Description
This article describes how to disable stateful SCTP inspection.
Scope
FortiGate.
Solution
The option to disable stateful SCTP inspection is available. This option is useful when FortiGates are deployed in a High Availability (HA) cluster that uses the FortiGate Clustering Protocol (FGCP) and virtual clustering in a multihoming topology.
Use the following command to disable stateful inspection of SCTP.
config sys settings
set sctp-session-without-init enable
end
Note:
'sctp-session-without-init' is not currently supported in NGFW policy mode.
Labels: