Migrating Fortinet firewall to Multicloud Defense with the Firewall Migration Tool in Security Cloud Control

The Secure Firewall migration tool hosted on Security Cloud Control lets you migrate configurations from Fortinet firewall to Multicloud Defense. To read more about the supported configurations for this migration, see Fortinet Firewall Configuration Support for Multicloud Defense in Migrating Fortinet Firewall to Cisco Multicloud Defense with the Migration Tool guide.

Summary

The key components involved in the Fortinet firewall to Multicloud Defense migration process are:

  • Fortinet Firewall (5.0+): Source system containing the configuration to be migrated

  • Firewall Migration Tool: Tool hosted on Security Cloud Control that processes and transforms configurations

  • Multicloud Defense: Target platform where migrated configurations are deployed

  • Configuration Files: Exported source configuration and migration reports

Workflow

Fortinet firewall to multicloud defense End-to-End migration
The diagram illustrates the end-to-end migration process of Fortinet firewall configurations to Multicloud Defense, detailing the stages involved from logging in to provisioning a new migration instance.

These are the stages of migrating Fortinet firewall configurations to Multicloud Defense:

  1. The system administrator logs in to Security Cloud Control and provisions a new migration instance.
    • Log in to your Security Cloud Control tenant
    • In the left pane, click Administration > Migration > Firewall Migration Tool
    • Click the blue plus The Firewall Migration Tool interface displays the left pane with the Tools & Services section, highlighting the blue plus button for starting a new migration instance. button to start provisioning a new migration instance
    The migration instance is ready for configuration.
  2. The administrator selects the source firewall configuration type and exports the configuration from Fortinet firewall. You can migrate configurations from your Fortinet firewall by choosing Fortinet (5.0+) in the Source Firewall Vendor drop-down and uploading the extracted configuration file to Firewall Migration Tool. To read about the Fortinet firewall configurations that are supported for migration, see Supported Software Versions for Migration in the Migrating Fortinet Firewall to Cisco Multicloud Defense with the Migration Tool guide. The source configuration is available for upload to the migration tool.
  3. The administrator uploads the configuration to the Firewall Migration tool and selects Multicloud Defense as the target. On the Select Target page, choose Multicloud Defense. To know more about the prerequisites and the steps involved, see Specify Destination Parameters for Multicloud Defense in the Migrating Fortinet Firewall to Cisco Multicloud Defense with the Migration Tool guide. The tool generates a pre-migration report for review.
  4. The administrator reviews the pre-migration report to understand what will be migrated. The administrator can proceed with optimization and validation.
  5. The administrator optimizes, reviews, and validates the configuration to ensure accuracy before migration. The configuration is ready to be pushed to Multicloud Defense.
  6. The migration tool sends the migrated configuration to Multicloud Defense and generates a post-migration report. This step in the migration process sends the migrated configuration to Multicloud Defense and allows you to download the post-migration report.
  7. The administrator reviews the post-migration report and verifies the migrated configurations in Multicloud Defense. The migration is complete and configurations are available for use in Multicloud Defense.

Workspace

Steps

The Firewall Migration Tool interface displays the steps required to migrate a Fortinet firewall to a Multicloud Defense environment, highlighting key configuration options and settings.

Security Cloud Control

Log in to your Security Cloud Control tenant, and in the left pane, click Administration > Migration > Firewall Migration Tool and click the blue plus The Firewall Migration Tool interface displays options for provisioning a new migration instance, including a blue plus button for initiating the process. button to start provisioning a new migration instance.

The Firewall Migration Tool interface displays options for launching the migration process for Fortinet firewalls to Multicloud Defense.

Security Cloud Control

After your migration instance is ready, click Launch and choose Fortinet (5.0+).

The Firewall Migration Tool interface displays options for launching the migration process for Fortinet firewalls to a multicloud defense environment.

Fortinet Firewall

Export the Configuration File: To export the configuration from Fortinet Networks Firewall, see Export the Configuration from Fortinet Firewall.

The diagram illustrates the process of exporting a configuration file from a Fortinet firewall and uploading it to the Secure Firewall Migration Tool for migration to a multicloud defense environment.

Secure Firewall Migration Tool

Upload the configuration to Firewall Migration tool. For more information, see Upload the Fortinet Configuration File.

The Secure Firewall Migration Tool facilitates the upload of Fortinet configuration files for migration to a multicloud defense environment.

Secure Firewall Migration Tool

Choose Multicloud Defense as the target and specify the destination parameters. For more information, see Specify Destination Parameters for Multicloud Defense.

The image illustrates the process of selecting Multicloud Defense as the target for migrating a Fortinet firewall, highlighting the necessary destination parameters.

Secure Firewall Migration Tool

Navigate to where you downloaded the pre migration report and review the report. For more information, see Review the Pre-Migration Report.

The Secure Firewall Migration Tool interface displays options for reviewing the pre-migration report and initiating the migration process for Fortinet firewalls to a multicloud defense environment.

Secure Firewall Migration Tool

Optimize and review the configuration carefully and validate that it is correct. For detailed steps, see Optimize, Review, and Validate the Configuration to be Migrated.

The Firewall Migration Tool interface displays options for optimizing and reviewing the configuration before migrating a Fortinet firewall to a multicloud defense environment.

Secure Firewall Migration Tool

This step in the migration process sends the migrated configuration to Multicloud Defense and allows you to download the post-migration report. For detailed steps, see Push the Configuration to Multicloud Defense.

The migration process sends the migrated configuration to Multicloud Defense and provides an option to download the post-migration report.

Local Machine

Navigate to where you downloaded the post migration report and review the report. For detailed steps, see Review the Post-Migration Report and Complete the Migration.

The post-migration report details the configuration changes made during the migration of the Fortinet firewall to Multicloud Defense, highlighting any issues and necessary follow-up actions.

Multicloud Defense

Verify the migrated configurations and use them as required in configuring gateways.