Supported vendors & configuration objects
FortiConverter can translate configurations from the following vendors and models.
- In some cases, FortiConverter can't translate some parts of the configuration because of dependencies or unsupported syntax and you must manually convert them.
- If the number of objects exceeds the maximum valid length for FortiGate or FortiManager, FortiConverter trims them.
Unless noted as an exception below, conversions only support IPv4 unicast policy.
Vendor |
Models |
Versions |
Convertible Objects |
Alcatel-Lucent |
Brick |
ALSMS v9.x |
|
Bluecoat |
SGOS |
6.5.10 6.7.4 |
|
CheckPoint |
SmartCenter
|
NGFP1 (4.0) to NGX R80 |
|
Provider-1 |
NGX R65 to R80 |
||
Cisco |
ASA |
7.x/8.x/9.x |
|
FWSM |
3.x/4.x |
||
IOS |
10.x to 12.x 15.x |
||
PIX |
5.x/6.x/7.x/8.x |
||
IOS XR |
4.x/5.x/6.x |
|
|
Nexus |
5.2/6.x/7.x |
||
FortiGate |
FortiOS |
FOS5.2 and above |
FortiGate configuration can be converted based on the version of the target FortiGate device (We suggest to migrate to FortiOS 6.0 and above). However, note that
|
Huawei |
USG Series |
|
|
Juniper |
SSG/ISG |
ScreenOS 4.x, 5.x, 6.x |
|
SRX |
JunosOS 10.x to 18.x |
|
|
MX |
Juno OS 10.x to 12.x |
|
|
McAfee |
Sidewinder |
7.x, 8.x |
|
Forcepoint |
Stonesoft |
5.7 |
|
Palo Alto Networks |
PAN OS |
PAN-OS 1.x to 8.x |
|
Snort |
|
|
|
SonicWall |
TZ Series NSA Series |
SonicOS 4.x, 5.x, 6.x |
|
Sophos |
XG Series |
SFOS 17.0 |
|
Cyberoam |
Cyberoam OS 10.6 |
||
Tipping Point |
IPS |
4.5 |
|
Vytta |
VyOS |
5.2 to 6.7 |
|
WatchGuard |
Firebox Series XTM Series |
Fireware 11.3 to 12.1 |
|
Exception
- Check Point to FGT conversion can support IPv4 multicast policy.
- Check Point, Cisco, and Juniper (Junos only) to FGT conversion can support IPv6 unicast policy.
- Juniper (Junos only) can support converting the consolidated policy to FortiOS v6.2 configuration.