Skip to main content
DannyV
Visitor III
October 2, 2024
Solved

Fortigate 50G-SFP, Dual WAN

  • October 2, 2024
  • 6 replies
  • 4423 views

Hi, 

The Fortigate 50G-SFP documentation does not specify whether the SFP port can function as a secondary WAN. Does anyone have information about this?

 

Thanks!

Best answer by johnathan

The only real difference between interfaces, apart from the label, is how the ports are hooked up to the NPU.
For example, on larger units the HA or MGMT ports are not NPU accelerated. You probably shouldn't use these for heavy traffic, but you can do it if you want.
Generally, all SFP and general ports are always NPU accelerated.

You can refer to the fastpath document to confirm this for each model.
See this for the 50G: https://docs.fortinet.com/document/fortigate/7.0.12/hardware-acceleration/201529/fortigate-50g-and-51g-fast-path-architecture
For this model, all ports are NPU accelerated and there will not be any difference when configuring one of those ports as a second WAN link. 

6 replies

johnathan
Staff
Staff
October 2, 2024

You can use whatever port you want for the WAN, FortiOS does not place any restrictions for this. 

Never trust a computer you can't throw out a window.
DannyV
DannyVAuthor
Visitor III
October 2, 2024

Thanks for the response.  I noticed that many Fortigate models, like the 50G-SFP-PoE model includes two WAN ports.  What's the difference between this and, for example, a SFP port as a secondary WAN? Any limitations?  Can be used in a SD-WAN?

johnathan
Staff
johnathanAnswer
Staff
October 2, 2024

The only real difference between interfaces, apart from the label, is how the ports are hooked up to the NPU.
For example, on larger units the HA or MGMT ports are not NPU accelerated. You probably shouldn't use these for heavy traffic, but you can do it if you want.
Generally, all SFP and general ports are always NPU accelerated.

You can refer to the fastpath document to confirm this for each model.
See this for the 50G: https://docs.fortinet.com/document/fortigate/7.0.12/hardware-acceleration/201529/fortigate-50g-and-51g-fast-path-architecture
For this model, all ports are NPU accelerated and there will not be any difference when configuring one of those ports as a second WAN link. 

Never trust a computer you can't throw out a window.
Thought Leadership Security Summit. Outpace New Threats with AI - enhanced defense. Tuesday, Septmeber 15, 8:30 AM - 2:30 PM PT. The Golf Club at Newcastle, WA.
Fortinet Flag the Hack. Wednesday, August 26, 9:00 AM - 5:00 PM ET, COSM, Atlanta, GA.