Cannot access FortiGate WebUI after changing switch-controller-mgmt-vlan to 1363 (FortiOS 7.4.11)
Hello everyone,
I have a FortiGate 60F with a FortiSwitch 108E-POE running FortiOS 7.4.11.
I changed the FortiLink management VLAN from the default (4094) to our university VLAN 1363 using the following commands:
config system interface edit fortilink set switch-controller-mgmt-vlan 1363 next endAfter applying the change, I can no longer access the FortiGate WebUI (neither HTTPS nor HTTP) from VLAN 1363. Interestingly, ping to the FortiGate IP on the 1363.fortilink sub-interface works fine.
The only workaround I’ve found so far is to create an additional VLAN (1364) on top of fortilink exclusively for FortiGate management, assign the IP address there, and enable allowaccess.
My question: Is there a way to access the FortiGate WebUI using only VLAN 1363 (the same VLAN used for FortiLink management) without having to create a second VLAN?
I also tried disabling the client certificate requirement with:
config system global set admin-https-client-cert disable endHowever, the setting does not persist — when I run get system global, it still shows as enabled.
I’ve checked the official documentation and searched the forum but couldn’t find anyone with this exact scenario. Has anyone managed to solve this cleanly using a single management VLAN?
Any help or experiences would be greatly appreciated.
Thank you very much in advance!
