FortiGate
FortiGate Next Generation Firewall utilizes purpose-built security processors and threat intelligence security services from FortiGuard labs to deliver top-rated protection and high performance, including encrypted traffic.
mricardez
Staff
Staff
Article Id 263761
Description This article describes how to enable IPv6 support with IPv6.
Scope FSAE v5.0.0282 and earlier.
Solution

FSSO supports IPv6 on the communication between the collector agent and FortiGate, TSAgent, and DCAgent, but also the IPV6 is included in the user login information sent to FortiGate.

 

To make IPV6 work After installation of the collector agent, add a DWORD of 32 bits, 'enable_IPV6' and set it to 1, this DWORD must be created on the following paths on regedit.exe:

 

HKEY_LOCAL_MACHINE\SOFTWARE\Fortinet\FSAE\DCAgent
HKEY_LOCAL_MACHINE\SOFTWARE\Fortinet\FSAE\DCAgent\ca
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Fortinet\FSAE\collectoragent

 

FSSO in Polling mode without DCAgent installed only will have the path to the FSAE:

 

Captura de pantalla de 2023-07-12 16-10-47.png

 

Restart the FSAE and the user logins in IPv6 will start to be received.

 

Captura de pantalla de 2023-07-12 16-19-15.png

 

The FortiGate FSSO External Connector to CA on IPv6.

 Captura de pantalla de 2023-07-12 16-34-37.png

 

 

Captura de pantalla de 2023-07-12 16-37-36.png

 

The FortiGate will receive the logins on IPv4/IPv6.

 

Captura de pantalla de 2023-07-12 16-39-46.png

Contributors