System Advancements

SNMP improvements for dynamic routing (168927)

SNMP improvements for dynamic routing include support for RFC 4750 OSPF Version 2 Management Information Base and RFC 5643 Management Information Base for OSPFv3. These changes add the capability of logging dynamic routing activity. Examples include sending OSPF routing events or changes to a syslog server or FortiAnalyzer or changes in neighborhood status.

 

Network Mobility Extensions for Mobile IPv4 (NEMO)

This is an implementation of RFC 5177 that includes the following CLI command.

config system mobile-tunnel

set status enable/disable //Enable/disable this mobile tunnel.

set roaming-interface port1 //Roaming interface name.

set home-agent xxx.xxx.xxx.xxx //IP address of the NEMO HA.

set home-address xxx.xxx.xxx.xxx // Home IP address.

set n-mhae-spi 256 //NEMO authentication spi.

set n-mhae-key-type ascii/base64 //NEMO authentication key type.

set n-mhae-key vWZZxx //NEMO authentication key. set hash-algorithm hmac-md5 //Hash Algorithm. set tunnel-mode gre //NEMO tunnnel mode.

set renew-interval 60 //Time before lifetime expiraton to send NMMO HA re-registration.

set lifetime 180 //NEMO HA registration request lifetime.

set reg-interval 5 //NEMO HA registration interval.

set reg-retry 3 //NEMO HA registration maximal retries.

end

 

Restoring configuration file without rebooting the FortiGate (237786)

A setting has been added in the CLI that when set to enable, will allow the FortiGate to start using the newly uploaded configuration file without going through a full reboot process.

The syntax for the setting is:

config system global

set reboot-upon-config-restore {enable | disable}

end


Having trouble configuring your Fortinet hardware or have some questions you need answered? Check Out The Fortinet Guru Youtube Channel! Want someone else to deal with it for you? Get some consulting from Fortinet GURU!

Leave a Reply

Your email address will not be published. Required fields are marked *

This site uses Akismet to reduce spam. Learn how your comment data is processed.