Skip to main content
avilt
New Member
November 3, 2019
Question

Fortigate 200E Zone Vs Interface

  • November 3, 2019
  • 1 reply
  • 5136 views

I have procured a new Fortigate 200E firewall and I need to put ports 1 to 4 in a single vlan (same segment)

How do I define this setup?  Shall I define a new zone or interface?

    1 reply

    ede_pfau
    SuperUser
    SuperUser
    November 3, 2019

    Two obvious choices would be

    - hardware switch

    or

    - LACP trunk

    But...unfortunately the 200E does not have a hw switch chip so it would emulate a switch in software. This will surely impact CPU load a lot. Not recommended.

     

    Hopefully the switch the FGT is connected to is LACP capable. Create an LACP trunk from GUI, and fine-tune it in CLI if you need to. All ports will participate in traffic, adding bandwidth and redundancy.

    avilt
    aviltAuthor
    New Member
    November 4, 2019

    Just to clarify, even if I use it as a software switch, my systems will not have any traffic within the vlan subnet (software switch), they will talk to a system which is connected to firewall outside interface using a dedicated switch.

     

    I believe if I have huge traffic within a software switch it's a problem right?

    avilt
    aviltAuthor
    New Member
    November 9, 2019

    Can I use the software switch when there is no switch but my traffic is not within the vlan (software switch) ?