Skip to main content
Umesh
Explorer II
September 8, 2022
Question

How to create Zones

  • September 8, 2022
  • 2 replies
  • 3508 views

Hi Everyone,

I would like to know some doubt which is going on in my mind from you all, for better understanding please see the below screenshots.

Umesh_0-1662633186002.png

 

My requirements are below- 

1. how to create zones separately for different-2 VLANS 

2. I have 3 VLANS like - VLAN 10, VLAN 20, VLAN 30 ( VLAN 10 is for Email server, VLAN 20 is for DNS server, VLAN 30 is for Database server).

3. I have only one uplink which is connected to the Fortigate Firewall ( Switch to Fortigate).

4. G0/3 is the trunk port which is connected to switch.

Let me know is it possible in order to create zones only one uplink or I have to take three uplink for separate VLANS.

 

Thank you in advance for clearing my doubt.

 

2 replies

Fikusir
Explorer
September 8, 2022

You can use only one uplink. In Fortigate you simply create new VLAN interface (Network->Interface->New->VLAN) on single interface (or another type of interfaces).

 

You can also setup some agregation to speedup the connectivity with hardware/software switch and then create VLAN interface in top of it.

 

See this: Technical Tip: How to create a VLAN tagged interfa... - Fortinet Community

knagaraju
Staff
Staff
September 8, 2022


Hi Umesh,

Please find the answers below

1. how to create zones separately for different-2 VLANS 
Please go through the below link for VLAN configuration with zones
https://docs.fortinet.com/document/fortigate/6.2.0/cookbook/116821/zone


4. G0/3 is the trunk port which is connected to switch.
Port2 is connected to Switch. Hence you can create 3 VLANS on Port2.
Additionally you can also assign those VLANs to seperate zones if you want to.

Let me know is it possible in order to create zones only one uplink or I have to take three uplink for separate VLANS.
-Yes,with one uplink also it is possible.
-One link connected from fortigate to switch will act as trunk port once you configure VLANs on fortigate port2 interface.

Please find the attached screenshots for zones and VLANs created on fortigate.