HP and fortigate - ports and vlans
Hello all.
I'm trying to understand vlans on the fortigate. i have a 91G and 2 148poe switches in managed mode.
This system will be replacing a sonicwall firewall and hp switch config.
The current config (HP switch, Virtual Server, VLans on VMs) - workstations receive dhcp from a vlan100 server if the hp port is 'tagged' with the correct vlan. An example would be this:
If on the hp switch, G1 has 'untag' (native vlan 1) for port G1 and Tagged with vlan 100, then whenever a device is connected to G1, it receives a dhcp address from my (tagged) vlan 100 server. All this all works well.
The 91g has native vlan1. It's default network is 192.168.1.0 and any devices connected to it get a 192.168.1.x network. The fortigate has also been configured with a Vlan 100 network.
Port 11, on the fortigate is the default vlan1. I connected that port to the HP switch. The hp switch port (uplinked from the fortigate) is configured as "untag G17".
Port 9 on the fortigate is configured with the default vlan 1 network. If i connect a device to Port 9, i get a dhcp address from the 192.168.1.x network.
Whenever i connect the HP and Fortigate together then my devices do not get a dhcp from the fortigate network, but rather from the DHCP server on the HP side - and it is a vlan 100 network.
What's going on?
Also, even though I have a access rule for the vlan1-vl100, any any, in both directions - i can't ping either side.
I'd expect whenever the 2 switches are connected that any workstations connected behind Port 9, to have to have the fortigate switch configured on vlan 100 - but that's not the case.
thanks in advance.