Implementing VLANs in Guest Wireless Network
I have been tasked with deploying a guest wireless network for a facility my company is contracting for. I have a background working with Cisco, but I'm still fairly new to the Fortinet portfolio.
The infrastructure is going to be a FG400F connecting to a FS424E (functioning as the core) which will then connect to however many FS124F (access switches) and then from there a plethora of FAPs. I want to use a VLAN scheme along the lines of this:
VLAN 5 (APs) — 10.0.5.0/23
VLAN 20 (Wireless Client ) — 10.0.10.0/22
VLAN 30 (Wired Client) — 10.0.20.0/23
VLAN 40 (Splash Exempt) — 10.0.30.0/24
I've set up the FG, Core SW, and an Access SW already to practice configuring (it's my first time doing anything with a Fortiswitch!) My issue now is that when I create VLANs on the FortiSwitch, I'm not sure how to propagate them to the FAPs. It doesn't seem like I can apply any IPs to the APs themselves (perhaps thats all managed by FortiLink, rendering VLAN 5 moot) but I also don't understand how to make the SSID IPs the same as the VLAN 20 space, as using the same addressing leads to a subnet conflict.
Where I also have confusion is, not only can I create VLANs in the FortiSwitches, I can create them on the FortiGate. Are those relevant? I'm just struggling to wrap my head around all of it.
