FortiSASE Proactive Software Maintenance for KSA environment only - release 26.2.2

Scheduled for Aug 13, 18:00 UTC  -  Aug 14, 00:00 UTC

Scheduled

Anticipated Impact: Potential for short interruption of customer instances and configuration portal during the window.

The Operations team will be installing a rolling software update. There is potential for short connectivity impact (approximately ~1-2 minutes) for each customer instance and the configuration portal while these components are updated. No other impact on service delivery is expected.

For FortiSASE-v7.4 release:

For integrating a private AD server without exposing it to the internet, added support for creating an AD connector API key in FortiSASE. This API key is used to configure the FortiClient EMS AD Connector to establish a tunnel with FortiSASE. This feature requires a FortiSASE instance supporting FortiClient 7.4.
Added support for ZTNA UDP traffic forwarding from FortiClient 7.4 endpoints. This feature requires an instance supporting FortiClient 7.4, FortiClient 7.4.1 or later installed on endpoints and the FortiGate ZTNA application gateway to be running FortiOS version 7.6.0 or later.
Added new best practice recommendation to detect a newer Security PoP location with superior performance for the same geographic region and guide the user on how to migrate to the new security PoP.
Support has been added for automatic endpoint vulnerability patching in the Operations > Endpoints > Endpoint details pane.
Added support for Secure Browser SSO domain integration where an email address domain for end users to log into is integrated with Secure Browser to support BYOD use cases without using a deployment script.
Added enhancements to SCIM server support including support for large SCIM user populations, support for on-demand provisioning from Entra ID after initial provisioning, and support for more robust handling of error conditions.
Added support for the optional Local ID type in the IPsec Phase 1 settings for the on-ramp tunnel custom device type for third-party devices that require using an IP address for the local ID type.
A RADIUS server timeout option has been added in Access & authentication > RADIUS when creating or editing a connection.
FortiClient 7.4.7 support has been added for the Linux platform for IPsec and SSL VPN tunneling.
Support has been added for the latest FortiClient version for mobile platforms (Android and iOS).
Added support for the MSI version of the FortiClient Windows installer since it was unavailable for new instances created in FortiSASE-v7.4 from 25.4.b to 26.2.1.a.
The FortiSASE Network Tools page (https://speed.fortisase.com/) supports performing speed tests both on and off FortiSASE tunnels.
Added support for Public Cloud security PoPs: Monterrey (Mexico).
Added support for Fortinet security PoPs: Taipei (Taiwan).
Updated support for Fortinet security PoPs: Off-shore Dubai (United Arab Emirates).

For further information on what's new: https://docs.fortinet.com/document/fortisase/latest/release-notes/661728/whats-new

If you have any questions regarding this maintenance, please contact FortiCare Support (https://www.fortinet.com/support/contact) and reference FortiSASE Operations ticket #590598.
Posted Aug 10, 2026 - 20:19 UTC
This scheduled maintenance affects: KSA Cloud Regions (Dammam Zone B, Dammam Zone C, Riyadh, Jeddah).