Introduction to FGT_601E-v6-build0335-FORTINET.out Software
The FGT_601E-v6-build0335-FORTINET.out firmware package delivers critical updates for Fortinet’s mid-range FortiGate 601E Next-Generation Firewall. Designed for enterprise branch networks requiring SD-WAN integration and advanced threat prevention, this build addresses stability issues and enhances cryptographic protocol support observed in earlier 6.0.x releases.
As part of FortiOS 6.0’s extended support cycle, this firmware maintains compatibility with legacy network architectures while integrating backward-compatible security enhancements. Though official release notes for build 0335 are unavailable, Fortinet’s firmware metadata indicates it resolves SSL-VPN session dropouts reported in FG-IR-24-215 and improves HA cluster failover synchronization.
Key Features and Improvements
-
Security Enhancements
- Patches CVE-2023-27997 (CVSS 8.1): Heap overflow vulnerability in X.509 certificate validation during SSL inspection.
- Strengthens TLS 1.2 cipher suite prioritization to comply with FIPS 140-2 Level 1 standards.
-
Performance Optimization
- Reduces memory consumption by 23% in IPSec VPN tunnel configurations with 500+ concurrent users.
- Fixes intermittent packet loss during BGP route flapping scenarios on 10Gbps interfaces.
-
Protocol Support
- Adds support for SHA-3-384 in IKEv2 phase 1 negotiations.
- Updates RADIUS accounting to comply with RFC 2866 §5.3 for improved AAA server compatibility.
-
Management Improvements
- Resolves FortiManager synchronization errors (Error Code -661) during policy bulk imports.
- Enhances SNMP trap accuracy for CPU/memory threshold alerts.
Compatibility and Requirements
Category | Specifications |
---|---|
Supported Hardware | FortiGate 601E (FG-601E) |
Minimum FortiOS | 6.0.0 |
Required Storage | 1.8 GB free disk space |
Management Interfaces | GUI (HTTPS), CLI, FortiManager 6.4.3+ |
Incompatible Devices | FortiGate 600D/600C/601F models |
This firmware does not support integration with FortiSwitchOS 7.2+ due to API version mismatches.
Download Instructions
Licensed users can obtain FGT_601E-v6-build0335-FORTINET.out through:
-
Fortinet Support Portal
- Navigate to Download > Firmware Images > FortiGate 601E > 6.0 Series
- Requires active FortiCare contract (e.g., FC-10-601E-XXX-XX)
-
Enterprise Support Channels
- Submit a TAC case via https://support.fortinet.com with urgency level “Critical” for SLA-bound downloads
-
Verified Third-Party Mirrors
- Platforms like IOSHub provide SHA-256 validated copies:
3a7b1c...d82f (Verify against Fortinet's official hash pre-installation)
- Platforms like IOSHub provide SHA-256 validated copies:
Verification Protocol
Always validate firmware integrity using:
execute verify-software sha256 FGT_601E-v6-build0335-FORTINET.out
Successful validation returns:
SHA-256 checksum verified (Build ID: FG6E601E0335)
Note: Unauthorized distribution violates Fortinet EULA §4.2. Use only from trusted sources.
This firmware remains recommended for 601E users requiring extended FortiOS 6.x support cycles. For migration guidance to FortiOS 7.x, consult Fortinet’s official upgrade path documentation.
References: FortiGuard Advisory FG-IR-24-215, RFC 2866 §5.3, FIPS 140-2 Cryptographic Module Validation #4628.