Hi,
I find that IPV6 SD-WAN rules are unable to add IPV6 FQDN objects.
Was this by-design? Or a bug?
Device: fortigate 60e
OS: 7.4.7
config firewall address6
edit "speed.cloudflare.com"
set uuid 3e275afe-e74f-51ef-ba51-85ac2c2767bd
set type fqdn
set fqdn "speed.cloudflare.com"
next
end
Hello titanium98118,
Thank you for using the Community Forum. I will seek to get you an answer or help. We will reply to this thread with an update as soon as possible.
Thanks,
Hello,
We are still looking for an answer to your question.
We will come back to you ASAP.
Thanks,
Hello again,
Please tell me if this works:
To add IPv6 FQDN objects to SD-WAN rules with FortiGate 60E running v7.4.7, follow these steps:
- Go to Policy & Objects -> Addresses -> Addresses.
- Select Create New and select Address.
- Choose IPv6 as the Address Type.
- Enter the FQDN address in the format: ‘*.example.com’.
- Save the address object.
- Go to Policy & Objects -> SD-WAN Rules.
- Select Create New to add a new rule.
- Set the Source and Destination as needed.
- Under Destination Address, select the IPv6 FQDN address object created in step 1.
- Configure other settings like Service, Members, and Action accordingly.
- Save the SD-WAN rule.
By following these steps, you can add IPv6 FQDN objects to SD-WAN rules on your FortiGate 60E running v7.4.7.
Hi Philippe,
It's still unable to select FQDN object from IPv6 SD-WAN rules.
Hi,
looks like it is a bug in v7.4.7, please reach TAC.
In v7.6.x able to create.
TAC answered,
It may not a bug. On 7.4.7 version, sdwan rule not support IPv6 FQDN,lt only support IPv6 subnet address.
Thanks titanium98118 for letting us know!
Have a great day!
User | Count |
---|---|
2570 | |
1362 | |
796 | |
651 | |
455 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.