Firewall "Software switch "with IP address config only
I assume that the layer3 interface is tagged with vlan 1?
What happens if I put an access vlan on a another switch port that is connected to this firewall port?
I assume that the layer3 interface is tagged with vlan 1?
What happens if I put an access vlan on a another switch port that is connected to this firewall port?
No. With all FGTs, all physical and parent interfaces are NOT tagged and no association to any VLANs configured in the unit. And VLAN ID 1 is reserved. See below KB:
https://community.fortinet.com/t5/FortiGate/Technical-Tip-Reserved-VLAN-ID-1/ta-p/270111
If you configured an "access port" on a switch, packets coming out/in are non-tagged. So only those non-VLAN/parent interfaces can communicate with.
Toshi
Enter your E-mail address. We'll send you an e-mail with instructions to reset your password.