Version: v7.0.4 build0306
So, this is just super fun. Upgrading a Fortigate from 6.4.x to 7.x requires using a 7.x ADOM, but once you do that if you have any VIP range definitions, they break and you can no longer push policy to the devices. Like, at all.
Even (and especially if) you're only using IPv4, within the 7.x ADOM in the Fortimanager, when attempting a per-device mapping for a VIP, below "External IP Address/Range" and "Mapped IPv4 Address/Range" appears "Mapped IPv6 Address/Range" which pre-fills with "::" and "::3fe" which despite many attempts to remove these values, isn't apparently going away.
The end result is that when you try to push policy to the device, it uploads but won't apply because it attempts to set inappropriate IPv6 parameters on the thing, and there's no way to remove them.
Does anyone happen to know if there's a sane workaround for this stupid bug?