The FortiGate device must be running an operating system release that is currently supported by the vendor.
Overview
| Finding ID | Version | Rule ID | IA Controls | Severity |
| V-234193 | FGFW-ND-000170 | SV-234193r879887_rule | CCI-000366 | high |
| Description | ||||
| Network devices running an unsupported operating system lack current security fixes required to mitigate the risks associated with recent vulnerabilities. | ||||
| STIG | Date | |||
| Fortinet FortiGate Firewall NDM Security Technical Implementation Guide | 2023-06-01 | |||
Related Frameworks
4 paths across 3 frameworks
Related Frameworks
NIST 800-531 mapping
CM-6
1.00
- DISA · 1 · disa_xccdf · related
- DISA · 2025-01-23 · disa_cci_list · equivalent
NIST 800-1712 mappings
3.4.1
1.00
- DISA · 1 · disa_xccdf · related
- DISA · 2025-01-23 · disa_cci_list · equivalent
- NIST · Rev 2 (Feb 2020, errata Jan 2021) · nist_800_171_app_d · equivalent
3.4.2
1.00
- DISA · 1 · disa_xccdf · related
- DISA · 2025-01-23 · disa_cci_list · equivalent
- NIST · Rev 2 (Feb 2020, errata Jan 2021) · nist_800_171_app_d · equivalent
CCI1 mapping
CCI-000366
1.00
- DISA · 1 · disa_xccdf · related
Details
Check Text (C-234193r879887_chk)
Log in to the Fortinet Support Portal and review the Product Life Cycle Software "End of Support Date".
Log in to the FortiGate with Super-Admin privilege in the GUI and review the Dashboard >> Status >> System Information widget for Firmware version.
If the firmware listed in the FortiGate is not supported based on the Product Life Cycle page, this is a finding.
Fix Text (F-37343r628872_fix)
Go to the Fortinet Upgrade Path Tool and select the platform that is being upgraded, the current FortiOS version, and the desired FortiOS version, and then click "Go".
Log in to the Fortinet Support Portal and go to Download >> Firmware Images and download the listed firmware versions from the Upgrade Path Tool.
Log in to the FortiGate GUI with Super-Admin privilege and go to System >> Firmware. Upload the target firmware file under "Upload Firmware >> Browse" and then click "Backup config and upgrade”.
Repeat as necessary as defined by the Upgrade Path Tool.