortiGate-VM64-IBM, FortiGate-VM64-KVM, FortiGate-VM64-OPC, FortiGate-VM64-RAXONDEMAND, FortiGateVM64-Xen
FortiGate Rugged: FGR-60F, FGR-60F-3G4G, FGR-70F, FGR-70F-3G4G

FortiManager 7.6.2 Release Notes

30

Fortinet Inc.

Product Integration and Support

Model

Firmware Version

FortiGate: FortiGate-40F, FortiGate-40F-3G4G, FortiGate-60E, FortiGate-60E-DSL,

7.4

FortiGate-60E-DSLJ, FortiGate-60E-POE, FortiGate-60F, FortiGate-61E, FortiGate-61F,

FortiGate-70F, FortiGate-71F, FortiGate-80E, FortiGate-80E-POE, FortiGate-80F, FortiGate-

80F-Bypass, FortiGate-80F-DSL, FortiGate-80F-POE, FortiGate-81E, FortiGate-81E-POE,

FortiGate-81F, FortiGate-81F-POE, FortiGate-90E, FortiGate-90G, FortiGate-91E, FortiGate-

91G, FortiGate-100F, FortiGate-101F, FortiGate-120G, FortiGate-121G, FortiGate-140E,

FortiGate-140E-POE, FortiGate-200E, FortiGate-200F, FortiGate-201E, FortiGate-201F,

FortiGate-300E, FortiGate-301E, FortiGate-400E, FortiGate-400F, FortiGate-400E-Bypass,

FortiGate-401E, FortiGate-401F, FortiGate-500E, FortiGate-501E, FortiGate-600E,

FortiGate-600F, FortiGate-601E, FortiGate-601F, FortiGate-800D, FortiGate-900D,

FortiGate-900G, FortiGate-901G, FortiGate-1000D, FortiGate-1000F, FortiGate-1001F,

FortiGate-1100E, FortiGate-1101E, FortiGate-1500D, FortiGate-1500DT, FortiGate-1800F,

FortiGate-1801F, FortiGate-2000E, FortiGate-2200E, FortiGate-2201E, FortiGate-2500E,

FortiGate-2600F, FortiGate-2601F, FortiGate-3000D, FortiGate-3000F, FortiGate-3001F,

FortiGate-3100D, FortiGate-3200D, FortiGate-3200F, FortiGate-3201F, FortiGate-3300E,

FortiGate-3301E, FortiGate-3400E, FortiGate-3401E, FortiGate-3500F, FortiGate-3501F,

FortiGate-3600E, FortiGate-3600E-DC, FortiGate-3601E, FortiGate-3700D, FortiGate-

3700F, FortiGate-3701F, FortiGate-3800D, FortiGate-3960E, FortiGate-3980E, FortiGate-

4200F, FortiGate-4201F, FortiGate-4400F, FortiGate-4401F, FortiGate-4800F, FortiGate-

4801F

FortiGate 5000 Series: FortiGate-5001E, FortiGate-5001E1

FortiGate 6000 Series: FortiGate-6000F, FortiGate-6001F, FortiGate-6300F, FortiGate6300F-DC, FortiGate-6301F, FortiGate-6301F-DC, FortiGate-6500F, FortiGate-6500F-DC, FortiGate-6501F, FortiGate-6501F-DC

FortiGate 7000 Series: FortiGate-7000E, FortiGate-7000F, FortiGate-7030E, FortiGate7040E, FortiGate-7060E, FortiGate-7060E-8-DC, FortiGate-7081F, FortiGate-7081F-DC, FortiGate-7081F-2-DC, FortiGate-7121F, FortiGate-7121F-2, FortiGate-7121F-2-DC, FortiGate-7121F-DC

FortiGate DC: FortiGate-400F-DC, FortiGate-401E-DC, FortiGate-401F-DC, FortiGate800D-DC, FortiGate-900G-DC, FortiGate-901G-DC, FortiGate-1100E-DC, FortiGate-1500DDC, FortiGate-1800F-DC, FortiGate-1801F-DC, FortiGate-2201E-ACDC, FortiGate-2600FDC, FortiGate-2601F-DC, FortiGate-3000D-DC, FortiGate-3000F-DC, FortiGate-3000FACDC, FortiGate-3001F-DC, FortiGate-3001F-ACDC, FortiGate-3100D-DC, FortiGate3200D-DC, FortiGate-3400E-DC, FortiGate-3401E-DC, FortiGate-3700D-DC, FortiGate3800D-DC, FortiGate-3960E-ACDC, FortiGate-3960E-DC, FortiGate-3980E-DC, FortiGate4200F-DC, FortiGate-4201F-DC, FortiGate-4400F-DC, FortiGate-4401F-DC

FortiWiFi: FWF-40F, FWF-40F-3G4G, FWF-60E, FWF-60E-DSL, FWF-60E-DSLJ, FWF60F, FWF-61E, FWF-61F, FWF-80F-2R, FWF-81F-2R, FWF-80F-2R-3G4G-DSL, FWF-81F2R-3G4G-DSL, FWF-81F-2R-3G4G-POE, FWF-81F-2R-POE

FortiGate VM: FortiGate-ARM64-AWS, FortiGate-ARM64-Azure, FortiGate-ARM64-GCP, FortiGate-ARM64-KVM, FortiGate-ARM64-OCI, FortiGate-VM64, FortiGate-VM64-ALI, FortiGate-VM64-AWS, FortiGate-VM64-Azure, FortiGate-VM64-GCP, FortiGate-VM64-HV, FortiGate-VM64-IBM, FortiGate-VM64-KVM, FortiGate-VM64-OPC, FortiGate-VM64RAXONDEMAND, FortiGate-VM64-Xen

FortiGate Rugged: FGR-60F, FGR-60F-3G4G, FGR-70F, FGR-70F-3G4G

FortiManager 7.6.2 Release Notes

31

Fortinet Inc.

Product Integration and Support

Model

Firmware Version

FortiGate: FortiGate-40F, FortiGate-40F-3G4G, FortiGate-60E, FortiGate-60E-DSL,

7.2

FortiGate-60E-DSLJ, FortiGate-60E-POE, FortiGate-60F, FortiGate-61E, FortiGate-61F,

FortiGate-70F, FortiGate-71F, FortiGate-80E, FortiGate-80E-POE, FortiGate-80F, FortiGate-

80F-Bypass, FortiGate-80F-DSL, FortiGate-80F-POE, FortiGate-81E, FortiGate-81E-POE,

FortiGate-81F, FortiGate-81F-POE, FortiGate-90G, FortiGate-91E, FortiGate-91G,

FortiGate-100E, FortiGate-100EF, FortiGate-100F, FortiGate-101E, FortiGate-101F,

FortiGate-120G, FortiGate-121G, FortiGate-140E, FortiGate-140E-POE, FortiGate-200E,

FortiGate-200F, FortiGate-201E, FortiGate-201F, FortiGate-300E, FortiGate-301E,

FortiGate-400E, FortiGate-400E-Bypass, FortiGate-400F, FortiGate-401E, FortiGate-401F,

FortiGate-500E, FortiGate-501E, FortiGate-600E, FortiGate-600F, FortiGate-601E,

FortiGate-601F, FortiGate-800D, FortiGate-900D, FortiGate-900G, FortiGate-901G,

FortiGate-1000D, FortiGate-1000F, FortiGate-1001F, FortiGate-1100E, FortiGate-1101E,

FortiGate-1500D, FortiGate-1500DT, FortiGate-1800F, FortiGate-1801F, FortiGate-2000E,

FortiGate-2200E, FortiGate-2201E, FortiGate-2500E, FortiGate-2600F, FortiGate-2601F,

FortiGate-3000D, FortiGate-3000F, FortiGate-3001F, FortiGate-3100D, FortiGate-3200D,

FortiGate-3200F, FortiGate-3201F, FortiGate-3300E, FortiGate-3301E, FortiGate-3400E,

FortiGate-3401E, FortiGate-3500F, FortiGate-3501F, FortiGate-3600E, FortiGate-3601E,

FortiGate-3700D, FortiGate-3700F, FortiGate-3701F, FortiGate-3800D, FortiGate-3960E,

FortiGate-3980E, FortiGate-4200F, FortiGate-4201F, FortiGate-4400F, FortiGate-4401F,

FortiGate-4800F, FortiGate-4801F

FortiGate 5000 Series: FortiGate-5001E, FortiGate-5001E1

FortiGate 6000 Series: FortiGate-6000F, FortiGate-6001F, FortiGate-6300F, FortiGate6300F-DC, FortiGate-6301F, FortiGate-6301F-DC, FortiGate-6500F, FortiGate-6500F-DC, FortiGate-6501F, FortiGate-6501F-DC

FortiGate 7000 Series: FortiGate-7000E, FortiGate-7000F, FortiGate-7030E, FortiGate7040E, FortiGate-7060E, FortiGate-7060E-8-DC, FortiGate-7081F, FortiGate-7081F-DC, FortiGate-7081F-2-DC, FortiGate-7121F, FortiGate-7121F-2, FortiGate-7121F-2-DC, FortiGate-7121F-DC

FortiGate DC: FortiGate-400F-DC, FortiGate-401E-DC, FortiGate-401F-DC, FortiGate800D-DC, FortiGate-900G-DC, FortiGate-901G-DC, FortiGate-1100E-DC, FortiGate-1500DDC, FortiGate-1800F-DC, FortiGate-1801F-DC, FortiGate-2201E-ACDC, FortiGate-2600FDC, FortiGate-2601F-DC, FortiGate-3000D-DC, FortiGate-3000F-DC, FortiGate-3000FACDC, FortiGate-3001F-DC, FortiGate-3001F-ACDC, FortiGate-3100D-DC, FortiGate3200D-DC, FortiGate-3400E-DC, FortiGate-3401E-DC, FortiGate-3600E-DC, FortiGate3700D-DC, FortiGate-3800D-DC, FortiGate-3960E-ACDC, FortiGate-3960E-DC, FortiGate3980E-DC, FortiGate-4200F-DC, FortiGate-4201F-DC, FortiGate-4400F-DC, FortiGate4401F-DC, FortiGate-4800F-DC, FortiGate-4801F-DC

FortiWiFi: FWF-60E, FWF-60E-DSL, FWF-60E-DSLJ, FWF-60F, FWF-61E, FWF-61F, FWF-80F-2R, FWF-80F-2R-3G4G-DSL, FWF-81F-2R, FWF-81F-2R-3G4G-DSL, FWF-81F2R-3G4G-POE, FWF-81F-2R-POE

FortiGate VM: FortiGate-ARM64-AWS, FortiGate-ARM64-Azure, FortiGate-ARM64-GCP, FortiGate-ARM64-KVM, FortiGate-ARM64-OCI, FortiGate-VM64, FortiGate-VM64-ALI, FortiGate-VM64-AWS, FortiGate-VM64-Azure, FortiGate-VM64-GCP, FortiGate-VM64-HV, FortiGate-VM64-IBM, FortiGate-VM64-KVM, FortiGate-VM64-OPC, FortiGate-VM64RAXONDEMAND, FortiGate-VM64-XEN, FortiGate-VMX-Service-Manager

FortiManager 7.6.2 Release Notes

32

Fortinet Inc.

Product Integration and Support

Model
FortiOS-VM: FOS-VM64, FOS-VM64-HV, FOS-VM64-KVM, FOS-VM64-Xen FortiGate Rugged: FGR-60F, FGR-60F-3G4G, FGR-70F, FGR-70F-3G4G

Firmware Version

FortiGate special branch models
The following FortiGate models are released on special branches of FortiOS. FortiManager version 7.6.2 supports these models on the identified FortiOS version and build number. For information about supported FortiGate models released with FortiOS firmware, see FortiGate models on page 29.

FortiOS 7.2

FortiGate Model FortiGate-30G FortiWiFi-30G FortiGate-70G, FortiGate-71G FortiGate-70G-POE, FortiGate-71G-POE FortiGate-200G, FortiGate-201G FortiWiFi-70G, FortiWiFi-71G

FortiOS Version 7.2.8 7.2.8 7.2.8 7.2.8 7.2.8 7.2.8

FortiOS 7.0
FortiGate Model FortiGate-50G-DSL FortiGate-50G-SFP FortiGate-50G-SFP-POE FortiGate-51G-SFP-POE FortiGate-80F-DSL FortiGate-90G, FortiGate-91G FortiGate-120G, FortiGate-121G FortiGate-900G, FortiGate-901G, FortiGate-900G-DC, FortiGate-901G-DC FortiGate-1000F, FortiGate-1001F FortiGate-3200F

FortiOS Version 7.0.12 7.0.12 7.0.12 7.0.12 7.0.15 7.0.15 7.0.15 7.0.15
7.0.15 7.0.15

FortiManager 7.6.2 Release Notes

33

Fortinet Inc.

Product Integration and Support

FortiGate Model

FortiOS Version

FortiGate-3201F

7.0.15

FortiGate-3700F, FortiGate-3701F

7.0.15

FortiGate-4800F, FortiGate-4800F-DC, FortiGate-4801F, FortiGate-4801F-DC

7.0.15

FortiGate-6000F, FortiGate-6001F, FortiGate-6300F, FortiGate-6300F-DC, FortiGate-6301F, 7.0.15 FortiGate-6301F-DC, FortiGate-6500F, FortiGate-6500F-DC, FortiGate-6501F, FortiGate6501F-DC

FortiGate-7000E, FortiGate-7030E, FortiGate-7040E, FortiGate-7060E, FortiGate-7060E-8- 7.0.15 DC

FortiGate-7000F, FortiGate-7081F, FortiGate-7081F-DC, FortiGate-7081F-2-DC, FortiGate- 7.0.15 7121F, FortiGate-7121F-2, FortiGate-7121F-2-DC, FortiGate-7121F-DC

FortiGateRugged-70F, FortiGateRugged-70F-3G4G

7.0.15

FortiWiFi-50G-5G

7.0.12

FortiWiFi-50G-DSL

7.0.12

FortiWiFi-50G-SFP

7.0.12

FortiWiFi-80F-2R-3G4G-DSL

7.0.15

FortiWiFi-81F-2R-3G4G-DSL

7.0.15

FortiCarrier models

The following FortiCarrier models are released with FortiCarrier firmware.
For information about supported FortiCarrier models on special branch releases of FortiCarrier firmware, see FortiCarrier special branch models on page 36.

Model

Firmware Version

FortiCarrier: FortiCarrier-3000D, FortiCarrier-3000F, FortiCarrier-3001F, FortiCarrier-

7.6

3100D, FortiCarrier-3200D, FortiCarrier-3200F, FortiCarrier-3201F, FortiCarrier-3300E,

FortiCarrier-3301E, FortiCarrier-3400E, FortiCarrier-3401E, FortiCarrier-3500F, FortiCarrier-

3501F, FortiCarrier-3600E, FortiCarrier-3601E, FortiCarrier-3700D, FortiCarrier-3700F,

FortiCarrier-3701F, FortiCarrier-3960E, FortiCarrier-3980E, FortiCarrier-4200F, FortiCarrier-

4201F, FortiCarrier-4400F, FortiCarrier-4401F, FortiCarrier-4800F, FortiCarrier-4801F

FortiCarrier 5000 Series: FortiCarrier-5001E, FortiCarrier-5001E1

FortiCarrier 6000 Series: FortiCarrier-6000F, FortiCarrier-6001F, FortiCarrier-6300F, FortiCarrier-6300F-DC, FortiCarrier-6301F, FortiCarrier-6301F-DC, FortiCarrier-6500F, FortiCarrier-6500F-DC, FortiCarrier-65001F, FortiCarrier-6501F-DC

FortiCarrier 7000 Series: FortiCarrier-7000E, FortiCarrier-7000F, FortiCarrier-7030E, FortiCarrier-7040E, FortiCarrier-7060E, FortiCarrier-7060E-8-DC, FortiCarrier-7081F, FortiCarrier-7081F-DC, FortiCarrier-7081F-2-DC, FortiCarrier-7121F, FortiCarrier-7121F-2, FortiCarrier-7121F-2-DC, FortiCarrier-7121F-DC

FortiManager 7.6.2 Release Notes

34

Fortinet Inc.

Product Integration and Support

Model

Firmware Version

FortiCarrier-DC: FortiCarrier-3000D-DC, FortiCarrier-3000F-ACDC, FortiCarrier-3000F-DC, FortiCarrier-3001F-ACDC, FortiCarrier-3001F-DC, FortiCarrier-3100D-DC, FortiCarrier3200D-DC, FortiCarrier-3400E-DC, FortiCarrier-3401E-DC, FortiCarrier-3600E-DC, FortiCarrier-3700D-DC, FortiCarrier-3960E-DC, FortiCarrier-3980E-DC, FortiCarrier-4200FDC, FortiCarrier-4201F-DC, FortiCarrier-4400F-DC, FortiCarrier-4401F-DC, FortiCarrier4800F-DC, FortiCarrier-4801F-DC
FortiCarrier-VM: FortiCarrier-ARM64-AWS, FortiCarrier-ARM64-Azure, FortiCarrierARM64-GCP, FortiCarrier-ARM64-KVM, FortiCarrier-ARM64-OCI, FortiCarrier-VM64, FortiCarrier-VM64-ALI, FortiCarrier-VM64-AWS, FortiCarrier-VM64-GCP, FortiCarrier-VM64HV, FortiCarrier-VM64-IBM, FortiCarrier-VM64-KVM, FortiCarrier-VM64-OPC, FortiCarrierVM64-Xen

FortiCarrier: FortiCarrier-2600F, FortiCarrier-2601F, FortiCarrier-3000D, FortiCarrier-3000F, 7.4 FortiCarrier-3001F, FortiCarrier-3100D, FortiCarrier-3200D, FortiCarrier-3200F, FortiCarrier3201F, FortiCarrier-3300E, FortiCarrier-3301E, FortiCarrier-3400E, FortiCarrier-3401E, FortiCarrier-3500F, FortiCarrier-3501F, FortiCarrier-3600E, FortiCarrier-3601E, FortiCarrier3700D, FortiCarrier-3700F, FortiCarrier-3701F, FortiCarrier-3800D, FortiCarrier-3960E, FortiCarrier-3980E, FortiCarrier-4200F, FortiCarrier-4201F, FortiCarrier-4400F, FortiCarrier4401F, FortiCarrier-4800F, FortiCarrier-4801F
FortiCarrier 5000 Series: FortiCarrier-5001E, FortiCarrier-5001E1
FortiCarrier 6000 Series: FortiCarrier-6000F, FortiCarrier-6001F, FortiCarrier-6300F, FortiCarrier-6300F-DC, FortiCarrier-6301F, FortiCarrier-6301F-DC, FortiCarrier-6500F, FortiCarrier-6500F-DC, FortiCarrier-65001F, FortiCarrier-6501F-DC
FortiCarrier 7000 Series: FortiCarrier-7000E, FortiCarrier-7000F, FortiCarrier-7030E, FortiCarrier-7040E, FortiCarrier-7060E, FortiCarrier-7060E-8-DC, FortiCarrier-7081F, FortiCarrier-7081F-DC, FortiCarrier-7081F-2-DC, FortiCarrier-7121F, FortiCarrier-7121F-2, FortiCarrier-7121F-2-DC, FortiCarrier-7121F-DC
FortiCarrier-DC: FortiCarrier-2600F-DC, FortiCarrier-2601F-DC, FortiCarrier-3000D-DC, FortiCarrier-3000F-DC, FortiCarrier-3000F-ACDC, FortiCarrier-3001F-DC, FortiCarrier3001F-ACDC, FortiCarrier-3100D-DC, FortiCarrier-3200D-DC, FortiCarrier-3400E-DC, FortiCarrier-3401E-DC, FortiCarrier-3600E-DC, FortiCarrier-3700D-DC, FortiCarrier-3800DDC, FortiCarrier-3960E-DC, FortiCarrier-3980E-DC, FortiCarrier-4200F-DC, FortiCarrier4201F-DC, FortiCarrier-4400F-DC, FortiCarrier-4401F-DC
FortiCarrier-VM: FortiCarrier-ARM64-AWS, FortiCarrier-ARM64-Azure, FortiCarrierARM64-GCP, FortiCarrier-ARM64-KVM, FortiCarrier-ARM64-OCI, FortiCarrier-VM64, FortiCarrier-VM64-ALI, FortiCarrier-VM64-AWS, FortiCarrier-VM64-Azure, FortiCarrierVM64-GCP, FortiCarrier-VM64-HV, FortiCarrier-VM64-KVM, FortiCarrier-VM64-IBM, FortiCarrier-VM64-OPC, FortiCarrier-VM64-Xen

FortiCarrier: FortiCarrier-2600F, FortiCarrier-2601F, FortiCarrier-3000D, FortiCarrier-3000F, 7.2 FortiCarrier-3001F, FortiCarrier-3100D, FortiCarrier-3200D, FortiCarrier-3200F, FortiCarrier3201F, FortiCarrier-3300E, FortiCarrier-3301E, FortiCarrier-3400E, FortiCarrier-3401E, FortiCarrier-3500F, FortiCarrier-3501F, FortiCarrier-3600E, FortiCarrier-3601E, FortiCarrier3700D, FortiCarrier-3700F, FortiCarrier-3701F, FortiCarrier-3800D, FortiCarrier-3960E, FortiCarrier-3980E, FortiCarrier-4200F, FortiCarrier-4201F, FortiCarrier-4400F, FortiCarrier4401F, FortiCarrier-4800F, FortiCarrier-4801F

FortiManager 7.6.2 Release Notes

35

Fortinet Inc.

Product Integration and Support

Model

Firmware Version

FortiCarrier 5000 Series: FortiCarrier-5001E, FortiCarrier-5001E1
FortiCarrier 6000 Series: FortiCarrier-6000F, FortiCarrier-6001F, FortiCarrier-6300F, FortiCarrier-6300F-DC, FortiCarrier-6301F, FortiCarrier-6301F-DC, FortiCarrier-6500F, FortiCarrier-6500F-DC, FortiCarrier-65001F, FortiCarrier-6501F-DC
FortiCarrier 7000 Series: FortiCarrier-7000E, FortiCarrier-7000F, FortiCarrier-7030E, FortiCarrier-7040E, FortiCarrier-7060E, FortiCarrier-7060E-8-DC, FortiCarrier-7081F, FortiCarrier-7081F-DC, FortiCarrier-7081F-2-DC, FortiCarrier-7121F, FortiCarrier-7121F-2, FortiCarrier-7121F-2-DC, FortiCarrier-7121F-DC
FortiCarrier-DC: FortiCarrier-2600F-DC, FortiCarrier-2601F-DC, FortiCarrier-3000D-DC, FortiCarrier-3000F-DC, FortiCarrier-3000F-ACDC, FortiCarrier-3001F-DC, FortiCarrier3001F-ACDC, FortiCarrier-3100D-DC, FortiCarrier-3200D-DC, FortiCarrier-3400E-DC, FortiCarrier-3401E-DC, FortiCarrier-3600E-DC, FortiCarrier-3700D-DC, FortiCarrier-3800DDC, FortiCarrier-3960E-DC, FortiCarrier-3980E-DC, FortiCarrier-4200F-DC, FortiCarrier4201F-DC, FortiCarrier-4400F-DC, FortiCarrier-4401F-DC
FortiCarrier-VM: FortiCarrier-ARM64-AWS, FortiCarrier-ARM64-Azure, FortiCarrierARM64-GCP, FortiCarrier-ARM64-KVM, FortiCarrier-ARM64-OCI, FortiCarrier-VM64, FortiCarrier-VM64-ALI, FortiCarrier-VM64-AWS, FortiCarrier-VM64-Azure, FortiCarrierVM64-GCP, FortiCarrier-VM64-HV, FortiCarrier-VM64-IBM, FortiCarrier-VM64-KVM, FortiCarrier-VM64-OPC, FortiCarrier-VM64-Xen

FortiCarrier special branch models
The following FortiCarrier models are released on special branches of FortiOS Carrier. FortiManager version 7.6.2 supports these models on the identified FortiOS Carrier version and build number. For information about supported FortiCarrier models released with FortiOS Carrier firmware, see FortiCarrier models on page 34.

FortiCarrier 7.0

FortiCarrier Model
FortiCarrier-3200F
FortiCarrier-3201F
FortiCarrier-3700F, FortiCarrier-3701F
FortiCarrier-4800F, FortiCarrier-4800F-DC, FortiCarrier-4801F, FortiCarrier-4801F-DC
FortiCarrier-6000F, FortiCarrier-6001F, FortiCarrier-6300F, FortiCarrier-6300F-DC, FortiCarrier-6301F, FortiCarrier-6301F-DC, FortiCarrier-6500F, FortiCarrier-6500F-DC, FortiCarrier-65001F, FortiCarrier-6501F-DC
FortiCarrier-7000E, FortiCarrier-7030E, FortiCarrier-7040E, FortiCarrier-7060E, FortiCarrier-7060E-8-DC

FortiCarrier Version 7.0.15 7.0.15 7.0.15 7.0.15 7.0.15
7.0.15

FortiManager 7.6.2 Release Notes

36

Fortinet Inc.

Product Integration and Support

FortiCarrier Model

FortiCarrier Version

FortiCarrier-7000F, FortiCarrier-7081F, FortiCarrier-7081F-DC, FortiCarrier-7081F-2-DC, 7.0.15 FortiCarrier-7121F, FortiCarrier-7121F-2, FortiCarrier-7121F-2-DC, FortiCarrier-7121FDC

FortiADC models
Model
FortiADC: FortiADC-100F, FortiADC-120F, FortiADC-200D, FortiADC-200F, FortiADC220F, FortiADC-300D, FortiADC-300F, FortiADC-320F, FortiADC-400D, FortiADC-400F, FortiADC-420F, FortiADC-700D, FortiADC-1000F, FortiADC-1200F, FortiADC-1500D, FortiADC-2000D, FortiADC-2000F, FortiADC-2200F, FortiADC-4000D, FortiADC-4000F, FortiADC-4200F, FortiADC-5000F FortiADC VM: FortiADC-VM
FortiADC: FortiADC-100F, FortiADC-120F, FortiADC-200D, FortiADC-200F, FortiADC220F, FortiADC-300D, FortiADC-300F, FortiADC-400D, FortiADC-400F, FortiADC-700D, FortiADC-1000F, FortiADC-1200F, FortiADC-1500D, FortiADC-2000D, FortiADC-2000F, FortiADC-2200F, FortiADC-4000D, FortiADC-4000F, FortiADC-4200F, FortiADC-5000F FortiADC VM: FortiADC-VM

Firmware Version 7.4
7.1, 7.2

FortiAnalyzer models

Model

Firmware Version

FortiAnalyzer: FortiAnalyzer-150G, FortiAnalyzer-300F, FortiAnalyzer-300G, FortiAnalyzer- 7.6 400E, FortiAnalyzer-800F, FortiAnalyzer-800G, FortiAnalyzer-810G, FortiAnalyzer-1000F, FortiAnalyzer-1000G, FortiAnalyzer-2000E, FortiAnalyzer-3000F, FortiAnalyzer-3100G, FortiAnalyzer-3500F, FortiAnalyzer-3500G, FortiAnalyzer-3510G, FortiAnalyzer-3700F, FortiAnalyzer-3700G, FortiAnalyzer-3900E
FortiAnalyzer VM: FortiAnalyzer-VM64, FortiAnalyzer-VM64-ALI, FortiAnalyzer-VM64AWS, FortiAnalyzer-VM64-AWS-OnDemand, FortiAnalyzer-VM64-Azure, FortiAnalyzerVM64-GCP, FortiAnalyzer-VM64-HV, FortiAnalyzer-VM64-IBM, FortiAnalyzer-VM64-KVM, FortiAnalyzer-VM64-OPC, FortiAnalyzer-VM64-Xen

FortiAnalyzer: FortiAnalyzer-150G, FortiAnalyzer-300F, FortiAnalyzer-300G, FortiAnalyzer- 7.4 400E, FortiAnalyzer-800F, FortiAnalyzer-800G, FortiAnalyzer-810G, FortiAnalyzer-1000F, FortiAnalyzer-1000G, FortiAnalyzer-2000E, FortiAnalyzer-3000F, FortiAnalyzer-3000G, FortiAnalyzer-3100G, FortiAnalyzer-3500F, FortiAnalyzer-3500G, FortiAnalyzer-3510G, FortiAnalyzer-3700F, FortiAnalyzer-3700G, FortiAnalyzer-3900E
FortiAnalyzer VM: FortiAnalyzer-VM64, FortiAnalyzer-VM64-ALI, FortiAnalyzer-VM64AWS, FortiAnalyzer-VM64-AWS-OnDemand, FortiAnalyzer-VM64-Azure, FortiAnalyzerVM64-Azure-OnDemand, FortiAnalyzer-VM64-GCP, FortiAnalyzer-VM64-HV, FortiAnalyzerVM64-IBM, FortiAnalyzer-VM64-KVM, FortiAnalyzer-VM64-OPC, FortiAnalyzer-VM64-Xen

FortiManager 7.6.2 Release Notes

37

Fortinet Inc.

Product Integration and Support

Model

Firmware Version

FortiAnalyzer: FortiAnalyzer-150G, FortiAnalyzer-300F, FortiAnalyzer-300G, FortiAnalyzer- 7.2 400E, FortiAnalyzer-800F, FortiAnalyzer-800G, FortiAnalyzer-810G, FortiAnalyzer-1000F, FortiAnalyzer-1000G, FortiAnalyzer-2000E, FortiAnalyzer-3000E, FortiAnalyzer-3000F, FortiAnalyzer-3000G, FortiAnalyzer-3100G, FortiAnalyzer-3500E, FortiAnalyzer-3500F, FortiAnalyzer-3500G, FortiAnalyzer-3510G, FortiAnalyzer-3700F, FortiAnalyzer-3700G, FortiAnalyzer-3900E
FortiAnalyzer VM: FortiAnalyzer-VM64, FortiAnalyzer-VM64-ALI, FortiAnalyzer-VM64AWS, FortiAnalyzer-VM64-AWS-OnDemand, FortiAnalyzer-VM64-Azure, FortiAnalyzerVM64-Azure-OnDemand, FortiAnalyzer-VM64-GCP, FortiAnalyzer-VM64-HV, FortiAnalyzerVM64-IBM, FortiAnalyzer-VM64-KVM, FortiAnalyzer-VM64-OPC, FortiAnalyzer-VM64-Xen

FortiAnalyzer: FortiAnalyzer-150G, FortiAnalyzer-200F, FortiAnalyzer-300F, FortiAnalyzer- 7.0 300G, FortiAnalyzer-400E, FortiAnalyzer-800F, FortiAnalyzer-800G, FortiAnalyzer-810G, FortiAnalyzer-1000F, FortiAnalyzer-1000G, FortiAnalyzer-2000E, FortiAnalyzer-3000E, FortiAnalyzer-3000F, FortiAnalyzer-3000G, FortiAnalyzer-3100G, FortiAnalyzer-3500E, FortiAnalyzer-3500F, FortiAnalyzer-3500G, FortiAnalyzer-3700F, FortiAnalyzer-3700G, FortiAnalyzer-3900E
FortiAnalyzer VM: FortiAnalyzer-VM64, FortiAnalyzer-VM64-ALI, FortiAnalyzer-VM64-ALIOnDemand, FortiAnalyzer-VM64-AWS, FortiAnalyzer-VM64-Azure, FortiAnalyzer-VM64Azure-OnDemand, FortiAnalyzer-VM64-GCP, FortiAnalyzer-VM64-GCP-OnDemand, FortiAnalyzer-VM64-HV, FortiAnalyzer-VM64-IBM, FortiAnalyzer-VM64-KVM, FortiAnalyzerVM64-OPC, FortiAnalyzer-VM64-Xen

FortiAnalyzer-BigData models
Model FortiAnalyzer-BigData: FortiAnalyzer-BigData-4500F FortiAnalyzer-BigData VM: FortiAnalyzer-BigData-VM64 FortiAnalyzer-BigData: FortiAnalyzer-BigData-4500F FortiAnalyzer-BigData VM: FortiAnalyzer-BigData-VM64

Firmware Version 7.2
7.0

FortiAuthenticator models
Model FortiAuthenticator: FAC-200E, FAC-300F, FAC-400E, FAC-800F, FAC-2000E, FAC3000E, FAC-3000F FortiAuthenticator VM: FAC-VM FortiAuthenticator: FAC-200E, FAC-300F, FAC-400E, FAC-800F, FAC-2000E, FAC3000E, FAC-3000F FortiAuthenticator VM: FAC-VM

Firmware Version 6.6
6.5

FortiManager 7.6.2 Release Notes

38

Fortinet Inc.

Product Integration and Support

Model
FortiAuthenticator: FAC-200D, FAC-200E, FAC-300F, FAC-400C, FAC-400E, FAC-800F, FAC-1000C, FAC-1000D, FAC-2000E, FAC-3000D, FAC-3000E, FAC-3000F FortiAuthenticator VM: FAC-VM
FortiAuthenticator: FAC-200D, FAC-200E, FAC-300F, FAC-400C, FAC-400E, FAC-800F, FAC-1000C, FAC-1000D, FAC-2000E, FAC-3000D, FAC-3000E FortiAuthenticator VM: FAC-VM

Firmware Version 6.4
6.3

FortiCache models

Model
FortiCache: FCH-400C, FCH-400E, FCH-1000C, FCH-1000D, FCH-3000C, FCH-3000D, FCH-3000E, FCH-3900E FortiCache VM: FCH-KVM, FCH-VM64
FortiCache: FCH-400C, FCH-400E, FCH-1000C, FCH-1000D, FCH-3000C, FCH-3000D, FCH-3900E FortiCache VM: FCH-VM64

Firmware Version 4.1, 4.2
4.0

FortiDDoS models
Model FortiDDoS: FortiDDoS-200F, FortiDDoS-1500F, FortiDDoS-2000F, FortiDDoS-3000F FortiDDoS VM: FortiDDoS-VM FortiDDoS: FortiDDoS-200F, FortiDDoS-1500F, FortiDDoS-2000F FortiDDoS VM: FortiDDoS-VM FortiDDoS: FortiDDoS-200F, FortiDDoS-1500F FortiDDoS VM: FortiDDoS-VM FortiDDoS: FortiDDoS-200B, FortiDDoS-400B, FortiDDoS-600B, FortiDDoS-800B, FortiDDoS-900B, FortiDDoS-1000B, FortiDDoS-1200B, FortiDDoS-1500E, FortiDDoS2000B, FortiDDoS-2000E

Firmware Version 6.4, 6.5, 6.6, 7.0 6.3 6.2 5.6, 5.7

FortiDeceptor models
Model FortiDeceptor: FDC-100G, FDC-1000F, FDC-1000G FortiDeceptor Rugged: FDCR-100G FortiDeceptor VM: FDC-VM

Firmware Version 5.0, 5.1, 5.2, 5.3, 6.0

FortiManager 7.6.2 Release Notes

39

Fortinet Inc.

Product Integration and Support

Model
FortiDeceptor: FDC-1000F, FDC-1000G FortiDeceptor Rugged: FDCR-100G FortiDeceptor VM: FDC-VM

Firmware Version 4.3

FortiFirewall models

Some of the following FortiFirewall models are released on special branches of FortiFirewall firmware. FortiManager version 7.6.2 supports these models on the identified FortiFirewall firmware version and build number.

Model

Firmware Version

FortiFirewall: FortiFirewall-1801F, FortiFirewall-2600F, FortiFirewall-3001F, FortiFirewall- 7.6 3501F, FortiFirewall-3980E, FortiFirewall-4200F, FortiFirewall-4400F, FortiFirewall-4401F, FortiFirewall-4801F
FortiFirewall DC: FortiFirewall-3980E-DC, FortiFirewall-4200F-DC, FortiFirewall-4400F-DC, FortiFirewall-4401F-DC
FortiFirewall-VM: FortiFirewall-VM64, FortiFirewall-VM64-KVM

FortiFirewall: FortiFirewall-1801F, FortiFirewall-2600F, FortiFirewall-3001F, FortiFirewall- 7.4 3501F, FortiFirewall-3980E, FortiFirewall-4200F, FortiFirewall-4400F, FortiFirewall-4401F, FortiFirewall-4801F
FortiFirewall DC: FortiFirewall-3980E-DC, FortiFirewall-4200F-DC, FortiFirewall-4400F-DC, FortiFirewall-4401F-DC
FortiFirewall-VM: FortiFirewall-VM64, FortiFirewall-VM64-KVM

FortiFirewall: FortiFirewall-3980E, FortiFirewall-4200F, FortiFirewall-4400F, FortiFirewall- 7.2 4401F, FortiFirewall-4801F FortiFirewall DC: FortiFirewall-4200F-DC, FortiFirewall-4401F-DC FortiFirewall-VM: FortiFirewall-VM64, FortiFirewall-VM64-KVM

FortiFirewall: FortiFirewall-3980E

7.0

FortiFirewall DC: FortiFirewall-3980E-DC

FortiFirewall-VM: FortiFirewall-VM64, FortiFirewall-VM64-KVM

FortiFirewall special branch models

Model

Firmware Version

FortiFirewall: FortiFirewall-3001F FortiFirewall: FortiFirewall-3501F

7.0.10 7.0.10

Firmware Build (for special branch)
4955
4955

FortiManager 7.6.2 Release Notes

40

Fortinet Inc.

Product Integration and Support

FortiFirewallCarrier models

Some of the following FortiFirewallCarrier models are released on special branches of FortiFirewallCarrier firmware. FortiManager version 7.6.2 supports these models on the identified FortiFirewallCarrier firmware version and build number.

Model
FortiFirewallCarrier: FortiFirewallCarrier-3001F, FortiFirewallCarrier-3501F, FortiFirewallCarrier-3980E, FortiFirewallCarrier-4200F, FortiFirewallCarrier-4400F, FortiFirewallCarrier-4401F, FortiFirewallCarrier-4801F FortiFirewallCarrier DC: FortiFirewallCarrier-4200F-DC, FortiFirewallCarrier-4401F-DC FortiFirewallCarrier-VM: FortiFirewallCarrier-VM64, FortiFirewallCarrier-VM64-KVM
FortiFirewallCarrier: FortiFirewallCarrier-1801F, FortiFirewallCarrier-2600F, FortiFirewallCarrier-3001F, FortiFirewallCarrier-3501F, FortiFirewallCarrier-3980E, FortiFirewallCarrier-4200F, FortiFirewallCarrier-4400F, FortiFirewallCarrier-4401F, FortiFirewallCarrier-4801F FortiFirewallCarrier DC: FortiFirewallCarrier-1801F-DC, FortiFirewallCarrier-4200F-DC, FortiFirewallCarrier-4401F-DC FortiFirewallCarrier-VM: FortiFirewallCarrier-VM64, FortiFirewallCarrier-VM64-KVM
FortiFirewallCarrier: FortiFirewallCarrier-2600F, FortiFirewallCarrier-3980E, FortiFirewallCarrier-4200F, FortiFirewallCarrier-4400F, FortiFirewallCarrier-4801F FortiFirewallCarrier DC: FortiFirewallCarrier-4200F-DC FortiFirewallCarrier-VM: FortiFirewallCarrier-VM64, FortiFirewallCarrier-VM64-KVM
FortiFirewallCarrier-VM: FortiFirewallCarrier-VM64, FortiFirewallCarrier-VM64-KVM

Firmware Version 7.6 7.4
7.2 7.0

FortiFirewall special branch models
Model FortiFirewallCarrier: FortiFirewallCarrier-1801F, FortiFirewallCarrier-4401F FortiFirewallCarrier: FortiFirewallCarrier-3001F FortiFirewallCarrier: FortiFirewallCarrier-3501F

Firmware Version 7.2.6

Firmware Build 4609

7.0.10 7.0.10

4955 4940

FortiMail models

Model
FortiMail: FE-60D, FE-200E, FE-200F, FE-400E, FE-400F, FE-900F, FE-900G, FE-2000E, FE-2000F, FE-3000D, FE-3000E, FE-3000F, FE-3200E FortiMail VM: FML-VM, FML-VM-AWS, FortiMail Cloud

Firmware Version 7.6

FortiManager 7.6.2 Release Notes

41

Fortinet Inc.

Product Integration and Support

Model

Firmware Version

FortiMail: FE-60D, FE-200E, FE-200F, FE-400E, FE-400F, FE-900F, FE-2000E, FE-2000F, 7.4 FE-3000D, FE-3000E, FE-3000F, FE-3200E FortiMail VM: FML-VM, FML-VM-AWS, FortiMail Cloud

FortiMail: FE-60D, FE-200D, FE-200E, FE-200F, FE-400E, FE-400F, FE-900F, FE-2000E, 7.2 FE-2000F, FE-3000D, FE-3000E, FE-3000F, FE-3200E FortiMail VM: FML-VM, FortiMail Cloud

FortiMail: FE-60D, FE-200D, FE-200E, FE-200F, FE-400E, FE-400F, FE-900F, FE-1000D, 7.0 FE-2000E, FE-2000F, FE-3000D, FE-3000E, FE-3000F, FE-3200E FortiMail VM: FML-VM, FortiMail Cloud

FortiPAM models
Model FortiPAM: FortiPAM-1000G, FortiPAM-3000G FortiPAM VM: FortiPAM-AWS, FortiPAM-Azure, FortiPAM-GCP, FortiPAM-HyperV, FortiPAM-KVM, FortiPAM-VM64

Firmware Version 1.0, 1.1, 1.2, 1.3, 1.4

FortiProxy models

Model
FortiProxy: FPX-400E, FPX-400G, FPX-2000E, FPX-2000G, FPX-4000E, FPX-4000G FortiProxy VM: FortiProxy-AliCloud, FortiProxy-AWS, FortiProxy-Azure, FortiProxy-GCP, FortiProxy-HyperV, FortiProxy-KVM, FortiProxy-OPC, FortiProxy-VM64
FortiProxy: FPX-400E, FPX-400G, FPX-2000E, FPX-2000G, FPX-4000E, FPX-4000G FortiProxy VM: FortiProxy-AliCloud, FortiProxy-AWS, FortiProxy-Azure, FortiProxy-GCP, FortiProxy-HyperV, FortiProxy-KVM, FortiProxy-VM64
FortiProxy: FPX-400E, FPX-400G, FPX-2000E, FPX-2000G, FPX-4000E, FPX-4000G FortiProxy VM: FortiProxy-AliCloud, FortiProxy-AWS, FortiProxy-Azure, FortiProxy-GCP, FortiProxy-HyperV, FortiProxy-KVM, FortiProxy-OPC, FortiProxy-VM64
FortiProxy: FPX-400E, FPX-2000E, FPX-4000E FortiProxy VM: FortiProxy-KVM, FortiProxy-VM64

Firmware Version 7.4 7.2 7.0 1.0, 1.1, 1.2, 2.0

FortiManager 7.6.2 Release Notes

42

Fortinet Inc.

Product Integration and Support

FortiSandbox models

Model
FortiSandbox: FSA-500F, FSA-500G, FSA-1000D, FSA-1000F, FSA-1500G, FSA-2000E, FSA-3000D, FSA-3000E, FSA-3000F, FSA-3500D FortiSandbox DC: FSA-1000F-DC FortiSandbox-VM: FortiSandbox-AWS, FortiSandbox-Cloud, FSA-VM
FortiSandbox: FSA-500F, FSA-1000D, FSA-1000F, FSA-2000E, FSA-3000D, FSA-3000E, FSA-3000F, FSA-3500D FortiSandbox DC: FSA-1000F-DC FortiSandbox-VM: FortiSandbox-AWS, FortiSandbox-Cloud, FSA-VM
FortiSandbox: FSA-500F, FSA-1000D, FSA-1000F, FSA-2000E, FSA-3000D, FSA-3000E, FSA-3500D FortiSandbox DC: FSA-1000F-DC FortiSandbox-VM: FortiSandbox-AWS, FSA-VM

Firmware Version 4.2, 4.4
4.0
3.2

FortiSOAR models
Model FortiSOAR VM: FortiSOAR-VM

Firmware Version 7.2, 7.3, 7.4, 7.5, 7.6

FortiSRA models
Model FortiSRA: FortiSRA-1000G, FortiSRA-3000G FortiSRA-VM: FortiSRA-Azure, FortiSRA-HyperV, FortiSRA-KVM, FortiSRA-VM64

Firmware Version 1.0, 1.1

FortiSwitch ATCA models
Model FortiController: FTCL-5103B, FTCL-5903C, FTCL-5913C FortiSwitch-ATCA: FS-5003A, FS-5003B FortiController: FTCL-5103B FortiSwitch-ATCA: FS-5003A, FS-5003B

Firmware Version 5.2 5.0
4.3

FortiManager 7.6.2 Release Notes

43

Fortinet Inc.

Product Integration and Support

FortiTester models

Model
FortiTester: FortiTester-100F, FortiTester-2000D, FortiTester-2000E, FortiTester-2000F, FortiTester-2500E, FortiTester-3000E, FortiTester-3000F, FortiTester-4000E, FortiTester4000F FortiTester VM: FortiTester-VM, FortiTester-VM-ALI-BYOL, FortiTester-VM-ALI-PAYG, FortiTester-VM-AWS-BYOL, FortiTester-VM-AWS-PAYG, FortiTester-VM-AZURE-BYOL, FortiTester-VM-AZURE-PAYG, FortiTester-VM-GCP-BYOL, FortiTester-VM-GCP-PAYG, FortiTester-VM-IBM-BYOL, FortiTester-VM-IBM-PAYG, FortiTester-VM-KVM, FortiTesterVM-OCI-BYOL, FortiTester-VM-OCI-PAYG

Firmware Version 7.1, 7.2, 7.3, 7.4

FortiWeb models

Model

Firmware Version

FortiWeb: FortiWeb-100D, FortiWeb-100E, FortiWeb-100F, FortiWeb-400C, FortiWeb-

7.6

400D, FortiWeb-400E, FortiWeb-400F, FortiWeb-600D, FortiWeb-600E, FortiWeb-600F,

FortiWeb-1000D, FortiWeb-1000E, FortiWeb-1000F, FortiWeb-2000E, FortiWeb-2000F,

FortiWeb-3000C, FortiWeb-3000CFSX, FortiWeb-3000D, FortiWeb-3000DFSX, FortiWeb-

3000E, FortiWeb-3000F, FortiWeb-3010E, FortiWeb-4000C, FortiWeb-4000D, FortiWeb-

4000E, FortiWeb-4000F

FortiWeb VM: FortiWeb-Azure, FortiWeb-Azure_OnDemand, FortiWeb-GCP, FortiWebGCP_OnDemand, FortiWeb-HyperV, FortiWeb-VM, FortiWeb-XENOpenSource, FortiWebXENServer

FortiWeb: FortiWeb-100D, FortiWeb-100E, FortiWeb-100F, FortiWeb-400C, FortiWeb-

7.4

400D, FortiWeb-400E, FortiWeb-400F, FortiWeb-600D, FortiWeb-600E, FortiWeb-600F,

FortiWeb-1000D, FortiWeb-1000E, FortiWeb-1000F, FortiWeb-2000E, FortiWeb-2000F,

FortiWeb-3000C, FortiWeb-3000CFSX, FortiWeb-3000D, FortiWeb-3000DFSX, FortiWeb-

3000E, FortiWeb-3000F, FortiWeb-3010E, FortiWeb-4000C, FortiWeb-4000D, FortiWeb-

4000E, FortiWeb-4000F

FortiWeb VM: FortiWeb-Azure, FortiWeb-Azure_OnDemand, FortiWeb-GCP, FortiWebGCP_OnDemand, FortiWeb-HyperV, FortiWeb-VM, FortiWeb-XENOpenSource, FortiWebXENServer

FortiWeb: FortiWeb-100D, FortiWeb-100E, FortiWeb-400C, FortiWeb-400D, FortiWeb-

7.2

400E, FortiWeb-600D, FortiWeb-600E, FortiWeb-1000D, FortiWeb-1000E, FortiWeb-1000F,

FortiWeb-2000E, FortiWeb-2000F, FortiWeb-3000C, FortiWeb-3000CFSX, FortiWeb-3000D,

FortiWeb-3000DFSX, FortiWeb-3000E, FortiWeb-3000F, FortiWeb-3010E, FortiWeb-4000C,

FortiWeb-4000D, FortiWeb-4000E, FortiWeb-4000F

FortiWeb VM: FortiWeb-Azure, FortiWeb-Azure_OnDemand, FortiWeb-GCP, FortiWebGCP_OnDemand, FortiWeb-HyperV, FortiWeb-VM, FortiWeb-XENOpenSource, FortiWebXENServer

FortiManager 7.6.2 Release Notes

44

Fortinet Inc.

Product Integration and Support

Model

Firmware Version

FortiWeb: FortiWeb-100D, FortiWeb-100E, FortiWeb-400C, FortiWeb-400D, FortiWeb-

7.0

400E, FortiWeb-600D, FortiWeb-600E, FortiWeb-1000D, FortiWeb-1000E, FortiWeb-2000E,

FortiWeb-2000F, FortiWeb-3000C, FortiWeb-3000CFSX, FortiWeb-3000D, FortiWeb-

3000DFSX, FortiWeb-3000E, FortiWeb-3000F, FortiWeb-3010E, FortiWeb-4000C,

FortiWeb-4000D, FortiWeb-4000E, FortiWeb-4000F

FortiWeb VM: FortiWeb-Azure, FortiWeb-Azure_OnDemand, FortiWeb-GCP, FortiWebGCP_OnDemand, FortiWeb-HyperV, FortiWeb-VM, FortiWeb-XENOpenSource, FortiWebXENServer

FortiExtender MODEM firmware compatibility
See the FortiOS Release Notes for a list of MODEM firmware filename and version for each FortiExtender model and where in the world the MODEMs are compatible.

FortiManager 7.6.2 Release Notes

45

Fortinet Inc.

Resolved Issues

The following issues have been fixed in 7.6.2. To inquire about a particular bug, please contact Customer Service & Support.

AP Manager

Bug ID 955558
1040365
1041445 1050466 1060238 1076200

Description
FortiManager unsets the Protected Management Frame (PMF) setting when the SSID security mode is configured to OWE-enabled in the AP Manager.
FortiManager is generating false vulnerability reports for certain FortiAPs: l U431F l U231F
The AP attributes do not automatically update in the AP Manager.
The 802.11ax-5g AP profile is missing for all FAPs that support WiFi 6.
FortiManager is attempting to unset the FortiAP's name.
Policy install fails due to FortiManager installs unexpected changes related to "<wifi_intf> address".

Device Manager

Bug ID 796842 952422 963025 1003899 1020257 1034355

Description
Failed to reload the configuration due to the "datasrc invalid" error message.
IPsec templates created by SDWAN Overlay does not create tunnels for all the underlay interfaces.
When using the static route template, the "SD-WAN Zone" does not appear under the Interface column.
FortiManager generates a VPN certificate that is not accepted by the FIPS-enabled FortiGate devices.
Packet Capture feature for managed FortiGates does not work; it starts but immediately stops.
When assigning a provisioning template with Admin Settings configuration, FortiManager changes the hostname of the device.

FortiManager 7.6.2 Release Notes

46

Fortinet Inc.

Resolved Issues Bug ID 1039591 1041440
1050126 1053194
1063635 1063835 1063850 1074717 1075052
1075281 1075747 1080414 1099824

Description
The Link Status entries are blank under the Interfaces >>> Network.
Some FortiGtate platforms (FGT-40F and FGT-60F) does not support the "ip-managedby-fortiipam" and FortiGate refuses to take the configuration from FortiManager; hence users will be experiencing the install error.
Setting up a FortiGate-HA with ZTP fails because the FortiLink is not deleted during the "HA config pushed to FGT" process.
If the "system interface speed" attribute is changed from the FortiManager, it may potentially cause an installation failure. Modifying the "system interface speed" is not currently supported on the FortiManager and must be done on the FortiGate side.
FortiManager does not support the "FortiWiFi-80F-2R-3G4G-DSL".
FortiManager ZTP installation to FortiGate versions 7.2.8 and lower may fail due to differing default "ssh-kex-algo" settings between FortiManager and FortiGate.
FortiManager is attempting to install a "PRIVATE KEY" with every installation, even after retrieving the configuration.
An error might be observed when the SD-WAN template health check name contains a space, displaying the following message: "Bad health check name...".
Occasionally, installations may fail on FortiGates in HA mode due to a "Serial number does NOT match" error. This can happen if the HA device's serial number on FortiManager does not immediately update after a failover.
Unable to add FortiAnalyzer to FortiManager, when "fgfm-peercert-withoutsn" is enabled.
SD-WAN Monitor does not display the members under the SD-WAN Rules (Map View or Table View). This issue is most likely to occur when "priority-zone" is configured.
CSV import fails to set metadata variables due to old header format ("name").
FortiManager may push the ICAP and WAF profile configurations to low-end FortiGate models that do not support these features, potentially causing installation failures.

FortiSwitch Manager

Bug ID 1040428
1053220 1060242 1075021

Description FortiSwitch diagnostics tools do not display thecable test diagnose results, device information on Ports, and update Registration status. Unable to delete FortiSwitches when central management is enabled for FortiSwitch. Unable to change the FortiSwitch name from the FortiSwitch Manager. Users with the "admin profile" rights cannot access the "FortiSwitch Manger".

FortiManager 7.6.2 Release Notes

47

Fortinet Inc.

Resolved Issues
Others
Bug ID 998198 1003711
1015890 1055417
1058185 1058585 1060337
1062128 1066132 1071064 1078947

Description
When upgrading ADOM, the upgrade process fails with the following error: "invalid value - can not find import template 'XYZ'".
During the FortiGate HA upgrade, both the primary and secondary FortiGates may reboot simultaneously, which can disrupt the network. This issue is more likely to occur in FortiGates that require disk checks, leading to longer boot times.
Unable to upgrade ADOM from v6.4 to v7.0 due to "switch-controller traffic-policy" error.
Unable to upgrade the firmware version of the FortiGates in HA cluster by using the firmware template when HA is in-sync status. The failure to upgrade FortiGate HA cluster firmware is caused by a crash in "dmserver" daemon.
FortiProxy policies not imported if the policies have either internet service or IPv6 used in the source or destination.
When enabling Fabric Management, the "csfd" process might not start immediately.
The log insertion might be interrupted if FortiManager is upgraded directly from version (7.4.0/7.4.1) to 7.6.0/7.6.1. This will only occur if FortiAnalyzer Features are enabled on FortiManager.
After upgrading to the latest available build, the FortiManager GUI displays the warning message: "A new firmware version is available".
When enabling the FortiAnalyzer features on FortiManager, a server error message might appear under "FortiView > System > Resource Usage".
Unable to upgrade the ADOMs.
Repeatedly testing the URL rating on FortiManager (diagnose fmupdate test fgdurl-rating...) may cause the "fgdsvr daemon" to crash.

Policy and Objects

Bug ID 843716 963536 969923
971610

Description
FortiManager tries to unset url-map for TCP forwarding ZTNA virtual server.
The policy package feature "Export to Excel" is not functioning.
The "View Mode" button, which is used to check the interface in Pair View, is missing in the Firewall Policy under Policy Packages.
FortiManager does not able to import the Central SNAT, DNAT, DOS, local-in, and traffic shaping policies.

FortiManager 7.6.2 Release Notes

48

Fortinet Inc.

Resolved Issues Bug ID 978136
986256
991720 1004056 1005161 1013948 1014035 1025012 1029787 1029921 1039766 1040160 1055795
1057228

Description
Occasionally, installation may fail due to an error message, "Waiting for another session", which prevents policies from being installed from FortiManager. During this issue, the following message may also appear: "Blocked by session id(XYZ) username(n/a)". This issue may be caused by a signal loss between the child and parent security console processes, leading the parent process to continue waiting for a copy result.
When creating the application list on the FortiManager, if the Category ID is set to 33 or 34, the installation does not display any errors. However, these invalid categories cannot be set on the FortiGate. Consequently, the assigned application list entry will be created without a specific category and will default to the "block" action. This behavior may cause network interruptions.
FortiManager still has an option to enable the "match-vip" through the policy package for "allow" policies. However, this is not supported anymore on the FortiGates.
The installation may encounter an error related to Syntax support for the "ssh-enc-algo" command.
The policy package status changes for all devices even when an address object is opened and saved without any modifications. This issue is particularly observed in objects utilizing the per-device mapping feature.
After upgrading to FortiManager versions 7.2.5 or 7.4.3, the installation preview may hang. However, the installation process itself can be completed successfully.
Video filter profile config is not getting pushed completely from FortiManager to FortiGate.
Configuring the SSL/SSH inspection profile may result in the following error: "The server certificate replacement mode cannot support category exemptions."
The Firewall Policy pane in the FortiManager GUI may occasionally display both "Standard Security Profiles" (SSL no-inspection and protocol default profiles) and "Security Profile Groups" simultaneously.
Under the "Web Application Firewall" security profiles, users are unable to disable the signatures through the GUI.
The Firewall Policy Lookup feature does not display the list of source interfaces for FortiGates.
When installing policy to a FortiGate that uses FortiSandbox inline scanning on an AV profile, FortiManager unsets the configuration on install.
During device import via multiple CSV files at same time, some devices were imported successfully, while others encountered errors and had missing metadata variables. Additionally, FortiManager forced the admin to log out. When attempting to log back in, the following error message appeared: "ADOM not found".
Importing the SDN Objects, with multiple tags, will addmultiple entries listed as SDN objects; when clients add anything into the filters section ,browser immediately redirects to an error page showing: " Oops! Sorry, an unexpected error has occurred "

FortiManager 7.6.2 Release Notes

49

Fortinet Inc.

Resolved Issues Bug ID 1066617 1066638 1068736 1070800
1071226 1072354
1076659
1079037 1079128 1079678 1086603
Script
Bug ID 931088

Description Unable to create the IP address object type wildcard, the following error message is displayed: "Invalid IP netmask". In 7.4 ADOM, installation to 7.6 FortiGates may unset firewall service tcp-portrange (if a firewall policy references a firewall service). Best Quality SDWAN rules installation may fail with the following error message: "Commit failed: Bad health check name". FortiManager is attempting to install the "cli-cmd-audit" command on a FortiGate (FortiGate101E and FortiGate-2000E) running version 7.2.8, which does not support this command, leading to an installation error. Policy Lookup is not showing result as highlighted when the sections are not expended. FortiManager may attempt to install "ssl-ssh-profile" settings to "quic" objects. However, this syntax might not be supported on smaller FortiGate hardware platforms, particularly those with 2GB of RAM, such as the 60F/61F models. When policy package configured with policy block, installation to multiple devices may have copy fail errors if combined length of the Policy Block name and Policy name is greater than 35 characters and if the total number of such policies exceeds 1000. The "internet-service-id" attribute is configurable in the FortiManager, whereas this attribute cannot be modified on the FortiGate. ZTNA Server Per-Device Mapping may display a copy error failure if a new per-device mapping is created without specifying the object interface. FortiManager does not provide any warning when there is a "deny all" policy in the middle of a Policy Package. This can be still seen on the "task monitor". Unable to create local-in policy with ISDB objects
Description Unable to delete VDOMs using the FortiManager script. Interfaces remain in the device database, causing the installation to fail.

FortiManager 7.6.2 Release Notes

50

Fortinet Inc.

Resolved Issues
System Settings

Bug ID 1005098 1027547 1040377 1047252 1060943

Description
Verification of the LDAP Server through the LDAP Browser may display an "Operation Error" message.
In certain cases, the License Status on FortiManager may be incorrectly displayed as "Expired" despite the license being active in the account.
Despite unchecking the backup strategy option and receiving the "Setup Complete" message, the "Setup Wizard" continues to display during future logins on the Secondary members.
Incorrect warning message displayed in FortiManager GUI during upgrade from Feature build to Mature build.
FGFM Tunnel does not automatically come back online after disabling the "Offline Mode".

FortiManager 7.6.2 Release Notes

51

Fortinet Inc.

Known issues
Known issues

Known issues are organized into the following categories: l New known issues on page 52 l Existing known issues on page 52
To inquire about a particular bug or to report a bug, please contact Fortinet Customer Service & Support.

New known issues
No new issues have been identified in version 7.6.2.

Existing known issues

The following issues have been identified in a previous version of FortiManager and remain in FortiManager 7.6.2.

AP Manager
Bug ID 1086946

Description
The FortiAP upgrade via FortiManager may fail (on FGT 7.6.1). The process could stop at the controller_download_image step or experience a prolonged stall, eventually resulting in a timeout.

Device Manager
Bug ID 974925
980362 995919 1004220

Description
The NTP Server setting may not display the correct configuration. This issue might occur on managed devices running FortiOS version 7.4.2 or higher. Workaround: Edit NTP server setting under CLI configuration.
The Firmware Version column in Device Manager incorrectly shows "Upgrading FortiGate from V1 to V2" even after a successful upgrade has been completed.
Cannot config system password-policy expire-day for FortiGates.
The SD-WAN Overlay template creates route-map names that exceed the 35-character limit.

FortiManager 7.6.2 Release Notes

52

Fortinet Inc.

Known issues Bug ID 1062545 1086303
Others
Bug ID 830592 1049457 1053830
1066132 1080463 1105387
1106312

Description
When using the backslash "\" in the preshared key of IPSEC settings, the install may fail.
An installation error may occur when binding and installing the created VLAN interface to the software switch due to ip-managed-by-fortiipam. No issues have been observed with the installation of VLAN interfaces or physical interfaces. Workaround: Use a script (CLI template) on device database on FMG to unset "ip-managed-byfortiipam" under wan interface (every time before installation), and then install the configuration.
Description
Upgrade of ADOM type FortiProxy is not supported.
When FortiAnalyzer is added as a managed device, users may encounter an issue in the FortiManager GUI when expanding the log details.
MEAs cannot be enabled from FortiManager's GUI. Workaround: Use the following CLI command to enable them (in this example, universalconnector):
config system docker set status enable set universalconnector enable
end
When enabling the FortiAnalyzer feature on FortiManager, a server error message might appear under "FortiView > System > Resource Usage".
An admin with access to a specific ADOM can view the database and clone objects to another ADOM, even if they do not have direct access to it.
The upgrade task failed when the FortiManager attempted to send the image to the FortiGates. The image file transfer between FortiManager and FortiGate appeared to fail over the FGFM tunnel. FortiManager timed out and was unable to retrieve the FGT version (first observed in FGT version 7.6.1). Workaround: Enable option Let Device Download Firmware From FortiGuard on the FortiManager side.
The Table View and Device History sections under the SD-WAN Manager's Network tab do not properly display all detailed information, such as Interfaces, Link Mode, and other relevant data. (This issue was initially reported in relation to FGT 7.6.1)

FortiManager 7.6.2 Release Notes

53

Fortinet Inc.

Known issues

Policy & Objects

Bug ID 971065 1030914 1077964

Description
When the number of Custom Internet Services exceeds 256, installation fails due to this limitation.
Copy and paste function in GUI removes name of the policy rule and adds unwanted default security profiles (SSL-SSH no-inspection and default PROTOCOL OPTIONS).
After ZTNA server real server address type changes from FQDN to IP, the policy installation may fail; FortiManager pushes ZTNA server config with wrong order.

Script
Bug ID 1085374

Description FortiManager does not support exporting the TCL scripts via CLI.

FortiManager 7.6.2 Release Notes

54

Fortinet Inc.

Appendix A - FortiGuard Distribution Servers (FDS)

In order for FortiManager to request and retrieve updates from FDS, and for FortiManager to serve as an FDS, please configure the necessary settings on all devices between FortiManager and FDS, or between FortiManager and FortiGate devices based on the following items:
l FortiManager accesses FDS for antivirus and attack updates through TCP/SSL port 443. l If there is a proxy server between FortiManager and FDS, FortiManager uses port 443 to communicate with the
proxy server in tunnel mode by default. Alternatively, you can configure web proxy to use proxy mode using port 80. For more information, see the FortiManager Administration Guide.

FortiGuard Center update support

You can configure FortiManager as a local FDS to provide FortiGuard updates to other Fortinet devices and agents on your network. The following table lists which updates are available per platform:

Platform FortiGate FortiADC FortiCache FortiCarrier FortiClient FortiDeceptor FortiDDoS FortiEMS FortiMail FortiProxy FortiSandbox FortiSOAR FortiTester FortiWeb

Update Service              

Query Service 
 
  

FortiManager 7.6.2 Release Notes

55

Fortinet Inc.

Appendix B - Default and maximum number of ADOMs supported

This section identifies the supported number of ADOMs for FortiManager hardware models and virtual machines.

Hardware models

FortiManager supports a default number of ADOMs based on hardware model.
Some hardware models support an ADOM subscription license. When you purchase an ADOM subscription license, you increase the number of supported ADOMs. For example, you can purchase an ADOM subscription license for the FMG3000G series, which allows you to use up to a maximum of 8000 ADOMs.
Other hardware models do not support the ADOM subscription license. For hardware models that do not support the ADOM subscription license, the default and maximum number of ADOMs is the same.

FortiManager Platform
200G Series 300F Series 400G Series 1000F Series 2000E Series 3000G Series 3700G Series

Default number of ADOMs 30 100 150 1000 1200 4000 10,000

ADOM license support?
 

Maximum number of ADOMs 30 100 150 1000 1200 8000 12,000

For FortiManager F series and earlier, the maximum number of ADOMs is equal to the maximum devices/VDOMs as described in the FortiManager Data Sheet.

Virtual Machines
FortiManager VM subscription license includes five (5) ADOMs. Additional ADOMs can be purchased with an ADOM subscription license. For FortiManager VM perpetual license, the maximum number of ADOMs is equal to the maximum number of Devices/VDOMs listed in the FortiManager Data Sheet.

FortiManager 7.6.2 Release Notes

56

Fortinet Inc.

Appendix B - Default and maximum number of ADOMs supported
l FortiManager-VM subscription licenses are fully stackable. l For FortiManager-VM perpetual licenses, only the number of managed devices is
stackable.

FortiManager 7.6.2 Release Notes

57

Fortinet Inc.

www.fortinet.com
Copyright© 2024 Fortinet, Inc. All rights reserved. Fortinet®, FortiGate®, FortiCare® and FortiGuard®, and certain other marks are registered trademarks of Fortinet, Inc., and other Fortinet names herein may also be registered and/or common law trademarks of Fortinet. All other product or company names may be trademarks of their respective owners. Performance and other metrics contained herein were attained in internal lab tests under ideal conditions, and actual performance and other results may vary. Network variables, different network environments and other conditions may affect performance results. Nothing herein represents any binding commitment by Fortinet, and Fortinet disclaims all warranties, whether express or implied, except to the extent Fortinet enters a binding written contract, signed by Fortinet's Chief Legal Officer, with a purchaser that expressly warrants that the identified product will perform according to certain expressly-identified performance metrics and, in such event, only the specific performance metrics expressly identified in such binding written contract shall be binding on Fortinet. For absolute clarity, any such warranty will be limited to performance in the same ideal conditions as in Fortinet's internal lab tests. Fortinet disclaims in full any covenants, representations, and guarantees pursuant hereto, whether express or implied. Fortinet reserves the right to change, modify, transfer, or otherwise revise this publication without notice, and the most current version of the publication shall be applicable.


madbuild