FortiGate HA and LACP with two clusters
Hello,
I would like to ask you for yur opinion on this:
I have two ha clusters:
Cluster #1 has two 400Fs and is active-passive
Cluster #2 has two 200Fs and is active-passive
between these two clusters is a link. This is an LACP Aggregate Interface with two ports (2x10G SFP).
Should there be a switch in between the two clusters?
Can they be connected directly? I could disable the LACP participiation of the secondary node on each cluster to avoid mac address conflicts (since without switch there is no LAGs) which wouldn't be a problem since the secondary node is passive anyways.
what would you say is best practice here?
I found support docs that show it without switch but I also heard ppl say you have to have a switch in here...
So I am unsure now and also wo talk about a load of money (switches with many sfp ports are really expensive).
