Not all can reach the Internet when we backed the VLANs to a layer 3 switch
We at the present are utilizing a FortiGate 100F (in NAT mode running on a single IP address on the WAN) that is connected to a Cisco Nexus 9000 series switch via a VLAN trunk with the default gateways for all the VLANs being located on the 100F. I have been asked if we could back the VLAN gateways back to the Cisco 9000 series switch as the firewall is causing bottlenecks on the network when large file transfers are in use. It doesn't sound like a difficult task but when it was last tried. About half of the clients on the network could not reach the Internet, but they could reach the default gateway without as they could reach the other internal subnets. Some clients on the same VLAN could reach the Internet and others could not. I was wondering if anyone has some pointers on how to best go about this a second time. Unfortunately static routing is use rather than using a routing protocol as the network is comprised of 5 switches but was wondering if we missed something as there was no rhyme or reason about who was able to connect and who couldn't.
