hash-config {src-dst-ip | src-ip}
If your FortiGate has multiple NP7 processors and is licensed for hyperscale firewall support and will be processing traffic that requires a session helper or application layer gateway (ALG), use this command to change the hashing method that the internal switch fabric (ISF) uses to distribute sessions to NP7 processors. Changing the hash configuration causes the FortiGate to restart.
config system npu
set hash-config {src-dst-ip | src-ip}
end
src-dist-ip
(the default) use 2-tupple source and destination IP address hashing.
src-ip
use source IP hashing required for protocols that use session helpers (for example, SIP or FTP) or application layer gateways (ALGs) (for example, SIP). Select this option if your FortiGate is licensed for hyperscale firewall features and will be processing SIP traffic.