Updated Date: 07/07/2026
New Features in this Version
For information about supported tenants, see the VELOS platforms section of the The F5 hardware/software compatibility matrix.
This release enables you to use IPv4, IPv6, or FQDN addresses for NTP servers, remote log servers, DNS servers, RADIUS servers, LDAP servers, and external file servers (for importing/exporting files to/from the system).
This release adds support for QoS queues selected based on traffic classification using either L3 or L2 mechanisms: IP Differentiated Services Code Points (DSCP) or 802.1p priorities. This feature maps 802.1p priority levels in Ethernet frames or DSCP in IP packets to traffic classes and associated queueing mechanisms within the VELOS system. For more information, see VELOS Systems: Prioritizing Traffic using QoS.
This release adds support for a rolling upgrade of the system controller software and for a rolling upgrade of individual chassis partition software. In prior F5OS-C releases, these upgrades impacted both active and standby instances of the respective software stacks at the same time. Now, the standby and active instances are upgraded sequentially, allowing for continued manageability and operation across the upgrade process. For more information, see VELOS Systems: Installation and Upgrade.
This release allows you to configure LDAP including Active Directory servers to authenticate VELOS users. Configuration is performed from the system controller CLI.
This release adds hardware support for Service Provider Disaggregation (SP-DAG) on VELOS. To use this feature, in your BIG-IP tenant, configure a DAG mode (cmp-hash) on a specific VLAN. This selects an IP address mode for disaggregation rather than the default L4 port mode. For more information on configuring this feature for your BIG-IP tenant, see the “BIG-IP DAG Modes for Scalability” section of BIG-IP Service Provider: Generic Message Administration.
This release adds hardware support for sPVA features for AFM, including enabling hardware DoS protection at a per-endpoint granularity, enabling individual IP addresses to be allow-listed or deny-listed, and enabling hardware-supported DoS protection profiles on a per-fully-qualified virtual server basis. For more information on configuring this feature for your BIG-IP tenant, see BIG-IP Advanced Firewall Manager: Getting Started.
This release adds support for hardware-based subnet virtual DDoS protection, using a TCAM inside the VELOS FPGAs. This feature enables DoS protection at the subnet level rather than for a fully qualified IP address; wildcard Allow-Lists and Deny-List which allows or denies IP subnets; and hardware syn-cookie support for wildcard virtual servers.
This release adds support for the standard MIB for managing Ethernet-like interfaces, as well as an F5 enterprise MIB F5-PLATFORM-STATS-MIB.
This release enables the use of zone-based DDOS prevention using hardware lookups for tenant software installations.
This release supports TACACS+ and Active Directory as remote authentication methods for VELOS users. Configuration is performed from either the system controller or chassis partition CLI. For more information on configuring this feature for your VELOS system, see the “User Management” section of VELOS Systems: Administration and Configuration
This release enables you to query on the health of the system as a whole or on individual components. You can use the show system health command from either the system controller or chassis partition CLI to view the status (OK, Unhealthy, or NA).
This release adds the capability to synchronize trunk information between VELOS systems and tenants, enhancing the tenant HA health check.