Fortinet white logo
Fortinet white logo

Online Help

Fortinet Start Options

Fortinet Start Options

Setting

Description

Profile
Description Enter a description of the conversion.
Input
Config mode change

Enable this option if you only need to convert the config from one mode to another mode instead of migrating the config into another device. When this option is enabled, only the source configuration needs to be input. Currently, 2 kinds of mode conversions are supported:

  1. Policy mode to Profile mode conversion.
  2. Interface Split conversion
Source Configuration Select the input configuration file or a device.
Target Device Default Configuration

FortiConverter needs the default configuration of the target device to extract interface or other information of the target device. The default configuration should contain the same VDOM as those in the source config.

So if the source device contains multiple VDOMs, users should also create VDOMs with the same name on the target device before back up the default configuration.

Conversion Options

Append new object to avoid overwriting existing one

Enable this option to append configurations such as interface, route, Central-Nat table, and DHCP Server into the pre-exist configuration on the device.

Migrate device Hostname and Alias

Enable this option to migrate your hostname and alias in config system global setting.

Note that if the hostname in source config is the Serial Number, it’ll be skipped by converter even if this option is enabled.

Discard interfaces with neither references nor IP

When this option is enabled, those interfaces which do not have IPs and are not referenced anywhere in the config will be discarded directly.

Policy mode to Profile mode conversion

When selected, the config will be converted from FortiOS NGFW Policy mode to Profile mode, instead of converting to another device.

Interface Split conversion

When this option is enabled, the policies with multiple source or destination interfaces will be split into equivalent policies with single source and destination interfaces. After splitting, the "Interface pair view" can be used in FortiGate GUI.

Preserve default admin user password and trusthost settings

By default, FortiConverter removes the password and trusthost settings in the default admin account to prevent accessing issues. Enable this option to preserve those settings.

Migrate SSL VPN to IPsec VPN

Enable this option if you need to migrate the source config’s SSL VPN into IPsec VPN. When this option is enabled, only the source configuration needs to be provided.

Fortinet Start Options

Fortinet Start Options

Setting

Description

Profile
Description Enter a description of the conversion.
Input
Config mode change

Enable this option if you only need to convert the config from one mode to another mode instead of migrating the config into another device. When this option is enabled, only the source configuration needs to be input. Currently, 2 kinds of mode conversions are supported:

  1. Policy mode to Profile mode conversion.
  2. Interface Split conversion
Source Configuration Select the input configuration file or a device.
Target Device Default Configuration

FortiConverter needs the default configuration of the target device to extract interface or other information of the target device. The default configuration should contain the same VDOM as those in the source config.

So if the source device contains multiple VDOMs, users should also create VDOMs with the same name on the target device before back up the default configuration.

Conversion Options

Append new object to avoid overwriting existing one

Enable this option to append configurations such as interface, route, Central-Nat table, and DHCP Server into the pre-exist configuration on the device.

Migrate device Hostname and Alias

Enable this option to migrate your hostname and alias in config system global setting.

Note that if the hostname in source config is the Serial Number, it’ll be skipped by converter even if this option is enabled.

Discard interfaces with neither references nor IP

When this option is enabled, those interfaces which do not have IPs and are not referenced anywhere in the config will be discarded directly.

Policy mode to Profile mode conversion

When selected, the config will be converted from FortiOS NGFW Policy mode to Profile mode, instead of converting to another device.

Interface Split conversion

When this option is enabled, the policies with multiple source or destination interfaces will be split into equivalent policies with single source and destination interfaces. After splitting, the "Interface pair view" can be used in FortiGate GUI.

Preserve default admin user password and trusthost settings

By default, FortiConverter removes the password and trusthost settings in the default admin account to prevent accessing issues. Enable this option to preserve those settings.

Migrate SSL VPN to IPsec VPN

Enable this option if you need to migrate the source config’s SSL VPN into IPsec VPN. When this option is enabled, only the source configuration needs to be provided.