Supported versions and conversions
FortiConverter can translate configurations from the following vendors and models. Unless noted as an exception below, conversions only support IPv4 unicast policy.
If FortiConverter cannot properly translate some of the supported configurations listed from below table, please kindly contact our product support email alias fconvert_feedback@fortinet.com
Vendor | Models | Versions | Convertible Objects |
---|---|---|---|
Alcatel-Lucent | Brick | ALSMS v9.x |
|
Bluecoat | SGOS |
6.5.10 6.6.4.2 6.7.4 7.0 |
|
CheckPoint |
SmartCenter
|
NGFP1 (4.0) to NGX R80
|
|
VSX |
|||
Provider-1 | NGX R65 to R80 | ||
Cisco | ASA | 7.x/8.x/9.x |
|
FWSM
|
3.x/4.x | ||
IOS |
10.x to 12.x
|
||
15.x
|
|||
PIX |
5.x/6.x/7.x/8.x
|
||
Firepower |
6.x
|
||
IOS XR |
4.x/5.x/6.x
|
|
|
Nexus |
5.2/6.x/7.x
|
||
FortiGate | FortiOS | FOS5.2 and above |
FortiGate configuration can be converted based on the version of the target FortiGate device. However, note that
|
Huawei | USG Series |
|
|
IBM | PAM | IPS Sensor | |
Juniper | SSG/ISG | ScreenOS 4.x, 5.x, 6.x |
|
SRX | JunosOS 10.x to 18.x |
|
|
MX | Juno OS 10.x to 12.x |
|
|
McAfee | Sidewinder | 7.x, 8.x |
|
Forcepoint | Stonesoft | 5.7 - 6.7 |
|
Palo Alto Networks | PAN OS | PAN-OS 1.x to 10.x |
|
Snort | IPS rules | ||
SonicWall | TZ Series NSA Series | SonicOS 4.x, 5.x, 6.x |
|
Sophos
|
XG Series | SFOS 17.0 - 17.5 MR3 |
|
Cyberoam | Cyberoam OS 10.6.3 onward | ||
SG Series |
6.6 to 7.0 |
||
Tipping Point | IPS | 4.5 |
|
Vytta | VyOS | 5.2 to 6.7 |
|
WatchGuard |
Firebox Series XTM Series |
Fireware 11.3 to 12.6 |
|
Exception
- Check Point to FGT conversion can support IPv4 multicast policy.
- Check Point, Cisco, and Juniper (Junos only) to FGT conversion can support IPv6 unicast policy.
- Bluecoat conversion supports FortiProxy mode which the generated CLI would be slightly different to FortiGate mode.