Migrate Cisco ASA to Fortigate
hi,
i'll be refreshing HW and will migrate our cisco ASA to FGT.
my questions are:
1.our ASA environment is a context-based/multi-tenant FW, so when i create a new VDOM, do i always choose "central NAT" since it's closer on how ASA is implemented?
2.we have an ASA context solely used for IPSec VPN. do i also choose "central NAT" in this scenario?
3.can i create a new VDOM directly on the FGT device or is it best practice to do it via FMG?
4.i'll be ordering a forticonverter license to help with my ASA migration. is the result/conversion 100% accurate? or do i still need to manually inspect the output/config?
5.after i converted the ASA context/config in forticonverter, how do i apply the config on a FGT? do i apply the config directly on the FGT device? or via FMG?
apologies for all these questions since it will be my first time converting ASA to FGT.
looking forward to your reply. thanks in advance!
