FortiGate
FortiGate Next Generation Firewall utilizes purpose-built security processors and threat intelligence security services from FortiGuard labs to deliver top-rated protection and high performance, including encrypted traffic.
gakshay
Staff
Staff
Article Id 197154

Description


This article describes how to disable stateful SCTP inspection.

 

Scope

 

FortiGate.


Solution


The option to disable stateful SCTP inspection is available. This option is useful when FortiGates are deployed in a High Availability (HA) cluster that uses the FortiGate Clustering Protocol (FGCP) and virtual clustering in a multihoming topology.
 
Use the following command to disable stateful inspection of SCTP.

 

config sys settings
    set sctp-session-without-init enable
end

 

Note:

'sctp-session-without-init' is not currently supported in NGFW policy mode.