FortiSOAR™-7.6.0-OS Updates and Security Fixes
FortiSOAR™-7.6.0-OS Updates and Security Fixes
FortiSOAR™ 7.6.0
FORTINET DOCUMENT LIBRARY
https://docs.fortinet.com
FORTINET BLOG
https://blog.fortinet.com
FORTIGUARD LABS
https://www.fortiguard.com
FEEDBACK
Email: techdoc@fortinet.com
November, 2024
FortiSOAR™ 7.6.0 OS Updates and Security Fixes
00-400-000000-20201124
TABLE OF CONTENTS
Change Log 4
FortiSOAR™ OS Update Process and Security Fixes 5
FortiSOAR™ OS Update Process 5
FortiSOAR™ update server 5
FortiSOAR™ OS updates 5
The FortiSOAR™ 7.6.0 Security Patch delivers updated OS packages for the 7.6.0 release. This document provides you
with the information you need about how you can get these updates without the need to upgrade FortiSOAR™.
FortiSOAR™ OS update process includes the following:
l FortiSOAR™ update server
l FortiSOAR™ OS updates
Whenever Rocky Linux publishes an important OS update for Rocky Linux, an announcement is made using the rocky-
announce mailing list. The FortiSOAR™ engineering team is subscribed to this mailing list. Once a new update is
available, FortiSOAR™ Engineering first tests these updates on a FortiSOAR™ Virtual Appliance by performing
vulnerability scan using Nessus™. If no reported vulnerabilities are seen sanity testing is done for stability and
regression. After confirming that the update is safe, updates are pushed to the FortiSOAR™ update server
(repo.fortisoar.fortinet.com).
FortiSOAR™ OS updates
Before release, FortiSOAR™ is updated with the latest updates from the Rocky Linux mirror servers. A FortiSOAR™
customer automatically receives an OS update when they upgrade to the latest FortiSOAR™.
If a customer needs to update Rocky Linux without upgrading the FortiSOAR™ product itself, they can do the following:
1. Ensure that repo.fortisoar.fortinet.com is reachable from your VM.
If you connect using a proxy, ensure that you set the proxy in the /etc/wgetrc, /etc/profile, and yum.conf
files. This is required to download the OS updates file.
2. SSH to your FortiSOAR™ 7.6.0 VM and log in as a root user.
3. Download the OS update file (security-update-fortisoar-7.6.0-sp1.bin) for 7.6.0 by running the
following command:
# wget https://repo.fortisoar.fortinet.com/7.6.0/security-update-fortisoar-7.6.0-
sp1.bin
Note: If your instance can connect to repo.fortisoar.fortinet.com using only a proxy, then ensure that the proxy is set
in the /etc/wgetrc file.
For example:
use_proxy=yes
http_proxy=<proxy_server_ip:port>
https_proxy=<proxy_server_ip:port>
4. Run the security-update-fortisoar-7.6.0-sp1.bin file to apply the security patch on your 7.6.0 system:
# sh security-update-fortisoar-7.6.0-sp1.bin
5. Reboot your host post-upgrade, if directed by the script.
Copyright© 2024 Fortinet, Inc. All rights reserved. Fortinet®, FortiGate®, FortiCare® and FortiGuard®, and certain other marks are registered trademarks of Fortinet, Inc., and other Fortinet names herein
may also be registered and/or common law trademarks of Fortinet. All other product or company names may be trademarks of their respective owners. Performance and other metrics contained herein were
attained in internal lab tests under ideal conditions, and actual performance and other results may vary. Network variables, different network environments and other conditions may affect performance
results. Nothing herein represents any binding commitment by Fortinet, and Fortinet disclaims all warranties, whether express or implied, except to the extent Fortinet enters a binding written contract,
signed by Fortinet’s Chief Legal Officer, with a purchaser that expressly warrants that the identified product will perform according to certain expressly-identified performance metrics and, in such event, only
the specific performance metrics expressly identified in such binding written contract shall be binding on Fortinet. For absolute clarity, any such warranty will be limited to performance in the same ideal
conditions as in Fortinet’s internal lab tests. Fortinet disclaims in full any covenants, representations, and guarantees pursuant hereto, whether express or implied. Fortinet reserves the right to change,
modify, transfer, or otherwise revise this publication without notice, and the most current version of the publication shall be applicable.