Network Configuration Help
What's up all. Novice at networking here, bear with me. Trying to dump my cheap home firewalls and go with the real thing. Looking to purchase a Fortigate Firewall and Catalyst 1200 Series Switch. Pretty basic setup. I need to:
Create VLANS and have them access the internet
Completely isolate the VLANS at Layer 3
I have been looking at a few different ways to do this but need help. I can figure out most of the config but could use assistance with the design / have a few config questions.
Would you:
Go layer 2 VLANS at the switch and then tag them up to the firewall and create firewall policies to separate the VLANS? Would I even need to tag them on the firewall?
Would inter-vlans need to be created on the firewall to deny all traffic or could I just create firewall polices for each lan and have the switch handle the tagging?
or
Go Inter-vlan on the switch and create ACLS on the switch as opposed to having the firewall do the work. It seems strange to me to have a firewall perform switching functions as I am trying to separate this all out.
Performance is not a concern as this is a basic network, security is top of mind. Thanks to anyone that can help.
